
2025-09-06 16:07:01
Researcher Unearths Thousands of #Leaked Secrets in #GitHub’s “Oops Commits”
https://www.infoq.com/news/2025/09/github-
Researcher Unearths Thousands of #Leaked Secrets in #GitHub’s “Oops Commits”
https://www.infoq.com/news/2025/09/github-
Anyone from Microsoft following me?
I’m going to leave GitHub (I’ve been a user since the beta days) and will incessantly ask everyone I know to leave it as well if you don’t roll back the “can’t opt out” force-feeding of “AI” nonsense.
You should also have no integration or collaboration with Xai at all, ever.
Make your management have some sense, this is hostile and disgusting and wrong.
#github
In the extended version of @…'s The Internet Last Week, we spotted this #GitHub incident: https://www.
It's time to slowly start moving my projects off the LLM Torment Nexus, formerly known as #GitHub. Projects related to #Gentoo will move to our own infrastructure, with GitHub mirrors / contribution channels for the time being. In the future, I will probably be replacing them with #Codeberg mirors / contribution channels.
https://gitweb.gentoo.org/proj/cpuid2cpuflags.git
Czas w końcu wziąć się za przenoszenie swoich projektów z LLM Torment Nexus, dawniej #GitHub. Projekty związane z #Gentoo trafią na naszą własną infrastrukturę, w najbliższym czasie GitHub dalej będzie służył jako serwer lustrzany / ścieżka przyjmowania łatek. W przyszłości prawdopodobnie te funkcje przejmie
#Microsoft finishes swallowing #Github, the largest repository of #OpenSource software.
GitHub just got less independent at Microsoft after CEO resignation | The Verge
Blogged: Repository Aliases in #GitHub Desktop - #git
https://improveandrepeat.com/2025/09/r
We do need a European Sovereign Tech Fund, yes.
What we don’t need is Microsoft – a trillion-dollar surveillance capitalist from the US that peddles proprietary technology and is helping Israel carry out its genocide of the Palestinian people as we speak – having anything whatsoever to do with it.
#microsoft
A perfectly normal commit log:
• do X
• try fixing X
• debug
• more debug
• wtf?!
• LOL, seriously?
(Yes, throwaway branch for trying to get #GitHub Actions to work.)
Dear #GitHub: no #YAML anchors, please
https://blog.yossarian.net/2025/09/22/dear-github…
@… nothing on your #GitHub status page at https://www.githubstatus.com/ but me and some friend…
Inquiry: Is there a way on the GitHub PR list to see "this issue has commits since you last looked at it"? Or some other indication of "I should look at this issue again"?
Similarly, filter out Draft PRs? Trying to get a list of just "things I should look at."
(Asking for a colleague.)
#GitHub
#Github #copilot now supports an instructions file.
Here's mine:
"Go Away!"
#ai #programming
Nachdem #Microsoft den Chef von #github am Ende des Jahres entlassen wird und die Stelle bisher nicht nachbesetzt wird, ist es vielleicht wirklich an der Zeit, sich einen neuen Ort für seine Projekte zu suchen.
Das riecht danach, dass mit github etwas passieren wird, was mir nicht gefällt.
#GitHub etiquette: don’t comment with 1
Just 👍 the issue.
For those who moved their projects from #GitHub to @…
What do you use instead of #dependabot?
If you are not selfhosting runners, what do you use?
Would you be interested on a European #coop alternative to #Github for your private/for-profit projects (paid service)?
I welcome comments elaborating on why you said "yes", "maybe" or "no" .
Note: I'm aware of other alternatives like Gitlab, Bitbucket, Gitea, Codeberg... None of those match what I'm asking about for one or more reasons.
#EU #SovereignTech #SovereignCloud #privacy #GDPR #cooperatives
With the latest #Github outage and #Microsoft stealing all of your data when using #CopilotVision and #Recall, the…
No more #github please
Everyone suddenly riding that high horse of utter confusion and anger, and most of all, righteousness: get off it.
Wakey, wakey: there's no such thing as a free lunch. If it wasn't for big business there wouldn't be any Linux whatsoever anyway.
So walk the talk and move over to Codeberg or BitBucket.
Like I did in January 2024 (except for one last repo).
Howzat for riding a high horse 😜
I’ve quite a lengthy experience with #GitHubWorkflows, but not up to the point where I can claim I’m an expert. However, I recently developed a new workflow, and it prompted me to write this post. Feel free to add your own.
GitHub workflows #TipsAndTricks
I've drafted support for verification of #PyPI provenance for #Gentoo.
You know, the new fancy thing that protects against supply chain attacks on PyPI, and verifies that you're using genuine #GitHub artifacts. Because, you know, GitHub repositories and deployment pipelines are an unlikely attack vector. And you definitely don't need to worry about #Microsoft owning the keys, the repositories and the pipelines at all.
#security #Python #SigStore