(no title)
tigereyeTO | 1 year ago
Not all nerds know all projects so I decided to educate myself and followed OP’s links to learn about Ultralytics:
> Ultralytics YOLO11 is a cutting-edge, state-of-the-art (SOTA) model that builds upon the success of previous YOLO versions and introduces new features and improvements to further boost performance and flexibility.
Ultralytics’ readme doesn’t explain what ultralytics is or does. Thankfully Zizmor’s readme describes itself clearly:
> zizmor is a static analysis tool for GitHub Actions. It can find many common security issues in typical GitHub Actions CI/CD setups.
This isn’t a critique on OP: I enjoyed reading about the vulnerability(ies!) you found and I learned a lot. I’m just generally frustrated that so many readme files on GitHub fail to describe what the project actually does, Ultralytics being just one example.
Have fun and keep hacking
bobthepanda|1 year ago
woodruffw|1 year ago
https://github.com/woodruffw/zizmor#the-name
hardwaregeek|1 year ago
Eisenstein|1 year ago
xign|1 year ago
This hilariously tech bro optimistic auto-response (made by a bot) from the linked issue (https://github.com/ultralytics/ultralytics/issues/18027#issu...) also gave me a laugh in how out of touch it was with what the issue was.