As I'd mentioned previously on the mailing list, I have a security concern.
I don't think that it applies to versions of NodeJS past 0.8.x but you may
like to check that out.

Full details here:

http://egoless-self-promotion.blogspot.com.au/2014/05/nodejs-08x-may-leak-your-environment.html

TLDR: The .lock-wscript file contains a dump of your environment variables
and may be inadvertently published along with your source-code.

Cheers
Ritchie

-- 
Job board: http://jobs.nodejs.org/
New group rules: 
https://gist.github.com/othiym23/9886289#file-moderation-policy-md
Old group rules: 
https://github.com/joyent/node/wiki/Mailing-List-Posting-Guidelines
--- 
You received this message because you are subscribed to the Google Groups 
"nodejs" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/nodejs/CAJJUJJq7Bfq_ZRS%2BcVyXHaqLhwJ4-1FTZYvt9y3-N-FfJ8cxBw%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to