Kelly

joined 2 months ago
[–] Kelly 8 points 1 month ago* (last edited 1 month ago)

The only thing they have ever done well is host a Q&A board and incubate niche communities.

Then they stopped doing that well.

[–] Kelly 5 points 1 month ago (4 children)

"We just had an outdated sanity.io dependency used since 2016 to show release notes from sanity headless CMS, that was the only issue they found."

"That dependency has been there since 2016 and passed every check since then, now it looks compromised but NO ONE from Microsoft reached us to remove it. They just pulled down everything causing issues to millions of users, and causing a loop in vscode (yep, it's their fault)"

If the dependency has been compromised then extensions that use that dependency and ship compromised code are also compromised. Its a transitive property if it ships bad code.

With that in mind Microsoft yoinking the extension from the market place and user devices seems reasonable. But what was the "loop" they mention?

[–] Kelly 2 points 1 month ago* (last edited 1 month ago)

obviously there are people who downloaded it multiple times

Its been around and on enough different platforms that most people who use it would have lost count of how many times they have downloaded it.

I currently have it installed on 4 android devices (my phone, my tablet, my sons tablet, google TV dongle), 3 windows devices (personal PC, loungeroom PC, work PC), and 1 Xbox. That's 8 installs in current use but if you factor in a history of device replacement and software updates I would easily account for hundreds of downloads.

[–] Kelly 22 points 1 month ago* (last edited 1 month ago)

My workplace calls it "n-jinx", we know its nonstandard but its still what is understood by the team.

[–] Kelly -2 points 2 months ago* (last edited 2 months ago)

I'm not in the apple ecosystem.

Do apple customers have voice messages, emails, call logs etc from my interactions with them stored on iCloud?

[–] Kelly 7 points 2 months ago* (last edited 2 months ago)

That was fast!

Edit: its great to see the games they highlight with the cover illustrations. They cover a variety of genres and all look like quality games with interesting design choices.

[–] Kelly 2 points 2 months ago* (last edited 2 months ago)

Another chapter in the Cypto Wars.

I used to spoof my address to download (import) the US version of Netscape, are people in the UK going do something similar to bypass the restriction?

[–] Kelly 3 points 2 months ago

Interesting to see the doom recreation. The commentary in the subtitles is fascinating.

[–] Kelly 9 points 2 months ago (1 children)
[–] Kelly 8 points 2 months ago* (last edited 2 months ago) (1 children)

MPL is a weak copyleft license.

If they make changes to your files then they have to share their changes to those files with a reciprocal license.

It has no impact on the licencing of the rest of their project.

[–] Kelly 24 points 2 months ago* (last edited 2 months ago)

I understand proprietary licenses and the business models they support, I also understand open source licenses and the business models they support.

If they they published paid binaries and free source code I would support them (morally), or if they published free binaries and free source code and ran a patreon I would support them (morally).

But to fork GPL code and hold the derived source ransom? Not cool.

view more: ‹ prev next ›