Omar on Nostr: I don’t have any clear conclusion following the xz hack. Crux of the problem are: ...
I don’t have any clear conclusion following the xz hack. Crux of the problem are: software complexity, huge chains of dependency, general lack of dev time to do things well. Both closed-sources and OSS seem equally vulnerable tbh.
Always been stubbornly picky with merging PRs, scrutinizing every bits, because I want protect software quality above all. I can relate to the pressure maintainers may feel when it comes to merge features that are actually out of their understanding. I try not to.
Always been stubbornly picky with merging PRs, scrutinizing every bits, because I want protect software quality above all. I can relate to the pressure maintainers may feel when it comes to merge features that are actually out of their understanding. I try not to.