I'm on Fallthrough: Patching Problems with Persnickety Proxies Purveyed by Paternalistic Princes

Last week I was invited to join the wonderful Fallthrough podcast as a guest host, on a more time sensitive episode discussing the recent backdoor discovered in the Go module proxy, and the episode has just shipped, with a very good title!
This was actually my second episode with Fallthrough, but the first one that's published - there's an episode around API Design that'll be landing at some point in the future - and I enjoyed hanging with the rest of the panel.
Joining the panel was both a great experience generally, as I've been enjoying the differing thoughts of the folks on Fallthrough, but also because there's a lot of interesting background that the others were able to share, which I'd not had insight into.
As Kris wrote on the socials, when announcing this episode:
I hope the nuance that we all intended came across in this episode. It’s really tough to be critical of the things you love, but if you don’t speak up at some point, I think things just wind up getting worse and worse.
This was an incredibly nuanced episode, and although we started in the vein of supply chain security (which I missed a chance to mention dependency-management-data!), we ended up digging into questions like "is Go dead?" or "does Google's Go team have our best interests at heart?" as well as some of the usual levels of tangents folks will be familiar of with Fallthrough 🤓
As someone who didn't learn Go until 2022, and who hasn't been as heavily interacting in the Go language development, there was a lot of background info I learned through the recording, and it's helped feed into giving me a more balanced view of Go's development over the years, albeit I don't think I have yet decided where I land on some of the questions.
I'm thinking this may be a pretty polarising episode, and I'm very much looking forward to seeing the reception of the episode!