git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: Credential improvements need review

From
Glen Choo <chooglen@google.com>
Date
Jul 25, 2023, 21:09 UTC
Message-ID
<kl6lila7zojq.fsf@chooglen-macbookpro.roam.corp.google.com>
In-Reply-To
<xmqqzg3jltyr.fsf@gitster.g>
Junio C Hamano <gitster@pobox.com> writes:
Show 31 quoted lines
>> Hi. Is anyone able to help review these changes?
>>
>> https://lore.kernel.org/git/pull.1529.git.git.1687596777147.gitgitgadget@gmail.com/
>> https://lore.kernel.org/git/pull.1527.git.git.1687591293705.gitgitgadget@gmail.com/
>
> Thanks for pinging.  One thing that may help (both patches, my
> understanding is that they are of the same spirit, just one is for
> libsecret while the other one is for wincred) is to describe the
> problem the patches attempt to address a bit more.  For example,
> in one of them:
>
>     Fix test "helper ... does not erase a password distinct from input"
>     introduced in aeb21ce22e (credential: avoid erasing distinct password,
>     2023-06-13)
>
> we can read from the above proposed log message that it is a "fix"
> to some bug, and that the "bug" was introduced by the named commit,
> but there are a few things that it does not explain, that could have
> helped readers to convince themselves that the changes in the patches
> are addressing the right problems and solving them in the right
> way.  For example,
>
>  * how does the "bug" manifest itself in an observable way to the
>    end-users?  "When they do X, they expect Y to happen, but instead
>    Z happens, and doing Z breaks expectation of users expecting Y in
>    this (W) way."
>
>  * what was wrong in the code that led to the "bug"?  Was it testing
>    a wrong condition before making a call to some system service?
>    Was the condition it checked correct but it made a call in a
>    wrong way (and if so how)?

Thanks, I saw the original ping and took a look, but I came away with exactly the questions you raised here.

Previous: Junio C HamanoNext: M Hickford
Message 4 of 5 in “What's cooking in git.git (Jul 2023, #04; Wed, 19)”
  1. Junio C HamanoJul 19, 2023
  2. Credential improvements need reviewM Hickford, Jul 24, 2023
  3. Junio C HamanoJul 25, 2023
  4. Glen ChooJul 25, 2023
  5. M HickfordJul 26, 2023

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.