You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository has been archived by the owner on Feb 11, 2018. It is now read-only.
The command pocket-cli configure by default leaves ~/.pocket-config file world readable:
$ ls -l ~/.pocket-config
-rw-r--r-- 1 kseistrup kseistrup 166 Feb 20 11:29 /home/kseistrup/.pocket-config
Since this file contains sensitive information (consumer_key and access_token) the file should be made readable only by the user (umask 0077) or at most by the user and their group (umask 0027) by setting thwe umask before creating the file.
The reason for using the cryptic int('0077', 8) is that octal 0077 is presented like that in Python 2, while Python 3 uses 0o077 (which isn't recognized by Python 2).
The text was updated successfully, but these errors were encountered:
The command
pocket-cli configure
by default leaves~/.pocket-config
file world readable:$ ls -l ~/.pocket-config -rw-r--r-- 1 kseistrup kseistrup 166 Feb 20 11:29 /home/kseistrup/.pocket-config
Since this file contains sensitive information (
consumer_key
andaccess_token
) the file should be made readable only by the user (umask 0077) or at most by the user and their group (umask 0027) by setting thwe umask before creating the file.E.g.,
The reason for using the cryptic
int('0077', 8)
is that octal 0077 is presented like that in Python 2, while Python 3 uses 0o077 (which isn't recognized by Python 2).The text was updated successfully, but these errors were encountered: