Jonathan Daugherty

Results 339 comments of Jonathan Daugherty

Thinking about this more, I'm afraid I must decline. Doing this would introduce a potentially significant security risk because scripts could run untrusted programs whose output could invoke arbitrary server-side...

(I actually got all the way through the implementation before realizing this, as you can see the from commits above.)

Scripts could be buggy, and another angle is that scripts could either be malicious or run programs that are. But the more general issue that I'm concerned about is that...

> That reasoning is completely backwards. This statement really isn't helpful in this discussion. If you're frustrated that I'm not giving you what you want, I could definitely understand. >...

> If a client is able to run a 'destructive server command', via script or not, that is a bug in the server. In the context of this discussion, by...

I'll close this since I assume you have what you need, but feel free to open another issue if you need assistance.

When it's a nuisance I can imagine wanting to just buffer it all and maybe look at it later in case of a problem. But I can also see it...

I'm not using this library at the moment like I was when I requested this, but I would still enjoy having more control over the log output without having to...

Thanks for the report! Do you have time to write a patch?

Great! I don't have a strong preference as to which approach is taken. I also don't have time to work on this myself right now, so I'm going to be...