Re: A code review if you please (code)

by Brovnik (Hermit)
on Jul 03, 2001 at 13:33 UTC ( #93446=note: print w/replies, xml ) Need Help??

in reply to A code review if you please (code)

Evalling code sent to you by someone else looks dangerous to me.

Are you going to do any checking ?

Presumably you trust those sending code to you, but what happens one day when a virus gets through ?

Maybe you should consider some sort of verification with a certificate.

How about using e.g. PGP or GnuPG to sign code snippets. You could then only import code from those on your keyring. Add those you trust to the keyring.

The code to send a new code snippet could do the signing for you almost (except for the passphrase) invisibly.

