python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
Hopefully coding will become a lot easier post-AI, because all those corporate 'open source' frameworks will become even more unusable, and straightforward minimal low/no dependency handmade code the norm.
I still don't know what all these javascript build and deployment tools are really for and maybe I won't have to
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
Does anybody else use Arch (btw) as one of their CI runner platforms for the explicit purpose of being a "canary in the coal mine" for breaking changes coming down the pipeline in some dependency?
Like, sure we have some users on Arch.
But what I care more about is that whatever breaks on Arch today will probably break in, say, the next Ubuntu release, and the Debian release after that. I don't want that to be a surprise.
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
Keeping dependencies up to date shouldn't be a chore. Today we're launching PatchBot on OpenCommit! 🤖
Built on Renovate, PatchBot runs version discovery across your on-boarded repositories, watching dependency files (go.mod, package.json, Dockerfile & more) and opening update PRs automatically.
Enable it in two steps:
- Add the patchbot topic to your repo.
- Invite patchbot with write access.
Read the details:
Which dependency diagram layout do you prefer? Curved edges (dagre) or straight edges (elk)?
https://tinyurl.com/deps-layout-dagre
https://tinyurl.com/deps-layout-elk
Abstracts from 'Digital Heritage and the Global South: Ethics, Politics, Futures' in July 2025. A focus on AI and 'digital colonialism, algorithmic bias, infrastructural dependency on Big Tech, and the erasure of local agency, while foregrounding community-led and decolonial approaches to digital heritage'
🚨 slopscan is a zero-dependency Node linter that fails the build on concrete slop: the 250–290° purple−blue AI gradient, transition: all, scroll listeners driving animation, autoplay audio, WebGL with no prefers-reduced-motion branch and Inter/Space-Grotesk defaults.
I’m somewhat embarrassed to finally announce svcs 26.1.0 – my solution to #Python service location and dependency injection.
It’s been a minute, and the changelog is chuck-full, but the main features are autowiring, which looked like a simple add-on that grew to a four-digit monster diff, and of course, TypeForms that allow registering/getting abstract types!
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
Dependency cooldowns are a nice idea, but I dare say they're a short-term solution.
They resemble the idea of avoiding poison by waiting for someone else to start eating first. That works, provided that someone actually eats first, and that the poison works fast. But eventually it leads to that awkward silence at the table when nobody wants to risk the first bite.
Adapting dependency cooldowns means basically waiting for "someone else" to notice the problem. At some point when large enough number of projects adapts them, we're going back to square one — except with an artificial few-day delay.
#security #FreeSoftware
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
On July 15, 2026, China’s first AI companion rule took effect.
On the same day, China’s two largest AI platforms shut down the customized AI personas services that millions of users had built relationships with,
only ten days after the release of a cease-operation notice.
The rule behind the shutdown targets a risk that U.S. regulators have also identified, but acted on differently:
emotional dependency itself,
apart from anything a chatbot might say.
Ch…
The new Banking On Climate Chaos report reveals just how much big banks are pouring into fossil fuels, contributing to the climate crisis and locking us into fossil fuel dependency. Is your bank one of them? https://www.bankingonclimatechaos.org
An oven element just failed; now I need to get my Sun3's out so I can check which caps I need so I can put them on the same order. Do you have a dependency between cooking and a computer?
New post: Fearless Dependency Injection for Go
#blog
I have a habbit of making (too) many (small) packages for functionality that might be reused in different context. {box} might be an alternative by making scripts into modlues that can be loaded: #RStats
Dutch Surf sta elaborando un'offerta per liberarsi dalla dipendenza dalle grandi aziende tecnologiche
La cooperativa olandese per l'informatica applicata all'istruzione e alla ricerca sta conducendo progetti pilota con strumenti open source, affiancando valide alternative ai servizi esistenti delle grandi aziende tecnologiche.
""Starting with Red Hat Enterprise Linux (#RHEL) 10.2, #Firefox and #Thunderbird are delivered as Flatpaks by default. If you install RHEL with a graphical desktop, your browser and email client will now come from the
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
@… @… Given that Putin is the mind behind Trump, the transitive dependency resolves to the same answer either way :)
Die #Bahn stoppt, weil der Zugfunk ausfällt. Zuletzt hat ein Vortrag beim CCC genau davor gewarnt.
