Tootfinder

Opt-in global Mastodon full text search. Join the index!

@tiotasram@kolektiva.social
2025-06-24 09:39:49

Subtooting since people in the original thread wanted it to be over, but selfishly tagging @… and @… whose opinions I value...
I think that saying "we are not a supply chain" is exactly what open-source maintainers should be doing right now in response to "open source supply chain security" threads.
I can't claim to be an expert and don't maintain any important FOSS stuff, but I do release almost all of my code under open licenses, and I do use many open source libraries, and I have felt the pain of needing to replace an unmaintained library.
There's a certain small-to-mid-scale class of program, including many open-source libraries, which can be built/maintained by a single person, and which to my mind best operate on a "snake growth" model: incremental changes/fixes, punctuated by periodic "skin-shedding" phases where make rewrites or version updates happen. These projects aren't immortal either: as the whole tech landscape around them changes, they become unnecessary and/or people lose interest, so they go unmaintained and eventually break. Each time one of their dependencies breaks (or has a skin-shedding moment) there's a higher probability that they break or shed too, as maintenance needs shoot up at these junctures. Unless you're a company trying to make money from a single long-lived app, it's actually okay that software churns like this, and if you're a company trying to make money, your priorities absolutely should not factor into any decisions people making FOSS software make: we're trying (and to a huge extent succeeding) to make a better world (and/or just have fun with our own hobbies share that fun with others) that leaves behind the corrosive & planet-destroying plague which is capitalism, and you're trying to personally enrich yourself by embracing that plague. The fact that capitalism is *evil* is not an incidental thing in this discussion.
To make an imperfect analogy, imagine that the peasants of some domain have set up a really-free-market, where they provide each other with free stuff to help each other survive, sometimes doing some barter perhaps but mostly just everyone bringing their surplus. Now imagine the lord of the domain, who is the source of these peasants' immiseration, goes to this market secretly & takes some berries, which he uses as one ingredient in delicious tarts that he then sells for profit. But then the berry-bringer stops showing up to the free market, or starts bringing a different kind of fruit, or even ends up bringing rotten berries by accident. And the lord complains "I have a supply chain problem!" Like, fuck off dude! Your problem is that you *didn't* want to build a supply chain and instead thought you would build your profit-focused business in other people's free stuff. If you were paying the berry-picker, you'd have a supply chain problem, but you weren't, so you really have an "I want more free stuff" problem when you can't be arsed to give away your own stuff for free.
There can be all sorts of problems in the really-free-market, like maybe not enough people bring socks, so the peasants who can't afford socks are going barefoot, and having foot problems, and the peasants put their heads together and see if they can convince someone to start bringing socks, and maybe they can't and things are a bit sad, but the really-free-market was never supposed to solve everyone's problems 100% when they're all still being squeezed dry by their taxes: until they are able to get free of the lord & start building a lovely anarchist society, the really-free-market is a best-effort kind of deal that aims to make things better, and sometimes will fall short. When it becomes the main way goods in society are distributed, and when the people who contribute aren't constantly drained by the feudal yoke, at that point the availability of particular goods is a real problem that needs to be solved, but at that point, it's also much easier to solve. And at *no* point does someone coming into the market to take stuff only to turn around and sell it deserve anything from the market or those contributing to it. They are not a supply chain. They're trying to help each other out, but even then they're doing so freely and without obligation. They might discuss amongst themselves how to better coordinate their mutual aid, but they're not going to end up forcing anyone to bring anything or even expecting that a certain person contribute a certain amount, since the whole point is that the thing is voluntary & free, and they've all got changing life circumstances that affect their contributions. Celebrate whatever shows up at the market, express your desire for things that would be useful, but don't impose a burden on anyone else to bring a specific thing, because otherwise it's fair for them to oppose such a burden on you, and now you two are doing your own barter thing that's outside the parameters of the really-free-market.

