Skip to content

Instantly share code, notes, and snippets.

View tofr's full-sized avatar
💭
mothership connection

topher mykolyk tofr

💭
mothership connection
View GitHub Profile
@tofr
tofr / copilot-risk-assessment.md
Created July 12, 2021 22:16 — forked from 0xabad1dea/copilot-risk-assessment.md
Risk Assessment of GitHub Copilot

Risk Assessment of GitHub Copilot

0xabad1dea, July 2021

this is a rough draft and may be updated with more examples

GitHub was kind enough to grant me swift access to the Copilot test phase despite me @'ing them several hundred times about ICE. I would like to examine it not in terms of productivity, but security. How risky is it to allow an AI to write some or all of your code?

Ultimately, a human being must take responsibility for every line of code that is committed. AI should not be used for "responsibility washing." However, Copilot is a tool, and workers need their tools to be reliable. A carpenter doesn't have to