GSM ist nicht ganz die random person aus Nebraska (xkcd), aber es ist eine infrastrukturelle Abhängigkeit, die dank Unterfinanzierung der #DB links liegen bleibt.
Heise:
@… Normaliens (ENS alums) pride themselves on their intellect (the school has almost as many Fields Medals as Cambridge, Harvard and Oxford combined, despite enrolling only about 15 students a year in Mathematics), so I'm not surprised they would steer away from dependency on AI.
📋 #Laravel Vet is a dependency audit for #PHP that shows you the code #Composer update is about to write into your vendor/ directory
then - including the same library code in every executable is wasteful -> let's build systems with shared libraries
now - shipping executables that work with every system's shared libraries is too hard -> let's bundle the correct shared libraries in a container
future - having every executable be an independent copy of electron is wasteful -> apps are now wasm bundles running in servo-os
post-future - capability dependency graphs are too complicated to …
RE: https://c.im/@cdarwin/117051964151684299
The U.S. can learn from this process to move beyond existing fragmented state law centered on child protection and suicide prevention,
and treat emotional dependency as a material risk across all generations.
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
Frame-dependency of the confinement temperature in a strongly-coupled plasma under rotation: a holographic description
Nelson R. F. Braga, Alexsandre L. Ferreira Jr
https://arxiv.org/abs/2608.13301 https://arxiv.org/pdf/2608.13301 https://arxiv.org/html/2608.13301
arXiv:2608.13301v1 Announce Type: new
Abstract: Recently, it was demonstrated that the disagreement between lattice calculations and holographic models, regarding rotational effects in the quark-gluon plasma (QGP), occurs due to different choices of reference frames. While a static observer measures a confinement temperature that decreases with rotation, one in a co-rotating frame finds the opposite behavior. Both results are correct, and a comprehension of the frame-dependency of the critical temperature is a significant step in the description of the QGP under rotation. In this article, we generalize this previous holographic result by describing the plasma through the most general Myers-Perry black hole solution. This breaks the spherical symmetry present in the equal angular momentum case, considered before. As a consequence, the local temperature measured by a co-rotating observer has a non-trivial angular dependence: it can decrease, increase or even behave non-monotonically when rotational velocity increases.
toXiv_bot_toot
Has anyone explicitly compared the deliberate restucturing of the legislative and built environment that supported #motornormativity and the present day efforts to enforce the use of LLMs? I suspect those pushing LLMs are well aware of opium and tobacco as business models (state sponsored dependency) but the enforced transformation of work and public spaces (and the erasure of competing soluti…
I just released ptrclassify is a small, dependency-free Python library and CLI that infers likely IP usage from reverse-DNS PTR hostnames.
It is intentionally heuristic and multi-label. PTR naming is operator-controlled and is not authoritative evidence of how an address is actually used. The output therefore includes a confidence score, the text that matched, and the rule IDs that produced each label.
To summarize, the library is trying to guess usage (and a bit location) of an IP address based on its PTR records. It's based on a set of rules which can be updated easily.
#osint #cybersecurity #ptrclassify #opensource #dns
https://github.com/adulau/ptrclassify
module https://pypi.org/project/ptrclassify/
RE: https://hachyderm.io/@thomasfuchs/116932469060844829
(And no, I don't have a quick and easy solution to the dependency hell that is "modern" programming, if I had I'd benevolently steer the programming community sitting on my throne build out of the bones of rms, ESR and Torvalds.
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
I have a #Python favor to ask. Could someone look at Python 3.15 test failures in itsdangerous? It's blocking quite a large part of package dependency graph in #Gentoo, and the failure looks, errr, dangerous.
https://github.com/pallets/itsdangerous/issues/420
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
☝️ Someone out there is running "composer remove" as part of a deployment?! 🚨 Please don't.
⚠️ remove is a write operation. It edits composer.json, re-resolves the whole dependency tree and overwrites your lock file. Your carefully pinned versions? 💨 Gone. Silently upgraded.
