Skip to main content
Stack Overflow
  1. About
  2. For Teams

Timeline for Node/Express security

Current License: CC BY-SA 4.0

14 events
when toggle format what by license comment
Jun 20, 2020 at 9:12 history edited Community Bot
Commonmark migration
Dec 16, 2019 at 17:15 comment added error @jfriend00 It wasn't me who asked the question but I guess that the author did some research to find out these packages and thanks to him, beginners could know the value of each package. But yes, I agree in global. Everyone has to read documentations before asking
Dec 16, 2019 at 17:08 comment added jfriend00 @error - Ironically, the most useful parts of Brad's answer are not really the ones that answer the question you ask (you asked about overlap between the packages). The most useful part of Brad's answer is the commentary on the general value of each package on its own (not how it overlaps to the others). That is useful stuff to read. Anyway, I've said my piece now. I'll go see if I can find some questions to answer.
Dec 16, 2019 at 17:06 comment added jfriend00 @error - But you have to agree that your question "looks" like you don't even begin to know which of these packages might overlap with one another which leads one to some conclusions about how much of your own research you've done. Maybe it just looks bad, but looks is all we have to go by here since that's our entire impression of your pre-question effort. I would have thought you could have said something like "Package A and package B both seem to do X. Do I need both of them?" and things like that. I actually think you would have answered most of your original question in doing that.
Dec 16, 2019 at 17:01 comment added error @jfriend00 I agree with you, users have to do some research before asking questions. But, here the question was not "how can I secure my express app".Brad did a good job, his answer is really useful
Dec 16, 2019 at 16:41 comment added jfriend00 @error - That's the direction I try to educate people to avoid. I'd suggest you read How much research effort is expected of stack overflow users. It covers the concept quite well. In addition to the couple top rated answers there, also see this one that I think is particularly insightful.
Dec 16, 2019 at 16:40 comment added jfriend00 @error - Brad added some very interesting commentary about what people think of the techniques used in each of these packages. That was indeed useful. But, if the whole site falls down to the level of people asking questions that appear to have done none of the simple research for things that are easy to find on the internet which is what your question appears to be, then this site will become a lot less useful to a lot of people.
Dec 16, 2019 at 10:46 comment added error @jfriend00 Like Brad said, it's not easy to find out all of this by simple research on Google. Hopefully Brad doesn't think like you
Dec 16, 2019 at 10:46 comment added error @Brad Thank you for your answer which is really usefull for beginners
Dec 9, 2019 at 16:35 vote accept Shashika Virajh
Dec 9, 2019 at 15:41 comment added Brad @jfriend00 If I thought that this person could figure it out by simple research, I would have not answered the question in the way I did. Sure, this person could have read the README files, but as indicated in my answer, many of these modules are flawed from the beginning and generally shouldn't be used. I'm addressing the core problem/question (why not [instant security]), pointing out the issues in the various modules listed, and providing myself a question that I can link to in the future. This issue comes up regularly, and the old answer for PHP doesn't apply as often.
Dec 9, 2019 at 8:09 comment added Shashika Virajh Thanks Brad. Really appreciate your suggestions.
Dec 9, 2019 at 6:37 comment added jfriend00 It really seems like the OP should have done their own research on this BEFORE coming here and posting a generic, non-specific question like they did. Instead, you bailed them out and did the research for them. As you are obviously very experienced around here, I would hope you also want to teach people to do their own research before they come here. They, after they do their own research, they can ask a much more specific and meaningful question.
Dec 9, 2019 at 5:48 history answered Brad CC BY-SA 4.0

AltStyle によって変換されたページ (->オリジナル) /