On Wed, May 26, 2021 at 11:16 AM Kohsuke Kawaguchi <[email protected]> wrote:

> "not encourag[ing] external use" is an unnecessarily negative way of
> framing the mission
>

I think there is a reason for specifically *discouraging* use outside
Jenkins: that we have found the need to fix security vulnerabilities by
defining interfaces in Stapler which are then implemented in Jenkins core.
An external project is unlikely to keep up with these developments, and
thus potentially remain vulnerable. It would be irresponsible to advertise
a library which is unsafe to use on its own.

-- 
You received this message because you are subscribed to the Google Groups 
"Jenkins Developers" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/jenkinsci-dev/CANfRfr2-T0_Yxc1RG34oV66JJhY6yegH_oMOrAN%2BY1-fPCL2VA%40mail.gmail.com.

Reply via email to