How to write a release 101: esq.social/@NationalLawReview/

@muz4now@mastodon.world
2025-06-23 09:49:06

How To Rise and Keep Rising
#FolkSong #NewMusic
mirlo.space/stan-stewart-m…

@seeingwithsound@mas.to
2025-06-11 22:57:50

NSD-Imagery: A benchmark dataset for extending fMRI vision decoding methods to mental imagery arxiv.org/abs/2506.06898

Qualitative comparison of reconstruction methods on simple and complex stimuli seen during vision. Reconstructions selected for the figure are the best samples for each method and stimuli as assessed by quantitative performance.
@Techmeme@techhub.social
2025-06-18 13:51:21

The Midas Project and Tech Oversight Project release The OpenAI Files, a 50 page analysis of OpenAI's governance, leadership, and organizational culture (Hayden Field/The Verge)
theverge.com/openai/688783/the

@arXiv_csSE_bot@mastoxiv.page
2025-06-23 08:07:39

How Do Community Smells Influence Self-Admitted Technical Debt in Machine Learning Projects?
Shamse Tasnim Cynthia, Nuri Almarimi, Banani Roy
arxiv.org/abs/2506.15884

@inthehands@hachyderm.io
2025-06-10 17:34:23

Kudos to @… here, demonstrating how to report on a press release without parroting it. That extends to the headline, arguably the most important place not to just swallow the PR dept’s framing:
After AI setbacks, Meta bets billions on undefined “superintelligence”
arstechnica.com/information-te

@muz4now@mastodon.world
2025-06-18 15:16:12

Only on Mirlo: How To Rise and Keep Rising
#NewMusic #FolkSongs
mirlo.sp…

“I witnessed how they put my father in handcuffs, chained him from the waist and from his ankles,”
Contreras said at a press conference in LA on Monday morning.
“My family and I haven’t had communication with my dad.
We don’t know anything.”
Jacob and Romero were among dozens of people arrested in immigration enforcement actions in Los Angeles this weekend,
raids that sparked a roaring backlash and eventually led to the deployment of the national guard in the ci…

@blackknight95857669@social.linux.pizza
2025-04-12 22:09:10

Played the demo for The Alters today. I was already interested, but now it is on my wishlist and I am very much looking forward to its release. Resource gathering, crafting, base building, check. Time pressure mechanic "the sunrise will kill you, must move base", check.
I am especially intrigued by the story and the "need to recruit people to help you run the base and survive, so you just clone them" idea. I'm liking how they've built that mechanic and how …

@arXiv_csDL_bot@mastoxiv.page
2025-06-10 07:31:12

From Rapid Release to Reinforced Elite: Citation Inequality Is Stronger in Preprints than Journals
Chiaki Miura, Ichiro Sakata
arxiv.org/abs/2506.07547

@arXiv_csCR_bot@mastoxiv.page
2025-06-09 07:49:02

Breaking Anonymity at Scale: Re-identifying the Trajectories of 100K Real Users in Japan
Abhishek Kumar Mishra, Mathieu Cunche, Heber H. Arcolezi
arxiv.org/abs/2506.05611

@stiefkind@mastodon.social
2025-06-07 08:45:40

»June 7: Initial release – first github commit for Kubernetes«
This was June 7, 2014, so 11 years ago. For some people, in IT everything older then 10 years already counts as vintage.
Source: blog.risingstack.com/the-histo

@Mediagazer@mstdn.social
2025-06-02 14:45:41

Disney's live-action Lilo & Stitch grossed $610M globally in just 10 days, and could reach $950M; the film cost $100M and may make $300M in box office profit (Brooks Barnes/New York Times)
nytimes.com/2025/06/02/busines

@arXiv_csCY_bot@mastoxiv.page
2025-06-04 13:34:19

This arxiv.org/abs/2505.22073 has been replaced.
initial toot: mastoxiv.page/@arXiv_csCY_…

@theodric@social.linux.pizza
2025-05-31 20:35:56

Remember how Epstein's suicide wasn't captured on camera because of two camera failures (2019)?
Remember how Epstein's suicide was captured but the footage was accidentally erased (2020)?
Cool that the FBI was able to release the footage now. Not sus. Very normal. Thanks FBI.

@arXiv_astrophGA_bot@mastoxiv.page
2025-06-04 13:50:20

This arxiv.org/abs/2412.15383 has been replaced.
initial toot: mastoxiv.page/@arXiv_…

@arXiv_csCR_bot@mastoxiv.page
2025-06-04 13:33:23

This arxiv.org/abs/2409.07138 has been replaced.
initial toot: mastoxiv.page/@arXiv_csCR_…

@arXiv_physicsgeoph_bot@mastoxiv.page
2025-06-05 07:34:37

Determination of Effect of the Movement of a Finite, Dip-slip Fault in Viscoelastic Half-space of Fractional Burger Rheology
Pabita Mahato (Mondal), Seema Sarkar (Mondal)
arxiv.org/abs/2506.03977