Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
daniel:// stenberg://
daniel:// stenberg://
@bagder@mastodon.social  ·  activity timestamp 3 days ago

It's about sustainability too. #curl is a small project. We cannot spend multiple hours every day arguing with people who want money for having found what is perhaps a bug - but often is not even that.

It drains us. It drowns us.

Onward and upward!

  • Copy link
  • Flag this post
  • Block
eb4890
eb4890
@eb4890@mastodon.social replied  ·  activity timestamp 3 days ago

@bagder have you thought about having an LLM triage bugs (with the submitter paying for the cost of the LLM calls)

  • Copy link
  • Flag this comment
  • Block
Mopman :rainbowdance:
Mopman :rainbowdance:
@mopman@infosec.exchange replied  ·  activity timestamp 3 days ago

@bagder sigh. Sad to see it happen, from a 'bug bounty guy's I guess who still wants to believe in the model, and was excited to see curl involved but: what else could you do? The relevant interests certainly don't seem to be pushing hard to make it any better.

  • Copy link
  • Flag this comment
  • Block
raupach
raupach
@raupach@wue.social replied  ·  activity timestamp 3 days ago

@bagder Not my call, just out of curiosity: Why even bother with companied like Hackerone?

  • Copy link
  • Flag this comment
  • Block
daniel:// stenberg://
daniel:// stenberg://
@bagder@mastodon.social replied  ·  activity timestamp 3 days ago

@raupach its not about hackerone, it's about bug-bounty

  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.1-beta.35 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct