Ive been looking for something to help the navidrome server do its thing, and this looks awesome, but there is one issue that was just opened and closed yesterday, it looks a little sus?

how does one go about digging through and discovering if this is malicious or not?

  • just_another_person@lemmy.world
    link
    fedilink
    English
    arrow-up
    24
    arrow-down
    8
    ·
    3 days ago

    It’s a dumbass AI-powered recommendation engine with an awful GUI. That’s about it.

    As far as it being malicious, that’s really up to you.

    • ryokimball@infosec.pub
      link
      fedilink
      English
      arrow-up
      24
      ·
      3 days ago

      Looks like on Reddit, the creator is blocking people from reporting things like sending data to foreign servers.

      • desentizised@lemmy.zip
        link
        fedilink
        English
        arrow-up
        12
        ·
        edit-2
        3 days ago

        That was the red flag for me personally in terms of giving it a try. At the first accusation they said “the code is there, I have nothing to hide” (which is entirely fair) but then it devolved into (paraphrasing) “I took down issue reporting because people kept abusing it.”

        So assuming the best case scenario where the code is clean and it’s just a misunderstanding you’re still looking at a creator who is willing to censor the community they simultaneously seem particularly eager to reach by self-promoting their project. Not my jam.