Kind listens

 Listen

Listened to What's new with GrimoireLab, the open-source community analytics platform by CHAOSS Project 
Post details
In this episode, host Georg Link is joined by guests Courtney Robertson and Santiago (Santi) Dueñas to discuss the latest updates and future directions of GrimoireLab, an open-source tool designed to analyze community health metrics. They dive into how GrimoireLab originated, its current usage, and how organizations like WordPress and Bitergia are utilizing it for community contribution tracking. They explore the challenges of scaling the tool and the needs for further automation and data source integration. Courtney shares insights on how WordPress uses GrimoireLab to track contributors, improve sustainability, and automate reporting, while Santi explains the technical evolution of GrimoireLab, including moving to OpenSearch and improving database performance. Hit download now to hear more!

 Listen

Aside from some crappy commentary about "working by committee" and "cancel culture", there was some interesting bits in this

Listened to Rails is having a moment (again) with David Heinemeier Hansson (DHH), creator of Ruby on Rails (Changelog Interviews #615)
Post details
(Includes expletives) David Heinemeier Hansson (DHH), creator of Ruby on Rails and co-owner of 37signals, joined the show to discuss this Rails moment and renewed excitement for Rails. We discuss hard opinions, developers being cooked too long in the JavaScript soup, finding developer joy, the pros and cons of the BDFL...

 Listen

Listened to Cup o' Go | 🎆 70,000 Go issues, and still going strong, Terraform for Factorio, and John Crickett on learning without LeetCode
Post details
Go 1.23.3 and 1.22.9 releasedProposalsAccepted: 📂 Safer file open methodsLikely accept: Drop macOS 11 support for Go 1.25🎆 The Go project recently passed the 70,000 issues on GitHub, with net/http: short writes with FileServer on macos🇮🇹 GoLab tickets still available, Florence Italy, Nov...

 Listen

Listened to Extract Dependency Data on Scale with Renovate - Sebastian Poxhofer, N26
Post details
As modern platforms integrate an increasing array of tools, so too grows the complexity of software dependencies within your codebase. While mainstream dependencies like Docker images, Terraform and NPM packages are well-covered by existing solutions, what about the myriad obscure or custom tooling, perhaps even manually installed binaries lurking in your Dockerfiles? In this session, we'll unveil an Open Source solution designed to systematically extract data from diverse toolsets. Learn how to effectively catalog, track, and maintain these dependencies, eliminating blind spots and ensuring robustness in your development workflow.

 Listen

Listened to SEV0 2024 | Organization-aware incident response
Post details
See why organizational awareness is an incident superpower with incident.io Product Engineer Lawrence Jones. Lawrence discusses the importance of leveraging organizational context during incident response. He emphasizes using structured data and service catalogs to enhance incident management by bringing valuable organizational knowledge directly to responders.

 Listen

Listened to Unveiling SBOMs: Insights from Allan Friedman of CISA
Post details
In this episode, Viktor dives into the world of cybersecurity with Allan Friedman from CISA, exploring the crucial role of Software Bill of Materials (SBOMs) in securing software supply chains. From the evolution and importance of SBOMs to their technical nuances, and international policy impacts, Allan shares expert insights that are a must-listen for anyone involved in software development, cybersecurity, or IT management.

 Listen

Listened to Mastering OpenSSF Scorecards & SBOMs with Chris Swan
Post details
Joining Viktor Petersson this week is Chris Swan from Atsign, where they dive into the crucial world of Software Bill of Materials (SBOMs) and OpenSSF Scorecards. Chris sheds light on the essential role these tools play in bolstering open source security, sharing expert insights on dependency management, secure coding practices, and the importance of transparency and trust within the tech industry.

 Listen

Listened to SBOMs, CycloneDX, and Software Security with Steve Springett
Post details
Join Viktor Petersson on this episode of Nerding Out with Viktor as he dives into the world of software security and compliance with special guest Steve Springett! They geek out over the latest developments in SBOMs (Software Bill of Materials), exploring how Project Koala is shaping the future of cybersecurity. From breach fatigue to the importance of standardization, Steve shares his expert insights on the challenges and opportunities facing organizations today. Get ready for a thought-provoking conversation that will leave you with a deeper understanding of the complex relationships between software security, compliance, and industry standards.