Risotto Bias
@risottobias@toot.risottobias.org
Posts
-
Me: oh, we could buy an oscilloscope! -
This post did not contain any content.@da_667 @SwiftOnSecurity y'all are like five layers deep and way over my head
-
PSA: go.sum is not a lockfile.@filippo "then what is it?"
best guess at what could go there?
"go.sum detects tampering in transit or in your local ~/go cache, for specific tagged versions of dependencies; it isn't locked to a particular version, it's the last time you pulled & computed hashes for those tags"