every time I look into increasing my security slightly, I am faced with options that are somewhere along the lines of: 1. a definite improvement 2. a possible improvement if I jump through a bunch of hoops 3. containing a giant obvious hole which completely invalidates (1) and (2), is apparently completely standard practice across all industries, and the only work-around would be to manually perform a line-by-line audit that I am not qualified to do.
coding, devops, open-source advocate, idealist, pedant.