Live data from Hacker News

Secure Custom Fields by WordPress.org

wordpress.org

41–50 of 210 posts

Re: Secure Custom Fields by WordPress.org

#41

If anyone from Automattic is reading this and would like to confidentially leak any internal information about this behaviour from Matt, please email admin@bullenweg.com and I will publish it on bullenweg.com.

This is excellent! Is there a repo of this website? It would be good to have for preservation purposes.

It actually is an excellent website, and the repo is here: https://github.com/bullenweg/bullenweg.github.io

Re: Secure Custom Fields by WordPress.org

#43
post #30

OK so: 1) WordPress clearly lacks functionality like ACF that belongs in core 2) Many developers clearly like ACF 3) Many do not (it's messy in the DB, if you ask me) 4) Core functionality that was if not API-compatible, at least API-familiar with ACF would be welcomed by many 5) Creating a new plugin that did this, that was transitioned into core (like other functionality has been), would be a good plan 6) Commandee…

The fucked thing is that per the article, they're not even dedicating any resources to maintain it going forward, they've just made this one fix and are throwing it to other people to maintain if they want: > Going forward, Secure Custom Fields is now a non-commercial plugin, and if any developers want to get involved in maintaining and improving it, please get in touch.

We have taken on stewardship of this code going forward, and will dedicate engineers to it. Probably more than Silver Lake does.

Re: Secure Custom Fields by WordPress.org

#44

Earlier quoted context omitted.

If you look at the reviews, they took over the advanced-custom-fields plugin and modified the owner to be Wordpress.org and renamed it to Secure Custom Fields. What a terrible look They also modified it by ripping out the pro features, so if people update their ACF Plugin and they had pro features enabled, it'll just break their install https://plugins.trac.wordpress.org/changeset/3167679/advance...

What a choice, and what poor timing. Companies that make breaking changes on holiday weekends aren’t going to earn much goodwill from developers.

Nothing has broken. Perhaps WP Engine should have consider that before suing us.

Re: Secure Custom Fields by WordPress.org

#45

So WordPress-the-org — which is effectively Matt, as far as I can tell — just Sherlocked a developer's plug-in using the developer's own code, ostensibly as retribution for a security issue that the developer had already fixed. https://www.advancedcustomfields.com/blog/acf-6-3-8-security... What am I missing?

> Sherlocked

The verb you're looking for is stole

Sherloking is when a Walmart is built next to a cornershop. Here the dude tore open the corner shop while claiming to be a victim.

Re: Secure Custom Fields by WordPress.org

#47

So WordPress-the-org — which is effectively Matt, as far as I can tell — just Sherlocked a developer's plug-in using the developer's own code, ostensibly as retribution for a security issue that the developer had already fixed. https://www.advancedcustomfields.com/blog/acf-6-3-8-security... What am I missing?

[deleted]

Re: Secure Custom Fields by WordPress.org

#48
post #8

We no longer do custom WordPress work --- it turned out to never be worth the hassle --- but when we did, our company used ACF extensively. High quality plugin with responsive support and very fair licensing terms. This --- to me --- smacks of complete bullshit.

It is complete bullshit, but calling ACF high quality is also pretty out there.

It's one of those giants in WP that is stuck in the past, arguably much like a lot of core.

Post reply on HN