This content type is full of IndieWeb post types, which are all content types which allow me to take greater ownership of my own data. These are likely unrelated to my blog posts. You can find a better breakdown by actual post kind below:
And again: all this happens in the span of a single month.
I mean, even with the remainder of the Imperial war machine and the two Sith Lords at the wheel, it's kinda a miracle the Empire manages to hang on for another 4 years until Endor.
William Woodruff discussed his project, Zizmor, a security linter designed to help developers identify and fix vulnerabilities within their GitHub Actions workflows. This tool addresses inherent security risks in GitHub Actions, such as injection vulnerabilities, permission issues, and mutable tags, by providing static analysis and remediation guidance. Fresh off the heels of the tj-actions/changed-files backdoor, this is a great topic with some things everyone can do right away. The show notes and blog post for this episode can be found at
I think I have a lot of privilege to speak up and there are a lot of other people like me who should use their privilege to give voice to the people who can’t speak publicly.
I disagree with this point.
I leveraged my privilege to help other people know they weren’t alone in what they were going through.
I met more people from Amazon after publishing this article than in the 4 years I worked there.
I still get DMs about it
https://justingarrison.com/blog/2023-12-30-amazons-silent-sacking/
[contains quote post or other embedded content]
What's in the SOSS? features the sharpest minds in security as they dig into the challenges and opportunities that create a recipe for success in making software more secure. Get a taste of all the ingredients that make up secure open source ...
“🎉Happy Anniversary, Justin! 🥳 You ⭐️starred⭐️ the fish-shell/fish-shell repo five years ago today! 🚀 File a new Issue or PR today! Use Copilot✨ to get started!”
Thanks for listening. Check out all the links to all the things at https://cupogo.dev/.GCC 15.1 Released With Support For COBOLos: Root permits access to parent directoryGOOS=noneThe "most ergonomic" config libraryGo Meetup in San Francisco - Sponsored by Elastic & Cup o' GoLinkedIn...
Kaizen 19 has arrived! Gerhard has been laser-focused on making Jerod's pipe dream a reality by putting all of his efforts into Pipely. Has it been a big waste of time or has this epic side quest morphed into a main quest?!
I've seen a lot of complaints about how MCP isn't ready for the enterprise.
I agree, although maybe not for the reasons you think. But don't worry, this isn't just a rant! I believe we can fix it!
The …
Hi!! What’s up!! I’ve been laid off from GitHub, so if I don’t respond to your emails, it’s FINALLY not my fault 😘 sorry in advance.
The past 5 years were an honor and a joy, because wow, OSS maintainers are a kind bunch. Grateful I got to run one last Maintainer Summit before leaving 💓
Kicking off our 2025 Maintainer Month series, Dirkjan joins Richard to talk Rust maintenance, open source funding, and sustaining projects without burning out.
This week on The Business of Open Source, I spoke with Julian Coccia, CTO of ScanOSS, about selling access to data while making open source software. Of course, we also talked about being an open source company that is also deep in the open source world, helping companies understand their...
Nathan Sobo is back talking about the next big thing for Zed—agentic editing! You now have a full-blown AI-native editor to play with. Collaborate with agents at 120fps in a natively multiplayer IDE.
I’m wearing overalls today, and my husband looked at me and said, “Have fun on your shift at the Mushroom Kingdom.” 😂
https://media.tenor.com/vsPZuwYB5JYAAAAC/first-of-all-how-dare-you-rupaul.gif?hh=280&ww=498
Ever wished that Renovate increased that Chart version number in your Helm chart if the appVersion changes? Or maybe you wanted to bump the version number even though a dependency changed, which is not a direct dependency? Well, it can now!
Varun Mohan, CEO of Windsurf, shares how building an AI-native IDE is reshaping software development—from optimizing LLM latency to enabling non-engineers to ship code.
Matthew Sanabria joins Bryan and Adam to talk about his role at Oxide--Solutions Software Engineer--and how it fits in with engineering, sales, support and marketing. It takes everyone in Busytown! Sound good? Apply!In addition to Bryan Cantrill and Adam Leventhal, we were joined by Oxide...
MalwareTech was an anonymous security researcher, until he accidentally stopped WannaCry, one of the largest ransomware attacks in history. That single act of heroism shattered his anonymity and pulled him into a world he never expected.
I’ve said this elsewhere, but using AI now is basically the equivalent of using an Ouija board. It’s a word-guessing machine that tells you what you want to hear. Enjoy it if you like, but don’t start thinking it’s REAL
[contains quote post or other embedded content]
Today at 10am PT - we're streaming 'What Maintainers need to know about Open Source Licensing, SBOMs, and Security' for #maintainermonth
Come listen to my expert colleague Jeff, who looks at a project's license first while the rest of us are still reading the bio ;)
https://www.youtube.com/watch?v=8hbkfKAl4hk