Readit News logoReadit News
ocodo commented on Do not use secrets in environment variables   nodejs-security.com/blog/... · Posted by u/dangtony98
sshine · a year ago
Yeah, equally disappointed.

I know vendors secret stores are better.

But what do I do that isn’t vendor-locked and is remotely as simple as environment variables?

ocodo · a year ago
passwordstore.org ...

use pass.

ocodo commented on Do not use secrets in environment variables   nodejs-security.com/blog/... · Posted by u/dangtony98
thomascountz · a year ago
For Mac, I use `security set-generic-password` and `security find-generic-password` to manage secrets using Keychain.

Inspiration here: https://gist.github.com/bmhatfield/f613c10e360b4f27033761bbe...

Then you can use it like this:

export OPENAI_API_KEY=$(keychain-environment-variable OPENAI_API_KEY)

ocodo · a year ago
as a cross platform alternative, I use pass (https://www.passwordstore.org)

    export OPEN_API_KEY=$(pass show open_api_key)

Deleted Comment

ocodo commented on OpenAI to become for-profit company   reuters.com/technology/ar... · Posted by u/jspann
ocodo · a year ago
Oh! You don't say.
ocodo commented on Can't change security policy or disable SIP with macOS 15 Sequoia   lapcatsoftware.com/articl... · Posted by u/transpute
linuxguy2 · a year ago
and iTerm, Zoom, WebEx, Teams, talosctl... All kinds of prompts like that only to find everything enabled.
ocodo · a year ago
It was when Apple started to imply that Chromium, LibreOffice etc was Malware...

Yeah, sure Apple.... sure.

ocodo commented on Can't change security policy or disable SIP with macOS 15 Sequoia   lapcatsoftware.com/articl... · Posted by u/transpute
DidYaWipe · a year ago
After upgrading, I was prompted to allow the AltTab utility to control something "for one month," or to open Settings. So I opened Settings and everything was already enabled.

The question is who is clamoring for all this BS? The cynic would say that Apple is prepping us all for the eventual iOSification of Macs, where you can't do squat. Which will leave only Linux as a viable (AKA tolerable) computing platform.

ocodo · a year ago
To be fair, I switched away from Windows back in ~2004 and used Macos pretty much exclusively since then, with the exception of Linux, which wasn't feeling as good for desktop.

I switched again, in Dec 2023 to Linux as desktop, due to the kind of issues we're discussing ITT, and also due to Apple's "buy new, you can't repair" effective hardware policy.

I setup a couple of Windows 11 machines with WSL too, and tend to use them a lot more than I expected. There's issues, and I'm still figuring some things out wrt to doing things in Windows (not WSL) but the experience is significantly better than expected.

I'm not a fan of M$ but Apple are really taking the cake for anti-user hostility these days.

Deleted Comment

ocodo commented on Pivotal Tracker will shut down   pivotaltracker.com/blog/2... · Posted by u/sandinmyjoints
ethbr1 · a year ago
Unfortunate. Of all the PM tools I've used, I hated Pivotal the least.

It made it easy to do the things that were frequently done.

It limited customization down to a sane level.

And it generally seemed to stay out of the way (significant look at Jira).

ocodo · a year ago
Agreed, as an ex-pivot I really liked PT (relative to Jira et al.)

It was clear the VMWare was going to gut the company, and Broadcom only made that clearer.

It was once a great company... (Pivotal Labs)

Now it's toast.

ocodo commented on Reasons I still love the fish shell   jvns.ca/blog/2024/09/12/r... · Posted by u/robenkleene
ocodo · a year ago
Summary:

"I still haven't used Xonsh"

ocodo commented on Ask HN: Who wants to be hired? (September 2024)    · Posted by u/whoishiring
ocodo · a year ago

    Location: Thailand (North East) (UTC+7)
    Remote: Yes
    Willing to relocate: No, remote-only please

    Technologies: 
    Swift, Python, Lisp, C, JS, NodeJS, TypeScript, Ruby, Kotlin, 
    Java, Go, Linux, MacOS, Windows (more in CV)

    Resume/CV: 
    https://docs.google.com/document/d/1KhAFd1iogIxB4E1m0Gb-sQN1ip2BfpTD/pub
    
    email: jasonm23 at gmail.com
Hi there, I'm Jason. I'm a senior full stack developer with years of experience. I'm looking for anyone that needs a hand with things.

Freelance, part-time, are ideal.

u/ocodo

KarmaCake day167August 25, 2014View Original