✅ composer install --no-dev exists for exactly this reason. Your lock file is not a suggestion. 🔒
#php
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
Radu Gheorghe and Rafał Kuć were at Berlin Buzzwords 2026 to talk about preparations for the golden set and untangling the dependencies with the title "Circular Dependency Fixes when Bootstrapping a Golden Set".
Check out the recording: #bbuzz
python_dependency: Python Dependency Network
Python's package dependency networks. Nodes in the network are Python's packages registered to PyPI and edges are dependencies among packages.
This network has 58743 nodes and 108399 edges.
Tags: Technological, Software, Unweighted
https://networks.sk…
Themis Consensus Extension v1: MEV Mitigation by Randomized Delayed Execution and Intent-Hiding Transactions in Application-Specific Blockchains
Shoeb Siddiqui, Mateusz Nowakowski, Stanislav Vozarik, Gleb Urvanov, Peter Kris
https://arxiv.org/abs/2607.21406 https://arxiv.org/pdf/2607.21406 https://arxiv.org/html/2607.21406
arXiv:2607.21406v1 Announce Type: new
Abstract: Maximal extractable value (MEV) arises when privileged participants select, exclude, insert, or reorder pending transactions for private gain. We specify and analyze the Themis Consensus Extension v1, first published by Mangata in 2021. The design separates value extraction by reordering (VER) from value extraction by denial (VED). For VER, block construction and execution occur across consecutive producers: one producer commits a transaction set, and the next derives a publicly verifiable, deterministic, previously un- predictable seed and executes a seed-determined, dependency-preserving permutation. For selective VED, a user may encrypt a transaction for a designated builder and executor. The builder removes an outer layer and commits the opaque inner ciphertext; the executor reveals and executes the plaintext only after commitment. Under selfish but non-colluding validators, an adversary below the underlying consensus fault threshold, secure cryptography, and accountable role performance, the construction limits unilateral post-commit ordering control and hides transaction intent from relays and the builder. It does not provide send-order or receive-order fairness, complete censorship resistance, resistance to builder-executor collusion, or per-transaction price guarantees. We analyze probabilistic extraction, spam, dependent transactions, decryption liveness, session boundaries, total denial, and threshold coalitions. We also document the initial Aura-based Substrate implementation and its subsequent transition to a BABE-based sr25519/VRF seed path, together with delayed execution, Fisher-Yates shuffling, and Xoshiro256 . The result preserves the original proposal while narrowing its claims to explicit assumptions.
toXiv_bot_toot
Also, zero days (well, minus a lot of days because I've been slacking) since a random #Python package got a new #NIH dependency on another Python package which is actually a "fastest" #RustLang package which cannot be built because the author thinks it a great idea to require a nightly Rust compiler.
…and of course it's full of "unsafe" calls. Because Rust is obviously such a great language for making secure code.
https://github.com/awolverp/cachebox/issues/62
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 6488 nodes and 150985 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de…
Check out today's Metacurity to stay ahead of yesterday's sprawling set of infosec developments, including
--US sanctions Xinbi Guarantee over cyber scams and money laundering,
--Lawmakers seek sanctions on Indian hacker-for-hire firms,
--Anthropic reveals fourth rogue AI hacking incident,
--OpenAI’s rogue agents reached more websites than disclosed,
--Anthropic researcher quits over AI extinction fears,
--Crypto ringleader pleads guilty to $245m scheme,
--Coalition demands release of White House AI framework,
--China-linked hackers share Chrome zero-day exploit,
--Chainalysis offers post-mortem on Liquid Network $320m theft,
--250 prospective CISA hires await clearance,
--NSA urges agencies to quantum-proof software,
--Apple Watch gains always-listening AI features,
--Anthropic builds system to monitor AI opponents,
--TV stations smear Flock critics as left wing China-linked radicals,
--GTA mod pays players to destroy Flock cameras,
--FBI cyber strategy calls for faster disruption,
--Veradigm vendor breach may expose 3.5m patients,
--San Francisco orders Meta to stop AI child-abuse ads,
--Pentagon CIO signals CMMC overhaul,
--Kevin Mandia joins Amazon’s board,
--Cisco confirms active exploitation of critical FMC flaw,
--Journalist unleashes frontier AI on his home network,
--Bernie Sanders probes AI’s ‘extraordinary dangers’,
--Democratic mayors defend taking $30k from Flock,
--ChatGPT dependency ends in suicide
https://www.metacurity.com/us-sanctions-xinbi-guarantee-over-cyber-scams-and-money-laundering/
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
🔬 Grounded in current research on #LLM laziness, underthinking, premature completion and long-horizon agent degradation
🔧 Zero-dependency Node 16 scripts, works with #ClaudeCode, Codex and #Cursor
France is moving 2.5 million government workstations from Microsoft Windows to Linux to achieve complete digital sovereignty and eliminate foreign tech dependency
#windows #digital #sovereignty
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
choosing an open-source dependency in the era of supply-chain attacks:
- popular package: attracts more attacks
- unpopular package: less likely for attack to be noticed quickly
- single maintainer: single point of failure
- many maintainers: multiple points of failure
current optimal strategy is probably: popular package, any number of maintainers, just don't use fresh packages. only works because there are now many security wonks who are eagerly scanning update diffs in hope of getting rizz
ptrclassify is a small, dependency-free Python library and CLI that infers likely IP usage and location from reverse-DNS PTR hostnames.
