Kind listens

 Listen

Listened to Open Source Security Podcast: Episode 439 - Where are all the youth in open source?
Post details
and talk about a story talking about the "graying" of open source. There doesn't seem to be many young people working on open source, but we don't really know why that is. There are many thoughts, but a better question is why should anyone get involved in open source anymore? The world has changed quite a lot since open source was created. Show Notes OSPOs for Good 2024

 Listen

Listened to Open Source Security Podcast: Episode 438 - CISA's bad OSS advice vs the Whitehouse good advice
Post details
and talk about two documents from the US government that discuss open source in very different ways. The CISA document lays out a way to measure open source, but we take issue with the idea of trying to measure which open source projects are "good". The Whitehouse on the other hand takes an approach that is very open source, get involved. Trying to measure open source isn't producing anything actionable, but getting involved is very actionable, and very much how open source works. Show Notes

 Listen

Listened to "Rashida Jones Returns" on Conan O'Brien Needs a Friend
Post details
<p>Actor, writer, and director Rashida Jones feels blank about being Conan O’Brien’s friend.</p><p>Rashida sits down with Conan to talk about tracing her family genealogy, the unanticipated success of Parks and Recreation, and confronting grief in her new Apple TV+ series Sunny. Plus, Conan considers taking his act to Vegas.</p><p>For Conan videos, tour dates and more visit <a href="http://TeamCoco.com">TeamCoco.com</a>.</p><p>Got a question for Conan? Call our voicemail: (669) 587-2847.</p>

 Listen

Listened to Open Source Security Podcast: Episode 437 - CocoPods and proper funding for open source
Post details
and talk about a pretty big bug found in CocoPods ownership. We also touch on a paper that discusses the technical debt that open source should have. We discuss what the long term sustainability of open source. There aren't any good solutions for open source today, but talking about these problems is important, we have to start to understand what's going on before we can plausibly discuss solutions. If you're an open source project that needs to put things on pause, or even walk way, that's OK. Show Notes

 Listen

Listened to Cup o' Go | ⏲️ ⚡️ That feeling when your timer returns the wrong time & new 🌩️ lightning round!
Post details
Conferences & CFPs🇮🇱 GopherCon Israel, Sept 9 @ Tel AvivCFP open until Jul 15🇦🇺 GopherCon AU, NoCFP open until Sept 15🇮🇳 GopherCon India, Dec 1 @ Jaipur🇩🇪 Fyne Conf, Sept 20 @ BerlinCFP open until Aug 16🇸🇬 GopherCon Singapore, October TBDCFP open until Aug 19Go 1.23 draft release notes⏲️ Blog:...

 Listen

Listened to Open Source DevRel by Major League Hacking 
Post details
Join us for an insightful discussion on the intricacies of Developer Relations in the open source world. Our panel of experts will delve into key differences between open and closed source platforms, the unique challenges and opportunities in open source DevRel, and the impact of AI tools on the community. Gain practical insights and hear success stories from industry leaders.

 Listen

Listened to Open Source Security Podcast: Episode 435 - polyfill.io - open source is too big to fix
Post details
and talk about the latest polyfill.io mess. Apparently someone took over a very popular project and started to serve malware. First XZ, now this. What does it mean for open source? We don't have any answers, and it's hard to even talk about this problem because it's so big. The thing is though, even if we can't fix open source, it's here to stay. Show Notes

 Listen

Listened to Dependencies are dangerous (Go Time #321)
Post details
Dependencies! We need them, but how do we use them effectively and safely? In this week’s episode Kris is joined by Ian and Johnny to discuss the polyfill.io supply chain attack, the history of dependency management and usage in Go, and the Go Proverb that “a little copying is better than a little dependency”. Of cours...