logoalt Hacker News

Carrokyesterday at 7:14 PM1 replyview on HN

It seemed like the public mode was the default when I set it up. If so, that’s a fairly dangerous default as keeping a “clean” history with no secrets leaked seems neigh impossible.


Replies

asciimooyesterday at 7:25 PM

The default configuration binds only to localhost, and a fresh installation starts with an empty database/index. Could you clarify which specific attack surface you are concerned about in that scenario?

show 1 reply