Post details
It's easy to forget how much work it is when someone is paying you
It's easy to forget how much work it is when someone is paying you
Something they don't tell you about being heavily involved in an open source project is that even when you're unemployed, there are a thousand emails and slack messages you still have to answer and so, so many meetings
AAAHHHHHHHHH BE NICE TO OPEN SOURCE MAINTAINERS OH MY GOD. SOME OF YOU ARE SO RUDE, WHO RAISED YOU
Question for OSS maintainers: what’s the most audacious work a company has ever asked you to do for free? I’ve heard of some projects being asked to fill out security questionnaires for free, but I don’t have a firsthand account of that and it got me curious about what else projects have been asked
Work for free and in return watch your passion get crushed by entitled users who are never satisfied
Open source business models are hard. A question I often get it why is it even open source? Here are some of my thoughts on that, and reasons why
Product requirements for a "fund your dependency tree" service (12 mins read).
Thinking about what functionality I would want as a funder, or a fundee, for a "fund your dependency tree" service.
Overworked, under pressure, and subjected to abuse – is it really worth it?
Attached: 1 image 2025
An infrastructure engineer, focused on distributed storage system
I've said it before, but if Randall Monroe could somehow successfully induce a donation of say ten bucks for each time someone uses That One xkcd Comic in a FOSS talk or blog describing the open source sustainability problem, said problem would be solved.
Attached: 1 image I love being an open source maintainer, we get the best email from only the most delightful people. 🙃 . (maybe i should just switch to macOS and stop caring about linux 🙃 )
OggCamp 2024 (14 mins read).
A recap of this weekend's OggCamp 2024 conference.
Open source is proof free markets are so efficient they can even find a use for communists.
How to use Dependency Management Data to discover which dependencies are participating in Hacktoberfest (3 mins read).
Detailing how you could use dependency-management-data to gain insight into which dependencies you use are participating in Hacktoberfest.
Contributing to open source is a privilege. It doesn't mean you have cheated to do it or that you don't deserve praise for doing it! It only means that not everyone can do it. You need the skills, time and will to do it in addition to doing whatever you need to have a good life. Not everyone has that time. Not everyone works in the field. We must acknowledge it to meaningfully convey the value of open source in society. #opensource #privilege
<p>Folks, today's the day.</p> <p>As of this morning, I've made over a million dollars on GitHub sponsors. Wowoweewow.</p> <p><img src="/pos...
Content warning: Tech culture
Microsoft is experimenting with and investing in sustainability of the open source ecosystem sponsorships. Learn more.
Announcing Geomys, a small firm of professional maintainers with a portfolio of critical Go projects.
After signing up for GitHub Sponsors, I had a nagging feeling that somehow asking for money from other people to support my open source work was inappropriate. But after much reflection, I realized that phrasing the use of GitHub Sponsors as a way to express patronage/support and appreciation for
A JavaScript library maintainer is under fire after merging a controversial PR to support legacy versions of Node.js.
Will Yaak be open source? The short answer is no, there are no plans of going open source. Instead, Yaak will…
Attached: 1 image idk why people say funding OSS is difficult
Attached: 1 image Tips to prevent maintainer burnout from the beautiful soup maintainer. A single maintainer managing a package will millions of users *ask users to contribute issues before a pr * practice defensive programming. Use warnings to point to common user mistakes #pyconus #python #opensource
Creating a more sustainable model for oapi-codegen
in the future (9 mins read).
Announcing a request for sponsorship to continue to allow allocating more time to oapi-codegen
as well as to make more ambitious changes to the project.
oapi-codegen is moving to its own org (7 mins read).
Announcing oapi-codegen
's move to its own GitHub org, and a history lesson about the project.
For the last ~7 weeks on-and-off rewriting the documentation for oapi-codegen
which has needed a fresh version for a bit of time. On top of that, I've spent pretty much the last two days solidly finishing it off, and am very glad to have just merged it!
Documentation can be difficult to do - especially if you're redoing it all in one go - but am hoping it's in a much better place for new and existing users alike!
Also introduces a CONTRIBUTING.md
for the first time, and I ended up adding 14 new examples to the examples directory because I couldn't quite remember how things worked 😅
With the recent xz hack in the news, it's crucial to support maintainers of open source projects. Fastly has been doing just that with our open source program, Fast Forward.
A short document describing how I maintain open source projects. It talks about how I prefer issues to PRs, how I work in batches, and how I'm trigger-happy with bans. It's all about setting expectations.
Free and open source software has become a modern commons, but now it's vulnerable. Freedom isn't sufficient to secure it for the future.
Originally a thread on Twitter about the xz/liblzma vulnerability, when I finished typing it, I realized I had a real world slice of Open Source interaction that deserved more attention.
What can we learn about the backdooring of xz
/liblzma
, using OpenSSF Security Scorecards and dependency-management-data? (6 mins read).
Looking at how the recent CVE-2024-3094 vulnerability could provide insight into other cases of risk in dependencies and their lack of code review.
The topic of Polyfill.io and its sale came across my radar about a week ago when Tobie Langel shared...
When I started writing and publishing open-source software about 15 years ago, I was pretty radical about it. I only used permissive licenses like MIT or BSD, as all I cared about was reach. Using a copyleft license with strings attached seemed to hinder that reach. Getting another A-category company
“Open Source Economics” and the “Open Source Economy” are regularly discussed in the context of how to improve open source software’s sustainability, contributor diversity and ecosystem quality. Too often, though, the use of the word “economics” brings incorrect assumptions about the problems to be solved.
Bruce Perens is angry. A veritable Jeremiah amid a throng of open source Pollyannas at OpenUK's State of Open Con 24 in London, the co-founder of the Open Source Initiative (OSI) and the Open Source Definition, railed against what he sees as corporate capture of the movement he helped to kickstart.
You're currently viewing page 1 of 7, of 305 posts.