Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Express.js repo swamped with spam PRs thanks to YouTube tutorial (twitter.com/feross)
18 points by nailer on Feb 14, 2024 | hide | past | favorite | 7 comments


This is peak comedy to me.

Here's that YouTube tutorial: https://www.youtube.com/watch?v=Ez8F0nW6S-w

Starting at around 1:12:00 they fork express.js and show how to make a pull request.



There’s even a pinned comment from 5 months ago telling everyone to not create test PRs on official repos!


They've now added a GitHub action to detect spam pull requests:

https://github.com/expressjs/express/pull/5480/files


You'd be surprised how many repos have to deal with spam pull requests from people running broken spell checkers, trying to farm brownie points.


This was also a huge obnoxious issue when I think GitHub was offering some kind of promotional T-shirt for a certain number of open source related pull requests.

There needs to be a way to setup a filter that auto denies comment only based PRs, unless it comes from a dev with a certain minimum "reputation / contribution" threshold score.


You might be thinking of digital ocean's hacktoberfest




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: