Post details
Everything you need to know about securing the software supply chain.

This content type is full of IndieWeb post types, which are all content types which allow me to take greater ownership of my own data. These are likely unrelated to my blog posts. You can find a better breakdown by actual post kind below:
Everything you need to know about securing the software supply chain.
A short document describing how I maintain open source projects. It talks about how I prefer issues to PRs, how I work in batches, and how I'm trigger-happy with bans. It's all about setting expectations.
What makes a great technical blog
I recently received an issue report that ijq was performing slowly. The issue claimed that, when used on a large (16 MB) JSON file, ijq was “too slow to be usable”. I downloaded the test file which …(https://gpanders.com/blog/making-ijq-fast/)
Recently, we wanted to know which of our repos had Renovate installed, which is a use case several folks have now shared with us! This post showcases some of the queries we put together around our use of Renovate.
MergeStat enables anyone to ask questions about the history and contents of source code. - mergestat/mergestat
Attached: 1 image
Oh woops, I also completely missed that, sorry 😅
Content warning: uk news, misinformation slash straight up lies about adhd, exercise
MAY is Maintainer Month! The best time to talk about open source maintenance. If you’re interested in doing events, content, or activities for open source maintainers, get it listed on the site so we can share it! https://maintainermonth.github.com #opensource #maintainermonth
why do i need AI to read a pdf? fuck off
Attached: 1 image *taps the sign*
Most people seem to agree that building a personal brand requires consistently delivering useful content around a specific topic. I'm putting that together with my understanding of how ADHD presents for me personally. It feels like a challenge. 😅
As engineers, it's easy for us to measure inputs (how much time we're spending) and outputs (lines of code written or features produced), but what really matters are the business outcomes (customers acquired and retained, revenue growth metrics, profitability), which are less directly related. It's always useful for us to step back and ask ourselves: what's the point?
hey quick question, what’s your mothers maiden name and also lol I was chatting with a mutual and neither of us could remember the name of the road where you grew up! just trying to connect with you on a deeper level :) thanks bestie x
Very happy to announce the release of GrimoireLab 1.0 at long last! Congratulations to all who worked on this release! https://chaoss.community/grimoirelab-1-0/
Tapping the sign: You don't take meeting notes for the people in the meeting. You take them for people who aren't in the meeting. That includes three-months-from-now-you, who also isn't in the meeting.
Attached: 1 image When you redeem your points with the local pizza place and get your meal for free, but the app developers apparently didn't think about this. Best was that it asked me whether I wanted to pay by card or cash. Mate, it's free, why are you asking me ANYTHING about paying? 🤷♂️
Yesterday, my friend said they were really enjoying their EV in the garage. I reply oh yeah I like my Chevy Bolt. My friend looks confused. I ask what kind of electric they had. They said of course it’s electric it’s a Jolteon.
Shows how much the performance of Go has improved from version 1.0 through to 1.22 (including PGO) -- in its compiler, runtime, and libraries.
Between and I took 6621 steps.
Surprise! While we’re in the off season, here’s a very special – and very different – bonus episode. Ed and James speak to an actual Ghostbuster and Blues Brother – Dan Aykroyd. Dan kindly agreed to be on the podcast to promote his vodka brand, Crystal Head – and he sure is passionate about it. We’ll be back properly for series 6 in a few weeks, but for now, bon appétit! Crystal Head Vodka was founded by Dan Aykroyd in 2008. For Pride month 2021, the brand launched their new Pride Edition Magnum in partnership with Kaleidoscope Trust in the UK to support LGBTQ+ rights worldwide. Available at £140 from Selfridges.com. Recorded and edited by Ben Williams for Plosive. Artwork by Paul Gilbey (photography and design) and Amy Browne (illustrations). Follow Off Menu on Twitter and Instagram : @offmenuofficial. And go to our website www.offmenupodcast.co.uk for a list of restaurants recommended on the show. Watch Ed and James's YouTube series 'Just Puddings'. Watch here. Hosted on Acast. See acast.com/privacy for more information.
Conan O'Brien is an Emmy Award–winning talk-show host who had a nearly three-decade–long run on late night. You can keep with him these days on Conan O'Brien...
Attached: 1 image Queer and here #possum #opossum #furry
In the second episode that I recorded on-site at KubeCon EU in Paris, I spoke with Alex Olivier, CPO and co-founder of Cerbos. This was not a general discussion: It was focused on the process that Cerbos went through to figure out pricing. Here’s what we talked about:The first step of figuring...
I’ve started yelling “NOT FRIENDLY!” at people when it looks like they’re going to approach me. I learned it from the dog people.
Followers of my blog - you can now subscribe to just blog posts for certain tags, for instance if you want to read all my articles about Go but only my articles, and not be annoyed by all the other stuff tagged go
, you can now add https://www.jvt.me/tags/go/feed.articles.xml
to your feed reader of choice.
