Re: Capabilities interact nicely with Substructural Types and Reactivity

"Karp, Alan H" <[email protected]>
Newsgroups gmane.comp.capabilities.general
Message-ID <8AD823089998C849A832D86972E69CD53E6FC743@G9W0755.americas.hpqcorp.net>
è For example, it may be that we want to forbid the untrusted code from constructing its own local state

OK.  I’ll be the kid in class who asks the question a lot of the other kids are too shy to ask.  What is the value of such a restriction?  It sounds to me like a language that doesn’t allow you to allocate temporary space.  A simple use case would help me understand the requirement.

________________________
Alan Karp
Principal Scientist
Enterprise Services, Office of the CTO
Hewlett-Packard Company
1501 Page Mill Road
Palo Alto, CA 94304
(650) 857-3967, fax (650) 857-7029
http://www.hpl.hp.com/personal/Alan_Karp

_______________________________________________
cap-talk mailing list
[email protected]
http://www.eros-os.org/mailman/listinfo/cap-talk
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.