Simplify captured intrinsic calls with uncurryThis
メンテナーはふだん 1 日以内に返信
まだ誰も着手していません。
評価
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 初心者へのやさしさ
- 48/100
- issue の種類
- リファクタリング
- 明瞭さ
- おおむね明確
- 活発さ
- 活発
- 技術スタック
- javascript
- 領域
- security
調査の方向性
Review the existing intrinsic-capture implementation alongside SES's referenced packages/ses/src/commons.js around line 185. Identify helper and method references that can use receiver-first wrappers, while recording exceptions that should retain direct Reflect.apply. Done means the refactor preserves behavior when guest-visible built-ins are modified and does not change security assumptions.
索引モデルが issue の本文から書いたものです。
説明
The implementation captures intrinsics and repeatedly invokes methods through saved Reflect.apply references. @naugtur suggested using an uncurryThis helper to make this defensive code shorter and easier to review.
Review SES's approach to intrinsic capture and determine where receiver-first wrappers would simplify the existing code without changing its security assumptions. Capture any helper and method references before guest execution; document the exceptions where direct Reflect.apply remains appropriate. Validate that the refactor preserves behavior when guest-visible built-ins are modified.
This is a maintainability proposal, not a claim that the existing captured-Reflect.apply approach is incorrect.
Reference: SES intrinsic capture and uncurryThis.
Based on review feedback from @naugtur, shared in a discussion with the maintainer.
- 主要言語
- JavaScript
- スター
- 43
- フォーク
- 0
- 平均マージ
- 9時間 58分
- マージ済み PR(30日)
- 8
環境構築
このプロジェクトには開発コンテナ、Dockerfile、コントリビューションガイドがありません。まず README を読み、一般的な手順ははじめてのコントリビューションガイドを参照してください。
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
platformatic/secure-eval-worker のほかの issue
-
Dependency Dashboardオープン
難易度 2/5 1〜3時間 初心者へのやさしさ 35/100
platformatic/secure-eval-worker#14 ·
メンテナーはふだん 1 日以内に返信
-
enhancement
難易度 5/5 1週間以上 初心者へのやさしさ 25/100
platformatic/secure-eval-worker#13 ·
メンテナーはふだん 1 日以内に返信
-
難易度 5/5 1週間以上 初心者へのやさしさ 35/100
platformatic/secure-eval-worker#8 ·
メンテナーはふだん 1 日以内に返信
-
難易度 5/5 1週間以上 初心者へのやさしさ 25/100
platformatic/secure-eval-worker#5 ·
メンテナーはふだん 1 日以内に返信
-
難易度 5/5 1週間以上 初心者へのやさしさ 35/100
platformatic/secure-eval-worker#3 ·
メンテナーはふだん 1 日以内に返信
platformatic/secure-eval-worker の issue をすべて見る
似ている issue
-
難易度 2/5 1〜3時間 初心者へのやさしさ 80/100
-
bug
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
NationalSecurityAgency/skills-service#4052 ·
メンテナーはふだん 1 日以内に返信
-
documentation
難易度 1/5 1時間未満 初心者へのやさしさ 88/100
githubnext/gh-aw-workshop#4251 ·
メンテナーはふだん 1 日以内に返信
-
customer-support needs-triage Platform(Default)
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
メンテナーはふだん 2 日以内に返信
-
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
Leonxlnx/taste-skill#129 ·
メンテナーはふだん 1 日以内に返信