That’s funny. I spotted a similar issue in their Go SDK[1] a few years back. I was pretty appalled to see such a basic mistake from a security company, but then again it is Okta. [1]: https://github.com/okta/okta-sdk-golang/issues/306
> I was pretty appalled to see such a basic mistake from a security company, but then again it is Okta. Oh. Em. Gee. Is this a common take on Okta? The article and comments suggest...maybe? That is frightening considering how many customers depend on Okta and Auth0.
Okta's NextJS-0auth troubles
11–20 of 167 posts
Re: Okta's NextJS-0auth troubles
#12I think GitHub should allow disabling PRs. I don't believe most big corporations are interested in dealing with fly-by contributions because it might make them look bad or be riddled with quality issues. Also some projects like the Linux kernel are just mirrors and would be better off with that functionality disabled.
Re: Okta's NextJS-0auth troubles
#13Re: Okta's NextJS-0auth troubles
#14I think GitHub should allow disabling PRs. I don't believe most big corporations are interested in dealing with fly-by contributions because it might make them look bad or be riddled with quality issues. Also some projects like the Linux kernel are just mirrors and would be better off with that functionality disabled.
Re: Okta's NextJS-0auth troubles
#15I think GitHub should allow disabling PRs. I don't believe most big corporations are interested in dealing with fly-by contributions because it might make them look bad or be riddled with quality issues. Also some projects like the Linux kernel are just mirrors and would be better off with that functionality disabled.
While that is true, I feel like it is irrelevant here since it seems like Okta definitely wants (and perhaps needs ) the fixes. God only knows why GitHub still forces it on though. Early on it might've been some mechanism to encourage people to accept contributions to push the social coding aspect, but at this point I have no idea who this benefits, it mostly confuses people when a project doesn't accept PRs.
They definitely don't want them if their process requires signed commits and their solution is 1) open another PR with the authors info then sign it for them, and 2) add AI into the mix because git is too hard I guess?
No matter how you slice it, it doesn't seem like there are Okta employees who want to be taking changes from third parties.
Re: Okta's NextJS-0auth troubles
#16I think GitHub should allow disabling PRs. I don't believe most big corporations are interested in dealing with fly-by contributions because it might make them look bad or be riddled with quality issues. Also some projects like the Linux kernel are just mirrors and would be better off with that functionality disabled.
While that is true, I feel like it is irrelevant here since it seems like Okta definitely wants (and perhaps needs ) the fixes. God only knows why GitHub still forces it on though. Early on it might've been some mechanism to encourage people to accept contributions to push the social coding aspect, but at this point I have no idea who this benefits, it mostly confuses people when a project doesn't accept PRs.
Re: Okta's NextJS-0auth troubles
#17This one is amusing, and as another comment mentioned below, large companies are awful at accepting patches on github. Most use one-way sync tools to push from their internal repositories to github.
Re: Okta's NextJS-0auth troubles
#18Re: Okta's NextJS-0auth troubles
#19I think GitHub should allow disabling PRs. I don't believe most big corporations are interested in dealing with fly-by contributions because it might make them look bad or be riddled with quality issues. Also some projects like the Linux kernel are just mirrors and would be better off with that functionality disabled.
Re: Okta's NextJS-0auth troubles
#20Okta is, if you may excuse my French, straight garbage.