JamonBear@sh.itjust.workstoSelfhosted@lemmy.world•What’s the newest way of watching YouTube?English
371·
6 days agoyt-dlp --sponsorblock-remove all <url>
is the way. It turns playlist link into nicely named, curated video files awaiting to played by a regular video player
Agreed.
Also gtfobins is a great resource in addition to shellcheck to try to make secure scripts.
For instance I felt upon a script like this recently:
#!/bin/bash # ... some stuff ... tar -caf archive.tar.bz2 "$@"
Quotes are OK, shellcheck is happy, but, according to gtfobins, you can abuse tar, so running the script like this:
./test.sh /dev/null --checkpoint=1 --checkpoint-action=exec=/bin/sh
ends up spawning an interactive shell…So you can add up binaries insanity on top of bash’s mess.