Win / Conspiracies
Conspiracies
Communities Topics Log In Sign Up
Sign In
Hot
All Posts
Settings
All
Profile
Saved
Upvoted
Hidden
Messages

Your Communities

General
AskWin
Funny
Technology
Animals
Sports
Gaming
DIY
Health
Positive
Privacy
News
Changelogs

More Communities

frenworld
OhTwitter
MillionDollarExtreme
NoNewNormal
Ladies
Conspiracies
GreatAwakening
IP2Always
GameDev
ParallelSociety
Privacy Policy
Terms of Service
Content Policy
DEFAULT COMMUNITIES • All General AskWin Funny Technology Animals Sports Gaming DIY Health Positive Privacy
Conspiracies Conspiracy Theories & Facts
hot new rising top

Sign In or Create an Account

32
()
posted 3 years ago by ghost_of_aswartz 3 years ago by ghost_of_aswartz +32 / -0
9 comments share
9 comments share save hide report block hide replies
Comments (9)
sorted by:
▲ 7 ▼
– deleted 7 points 3 years ago +7 / -0
▲ 6 ▼
– krzyzowiec 6 points 3 years ago +6 / -0

Amusing. They can whine about it but they did put themselves in this position. As a programmer myself I’ve always been surprised by how heavily developers rely on large libraries for even small features they could code themselves. They’re just lazy.

permalink save report block reply
▲ 6 ▼
– PaidSockPuppet 6 points 3 years ago +6 / -0

As a programmer myself I’ve always been surprised by how heavily developers rely on large libraries for even small features they could code themselves. They’re just lazy.

This. Apparently not having any control over source (and therefore quality, bugs and security) is great, when you get "free security fixes". I would personally rather the ability to know when something changed, why it changed, and have complete control over the quality side of things, but apparently I'm a dinosaur.

permalink parent save report block reply
▲ 4 ▼
– deleted 4 points 3 years ago +4 / -0
▲ 1 ▼
– PaidSockPuppet 1 point 3 years ago +1 / -0

Haha. Yes it seems that way.

permalink parent save report block reply
▲ 3 ▼
– krzyzowiec 3 points 3 years ago +3 / -0

I once suggested in /r/JavaScript that you didn't need to use a date formatting library, as it is simple enough to code it for yourself. (date handling is taken care of by pure JavaScript)

I got called an idiot lol. People told me "You shouldn't try date handling yourself, it's dangerous and there are lots of corner cases!". I wasn't telling anyone to implement date handling themselves, just formatting the date for your app...

No go ahead and pull in some giant library that is overkill for what you need just because you're afraid of coding something yourself for once.

permalink parent save report block reply
▲ 2 ▼
– PaidSockPuppet 2 points 3 years ago +2 / -0

I agree.

A large library represents a large attack surface and likely on features that are not even required.

Case in point; I developed an API for my company's products for logging. Some of the newer employees couldn't fathom that I would write anything to do with logging. After all, there's many different libraries out there already. This is true, of course, but my API acted as a façade for the functionality that we actually needed. Thus, we could have unit tests that proved the functionality that we actually needed, worked the way we expected. Any library could be used to implement the different behaviors.

The benefits; we were not tied to a specific library or implementation. In some cases we would implement our own functionality. We were always covered for regressions. We didn't have to worry about some open source guy making a change that violated our functional requirements, or introducing a new bug. Our client code didn't have to give a shit about different implementations, due to the abstraction.

The downside of this approach was that if a library implemented a great new feature that we decided we wanted, we would have to extend our façade, but actually that's not such a big deal. It's consistent with our philosophy of not coding for the future (that future may never come).

Another down side is that even though we essentially abstracted away the possible use of features that we didn't need, if a security issue was identified in a library component, our new age build processes would require upgrading, even if the feature with the security issue was not being used. To that end, the isolation we achieved through the abstraction was still subject to involuntary changes of underlying components imposed by carte blanche security policy. But at least we still had automated tests to ensure that our own feature requirements were met.

Having that ability to sleep at night is key for me. Having to worry that some open source library is going to fuck something up, or make a design decision that fucks up our products, is not my idea of fun. But apparently many think it's the only way. I think maybe I have been in the game too long!

permalink parent save report block reply
▲ 3 ▼
– brain_implant 3 points 3 years ago +3 / -0

People still use slashdot?

Haven't been there in years, is it worthwhile or turned into a leftist shithole?

Also all the people attacking the author. This is an example of looking the other way when someone is trying to get help. The author clearly needed help but no one stepped up (aka rich people). So many like the author would have worked tirelessly if just given financial support. The rich are failing society by hoarding wealth.

permalink save report block reply
▲ 3 ▼
– beyond 3 points 3 years ago +3 / -0

Good to know lmao. I use faker.js a lot, but won't be a difficult package to remake myself for personal projects.

It's kinda funny that he wants a "six figure salary" for a random data generator

permalink save report block reply
▲ 2 ▼
– MindlessRationality 2 points 3 years ago +2 / -0

This is great. Love it. I have been thinking stuff like this for a while.

If the corporation literally won't support the package and uses like Amazon does...fuck them. They deserve to crash lmao.

Anyone should know this is the flaw in packages.....all critical systems should have a user managed package repository for version control and should be patched appropriately but by the actual team.

Amazon is a scumbag company. They are shit through and through. AWS is a cancer on humanity.

permalink save report block reply

GIFs

Conspiracies Wiki & Links

Conspiracies Book List

External Digital Book Libraries

Mod Logs

Honor Roll

Conspiracies.win: This is a forum for free thinking and for discussing issues which have captured your imagination. Please respect other views and opinions, and keep an open mind. Our goal is to create a fairer and more transparent world for a better future.

Community Rules: <click this link for a detailed explanation of the rules

Rule 1: Be respectful. Attack the argument, not the person.

Rule 2: Don't abuse the report function.

Rule 3: No excessive, unnecessary and/or bullying "meta" posts.

To prevent SPAM, posts from accounts younger than 4 days old, and/or with <50 points, wont appear in the feed until approved by a mod.

Disclaimer: Submissions/comments of exceptionally low quality, trolling, stalking, spam, and those submissions/comments determined to be intentionally misleading, calls to violence and/or abuse of other users here, may all be removed at moderator's discretion.

Moderators

  • Doggos
  • axolotl_peyotl
  • trinadin
  • PutinLovesCats
  • clemaneuverers
  • C
Message the Moderators

Terms of Service | Privacy Policy

2025.03.01 - j6rsh (status)

Copyright © 2024.

Terms of Service | Privacy Policy