Show newer

@proto @marlowe (Theoretically it is "just" an Android device, but in practice it has all sorts of bullshit that phones home, requires login before starting, etc.)

@proto @marlowe Note that it is likely that the unit simply will not boot without Facebook connectivity

Why did it take over a decade for someone to make a braille display who's book reader application can read epub files? I don't know, but per the Polish reseller's specification page the new HIMS display - the EMotion finally has this ability. I know this topic occasionally comes up and might be more relevant with reading books in Braille through phones apparently being a little iffy, so figured it was worth mentioning. Plus, it includes a headphone jack and is powered by an octa-core processor and 4 GB of ram with Android 12 so I'd be very surprised if it was laggy if you wanted to use its TTS capabilities as well.

The next time Rijkswaterstaat is closing one of the two river crossings in the Rotterdam Ring Road, we should really put up a blockade at every city entrance and declare it a car free weekend.

meta, facebook, subtoot 

Ah yes, dude who has been working with Facebook tries to lecture people who have been trying to protect their communities for years that they have their priorities all wrong and they should care more about building moderation tools.

Hey. Hey Dan. You know what we all have been trying to push for for years, only to have it blocked by the same person who is now being all excited about Facebook getting involved? The same person you're defending in your post? Yeah, exactly.

Funnily, *we* didn't need to turn it into apologia for federating with known bad actors. Because *we* actually recognize that "keeping out bad actors" and "pushing for better moderation tooling" are two sides of the same coin, and not opposed to each other.

I don't know, man. Maybe you should be listening more and lecturing less.

Why can’t you suspend users in Pixelfed? Why is the only option marking their accounts as spam?

Why are mod management tools in Pixelfed still the worst of any software across the fediverse?

You want to talk about a commitment to improve moderation meaningfully? Why are you worried more about some ridiculous-ass reel app over key moderation features?

I held back before, but now it’s clear you’re just a bad faith actor looking to fulfill your own childish impulses of fame and building the “next big thing”.

If Loops and Sup are anything like how you treat the Pixelfed project, they’ll be jokes at the expense of the users and admins who try their best to make the most out of these broken platforms.

I don’t know how you sleep at night.

#pixelfed

RE: https://mastodon.social/users/dansup/statuses/112183645970011670

now imagine a more powerful threat actor coming up with usernames without numbers

thankfully not friends with people like the second one anymore but yeah this tracks lol

@freakazoid I think that under current circumstances, this is a very risky thing to propose - it is likely going to lead to "good governance" being defined by business goals, ie. "has an institutional structure" (with all of the bias towards privileged folks that that implies).

Letting this kind of situation emerge naturally by consistently funding maintainers is an approach that's much less likely to translate into unwanted second-order effects, IMO.

tech, xz falloff, open source sustainability 

people who love what they are doing so much that they are doing it for free in their free time instead of resting or having fun or making money or spending time with people they love, despite corporate bullshit, despite shitty laws, despite shitty attacks on them, despite LLM spam, despite ungrateful jerks, despite mental and physical issues.

I don't know peeps but I think this "capitalism" thing doesn't deliver somehow

Show thread
The thing that I think annoys me the most about the whole xz thing is all the hand wringing about “software supply chain”. We are not your supply chain. If any other industry had a supply chain wherein every single link said “no warranty either express or implied” in big block caps they’d shit themselves. Yes I think folks maintaining critical parts of the system should be looked after but also maybe we should all just lower our expectations a bit?

If "boiling the oceans to run the server farms" isn't number one on your "existential risks to humanity posed by AI" then you can stop talking about existential risks to humanity forever thanks

To get ahead of the predictable marketing pitches from capitalist vultures:

No, automated vulnerability detection and "AI" will *not* solve 'supply chain problems' and especially not backdoors like the xz one. The technology is incapable of doing that, on a very fundamental level.

Anyone trying to sell you on automated stuff as the solution, is lying to your face and trying to scam you.

@trysdyn @vyr I'm actually quite concerned about the second-order effects that this incident is going to have in the current discourse climate...

@vyr There were people trying to reach maintainers with ye olde "What's the status of this??" 20min after the news hit oss-sec.

You know the kind. Meatsona in a polo avatar, talking about supply chains and audits and critical business need to someone who objectively has not a single reason to care.

@trysdyn the other takeaway for today is that if you're a project maintainer, you can get a foreign intelligence agency to do a bunch of scutwork for you on their dime, provided you catch the exploit when it comes

@etherbloom@chaos.social @lunabee @iliana All the while, somewhat ironically, Github is almost certainly depending on xz too (and so could have just paid the maintainer a salary)

"what did we learn today?"

if you're going to backdoor your own software and your repo is on github, you should have a public mirror elsewhere because github will just disable your repo without understanding the consequences

"what?"

what?

@iliana I would not at all be surprised if it were due to something like a national security letter, in this case

Show older
Pixietown

Small server part of the pixie.town infrastructure. Registration is closed.