Kind likes

 Like

Liked by Ryan Barrett 
Post details
The Great Supply Chain Security Paradox: “every open source lib is getting owned! wait at least a week to patch, let other people find the supply chain breaches before you” “AI is reversing all these …

 Like

Liked GOTO Conferences (@gotocon.com)
Post details
Turns out running a great #EngineeringTeam has a lot in common with running a Dungeons & Dragons campaign 😄 @brunty.me connects D&D, leadership, collaboration, problem-solving & SW development in one of the most unexpectedly relatable talks at @yowconf.bsky.social. Watch: https://youtu.be/VN9j3NSoeps?list=PLEx5khR4g7PLjpaSO0XI-6euF483ORLyJ

 Like

Liked Back for a celebratory one-off weekend Homebrew Website Cub London in-person, July 25th from 10am https://events.indieweb.org/2026/07/-hwc-london-celebrating-10-years-in-person-event--2a76zv5YisHX #indieweb https://www.calumryan.com/notes/3720 by https://calumryan.com/and Calum Ryan 
Post details
Back for a celebratory one-off weekend Homebrew Website Cub London in-person, July 25th from 10am https://events.indieweb.org/2026/07/-hwc-london-celebrating-10-years-in-person-event--2a76zv5YisHX …

 Like

Liked Jamie Magee (@jamiemagee.bsky.social)
Post details
npm staged publishing has shipped 🎉 Your CI can now stage a publish without 2FA, but a human still has to approve it with a hardware key before anything goes live on the registry. Stolen npm tokens stop being game over. Big deal for the Shai-Hulud class of worm. https://docs.npmjs.com/staged-publishing

 Like

Liked System Initiative is shutting down and pivoting
Post details
System Initiative is a deployment/orchestration tool similar to Ansible, Terraform, etc. The following podcast gives a good overview: They recently decided to shut down their cloud service. The following video gives some insight into why: There are a few notable points: Something has changed in the last 6 months. AI coding is getting good. This is an example of how AI has completely upset a company’s plans. Velocity has increased tremendously in development. Ops will follow d...

 Like

Liked Jamie Magee (@jamiemagee.bsky.social)
Post details
Just opened an npm RFC to make dependency install scripts opt-in by default. The thing about install scripts: they run the moment a package lands in your dep tree. No require, no review. That's why Shai-Hulud, chalk/debug, and Axios all used them. https://github.com/npm/rfcs/pull/868

 Like

Liked Alan Shortis (@short.is)
Post details
After a lot of film scanning, selection, and building, I have a new photography section up and running Photos going back more than 20 years, through digital and film, and a good amount of travel short.is/photography/ https://short.is/photography/