• 0 Posts
  • 24 Comments
Joined 2 years ago
cake
Cake day: June 9th, 2023

help-circle
  • Hopefully more projects take advantage of vulnerability scanning and monitoring tools like those in this OWASP list https://owasp.org/www-community/Free_for_Open_Source_Application_Security_Tools, have good code quality standards to make their projects easier to understand and evaluate, contribute and respond to CVE reports, and get third party security auditing.

    All of that is hard to motivated those throwing their code out to the world only to share how they scratched their itch to perform. I think we need a combination of governments and non-profits providing incentives / grants to projects doing good practices, document and provide trusted a forum to validate vulnerabilities, give some backing to “trusted” frameworks, and provide some vulnerability and auditing themselves.

    The recent EU push into more government open source usage will help as they will be more incentivized to secure the pipelines and everyone will benefit the fruits of that firehose of funding.









  • If you are a major contributor in a niche community, you can publicize your move with info of how to keep following you and syndicate links to your content on your desired platform for a set time then leave. On your desired platform let followers from Xitter know how to follow you (email, rss, bridgy, etc) if they don’t want to join your desired platform.

    If you are mostly a content consumer or have FOMO, use a bridge not an account. DM all the friends you want to keep of where to find you then leave. Bird.makeup is a great Xitter bridge for the fedi.

    In either case, there isn’t a reason to keep am account there.






  • Game engines and servers are great candidates for developers to collaborate their ideas into FOSS projects, but the model is harder to sustain for complete works.

    While internet games can have subscription models where you pay them for doing game master type activities, moderation, and access to a hosted game server, static games are more like static art where you run into issues getting food and housing when you make your work output available for free. Crowdfunding / patreoning (in the larger sense of the word, not necessarily the app) creators / collectives can be a way for that to work, and we need to support more creators trying that model if we want to see more of it.



  • How would they know it’s emulated and not video captured from a real device? Are they only targeting when emulators are mentioned / shown in the window?

    More reasons to switch to owning your content and hosting on your own platform or a PeerTube instance instead of only hosting on YouTube / Twitch - you can actually fight the takedown notice in court instead of having to accept that YouTube doesn’t. Not a legal expert but this seems like a winnable fair use case if you can prove you own the game legally and are using your own rom dump.





  • Even if you disagree with my assessment of Russia’s annexation, isn’t an international body ( that Russia itself has membership) working with your people, with guarantees for self rule and an end to the war better than status quo?

    If you’ve supported Donbas independence, with wishes for greater ties to Russia instead of Europe, you still get that in this agreement. Donbas can still legitimately join Russia in a few decades, and still trade with them now.