Version 0.3 released including new rules and CSV tool.
#ptrclassify #infosec #cybersecurity
🔗 https://github.com/adulau/ptrclassify
So now that #awscli 1.x is pretty much dead, I've finally gotten around to packaging 2.x properly for #Gentoo. You know, the one where other developers claimed it was impossible to build from source because (checks notes) upstream said so. So we instead must use their horrible 70M binary package that bundles its own Python interpreter along with all the random libraries and dependencies.
And guess what? Sure, they don't publish it to PyPI anymore, but it still is a regular #Python package branched out from 1.x. It has regular Python package dependencies, a regular Python build backend and when you build it with it, you get a regular Python wheel that can be installed and just works with the system Python and system dependencies.
Sure, it's crap, but it's no worse than the 1.x crap. It bundles a modified fork of the unreleased 2.x branch of botocore (now dead for 5 years, apparently) and a fork of s3transfer. It has some random meaningless dependency pins that we patch out. It has a horrible test suite that can eat tons of memory if run via xdist, but with some hackery, I've gotten it to work reasonably.
Honestly, I feel like Gentoo developers these days just don't care to even try.
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
So if you're wondering how great #RustLang is, let's talk about #mypy. Mypy introduced its own Rust - #Python package, ast-serialize. This package had a deep crate dependency that was broken on PowerPC. The issue was fixed a month ago but everything is still blocked on a deep chain of dependencies being updated and released.
https://github.com/mypyc/ast_serialize/issues/68
EDIT: yes, I know, it's not Rust, it's Cargo. Because obviously Rust without Cargo makes so much sense for that one project using it.
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 799 nodes and 7895 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de/ne…
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 2124 nodes and 10000 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de…
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
jung: JUNG and javax class dependencies (2012)
A network of software class dependency within the JUNG 2.0.1 and javax 1.6.0.7 library namespaces edu.uci.ics.jung and java/javax. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6120 nodes and 138706 edges.
Tags: Technological, Software, Unweighted
Today in things that couldn't have aged well:
"Unpin flit-core dependency" 2 years ago without actually updating the metadata to use the newer pyproject.toml format.
#Python #flit
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 550 nodes and 3691 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de/…
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 550 nodes and 3691 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de/n…
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
jdk: Java SE Dev Kit dependencies (1.6.0.7)
A network of class dependencies within the JDK (Java SE Development Kit) 1.6.0.7 framework. Nodes represent classes and a directed edge indicates a dependency of one class on another.
This network has 6434 nodes and 150985 edges.
Tags: Technological, Software, Unweighted, Multigraph
https://
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 3471 nodes and 17512 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed…
Oh no, I've missed another anniversary of sphinxcontrib-websupport 2.0.0 being released broken. Well, the author merged a fix to the git repository since, but never made another release. Let's not forget it's an official #Sphinx package and a required dependency of Sphinx itself.
#Python
software_dependencies: Software dependencies (2010)
Several networks of software dependencies. Nodes represent libraries and a directed edge denotes a library dependency on another.
This network has 550 nodes and 3691 edges.
Tags: Technological, Software, Unweighted
https://networks.skewed.de/…