Kind likes

 Like

Liked Luna (@luna@pony.social)
Post details
[…some time later…] “heya, I’m back!!” “oh hey how’d it g- babe I thought I told you to change your eyeliner, you know how badly the cheap stuff runs” “yeah, I know…” “wait, are those bruises?! …I’m gonna guess you didn’t get the job?” “I start Monday!”

 Like

Liked OpenSSF (@openssf@social.lfx.dev)
Post details
Attached: 3 images Join us at State of Open Con, where open source innovators unite to tackle challenges across software, data, and hardware. OpenSSF is excited to be part of the conversation today and tomorrow! 💬 #OSSSecurity @openuk@hachyderm.io @Omkhar@infosec.exchange

 Like

Liked DVD (@dvdgc13@octodon.social)
Post details
Quantifying your reliance on #OSS by @www.jvt.me@www.jvt.me They started to create a dependency tree to determine whether they should take part in #hacktoberfest. But it's not always ☀️🌈 as in some cases all depends on a very fragile library ([xkcd comic#2347](https://xkcd.com/2347/)) Understanding how your business depends on software is important from a few points: - how am I affected by migrating away from #OpenSource - usage of unwanted libraries - understand usage of libraries and their versions - discover unmaintained, deprecated or vulnerable software But all that applies to #InnerSource too!! - how maintained are the dependencies? - how are the security practices followed in the supply chain? How can we do it? It can be done using #OpenSource with dependency-management-data https://dmd.tanna.dev/ with a CLI and web interface. It uses a #sqlite db, and provides a graphQL api too. And without vendor locking! Dependabot API helped him to get some insights to know where contribute that were helpful to the company he was working. But it was not enough information. endoflife.date helped him to find what's soon to expire and other similar websites for other info. `dmd` helps in an easier way and it uses #renovate and other tools and services to get all the data for the model. Then you can query the db with what you are interested. It comes with some pre-baked queries. For #InnerSource you could define advisories and policies for when you don't have open APIs to query for that information. For example, flag when some software is using an old git server instance or set a set of code owners, or how many customer facing is using an outdated dependency. Their [website has some case studies with more examples](https://dmd.tanna.dev/case-studies/). #SOOCON24

 Like

Liked mcc (@mcc@mastodon.social)
Post details
Another thing I am begging of people who make APIs: When you include sample code in the docs, include the "using"/"use"/"import"/"#include" statements. Please. Please. I just pasted this inline sample code https://mlem.ellpeck.de/articles/ui.html#setting-it-up into my hello world program, and it's failing because the symbol "UntexturedStyle" could not be found. "Are you missing a using directive or an assembly reference?", asks dotnet. Yeah, probably?? because you didn't tell me what using directives I needed?!?

 Like

Liked Anders Eknert (@anderseknert@hachyderm.io)
Post details
I just published #Regal v0.16.0. This release brings two new linter rules, but most importantly it adds a language server (LSP) mode to Regal, allowing editor integrations to lint your workspace continuously as you work on your #Rego policies. Client implementations soon to follow. Exciting times! Thanks @charlieegan3 for an awesome contribution! https://github.com/StyraInc/regal/releases/tag/v0.16.0 #OPA #Linter #DevOps #DevSecOps #IAM #PolicyAsCode

 Like

Liked Terra: Chaos Lesbian (@Terra@chaosfem.tw)
Post details
Sitting in a restaurant in Portland while two guys next to me talk about bear hunting, when to go, what to shoot, whether to shoot grizzly or polar bear, when you can shoot juveniles and females … I'm starting to cry when one says "I can't really shoot polar bear too late in the season because I don't have the right lens." They are photographers. I love you Portland.

 Like

Liked Luna (@luna@pony.social)
Post details
“so Luna, what did you get up to today?” I’m so glad you asked! I spent the afternoon figuring out all sorts of css crimes to give an interactive light hypnotic induction the “copying the website UI” visual treatment it needed. How was your day? https://cohost.org/lunasorcery/post/4325452-cw-hypnosis-hypnok

 Like

Liked Anders Eknert (@anderseknert@hachyderm.io)
Post details
I’ve helped organize two meetups in London. Only a few would show up for the first one. “Because it’s raining, people rather not go outside”, the other organizers told me. So the next one I hosted was in the summer. Only a few would show up for that one. “Because it’s not raining, people rather be outside” the other organizers told me.