And of course, this is discoverable via RSS discovery so you can just point your feed reader at i.e. https://www.jvt.me/tags/go/
and it should prompt you the different options.
What's in the SOSS? features the sharpest minds in security as they dig into the challenges and opportunities that create a recipe for success in making software more secure. Get a taste of all the ingredients that make up secure open source ...
Jacob DePriest is the Deputy Chief Security Officer at GitHub! From discussing the challenges of maintaining the security of one of the world’s largest code repositories to sharing insights on the latest cybersecurity trends, Jacob talks to Scott about what it takes to safeguard GitHub and its millions of users. Whether you’re a developer, a cybersecurity enthusiast, or just curious about how GitHub keeps your code safe, this episode is a must-listen. Tune in to gain a unique perspective on security from the heart of GitHub itself.
I really need to write a snippet in my editor for maintenance
because dang I can never spell it correctly the first time
Between and I took 6164 steps.
Andres Freund joined Bryan and Adam to talk about his discovery of the xz backdoor. It’s an incredible story… so great to get into the details with Andres. We started by ranting about the coverage in the New York Times… coverage that explicitly refused to dig into the details! It’s all the more...
We enjoyed it. Deffo want to rewatch with the whole film in mind. Bit confusing at times (as intended) but thought it was well done, and hearing that they all learned how to speak backwards was pretty impressive!
🤗 Lemme know if I can help any more!
"Just call this number to cancel." me: [continues to pay $19.99/mo for the rest of time]
Last year - while I was still working there - I know some engineers used https://github.com/deliveroo/deliveroo.engineering/blob/gh-pages/Dockerfile to run our Jekyll site locally, 🤞🏽 that may help
Attached: 1 image Good morning to everyone except the thieves at Redis. You didn't build it; you stole it from the community. If you want it from the ones who built it, it's called Valkey.
Val Town raises seed round. I love the idea behind Val Town: it hosts serverless functions for simple APIs or scheduled tasks. I use it to scrape my local council’s waste collection page and return an …
Attached: 1 image Bullet point 1 is the funniest thing I’ve ever read about #ADHD. Also true.
Someone asked me if staying at a tech company a long time makes it harder to get a job elsewhere. Not really. The real challenge is that a lot of your effectiveness as a long timer comes from knowing people & processes. You just can’t tell how much until after you leave. Was it 10% or 90% of your success? 🤷🏾♂️
Between and I took 6590 steps.
<p> If you work in shell/terminal often enough, then over time the history will become your personal knowledge vault, documentation and command reference. ...
It's Boxing Day, we're feeling festive, and everyone's best friend Nish Kumar has popped in to order his favourite Christmas meal. Plus we need your help to #BringBackKumarsCobbler Recorded and edited by Ben Williams for Plosive Productions. Artwork by Paul Gilbey (photography) and Amy Browne (illustrations). Nish Kumar is on tour in 2019 starting 25 January. See his website for full details. Ed Gamble is on tour in 2019. See his website for full details. James Acaster is on tour in 2019. See his website for full details. Watch Ed and James's YouTube series 'Just Puddings'. Watch here. Don't forget to tweet @JacksonRye (politely) requesting the Peach Cobbler back on the menu – copy us in @OffMenuOfficial and use the hashtag #BringBackKumarsCobbler. Hosted on Acast. See acast.com/privacy for more information.
Listen to Ep 240: Killer Mike from Off Menu with Ed Gamble and James Acaster. Grammy Award-winning rapper (and half of Run The Jewels) Killer Mike joins us in the Dream Restaurant. And he’s impressed with Ed’s fishing skills. Killer Mike’s Grammy-winning album ‘Michael’ is out now. Listen here. Killer Mike is on tour this year. For dates and tickets go to killermike.com. Follow Killer Mike on Instagram and Twitter @killermike Recorded and edited by Ben Williams for Plosive.Artwork by Paul Gilbey (photography and design).Follow Off Menu on Twitter and Instagram: @offmenuofficial.And go to our website www.offmenupodcast.co.uk for a list of restaurants recommended on the show.Watch Ed and James's YouTube series 'Just Puddings'. Watch here.
Ooh looks great! I did mine a few years back and have really enjoyed having it on the Web, always generally up-to-date, and with print-specific tweaks
Any business that depends on third-party APIs that it does not control and is locked into using is not a good business.
This week’s episode is the recording of a live conversation between Abi and Chris Westerhold (Thoughtworks Head of Developer Experience). This conversation is useful for anyone early in their journey with developer portals or platforms: Abi and Chris discuss common approaches to solving these...
It's just under an hour until I'll be speaking at the @TheLeadDev webinar Does your org need platform engineering?! Looking forward to my first webinar as a panellist - alongside some excellent people - and to share some of my experiences with #PlatformEngineering and #DeveloperExperience for the lovely #LeadDev audience - it's not too late to sign up to join!