dependency-management-data now supports Software Bill of Materials (SBOMs) and has better Dependabot support (2 mins read).

Announcing improved support for Dependabot and support for Software Bill of Materials (SBOMs).
dependency-management-data now supports Software Bill of Materials (SBOMs) and has better Dependabot support (2 mins read).
Announcing improved support for Dependabot and support for Software Bill of Materials (SBOMs).
Prefer using the GitHub Software Bill of Materials (SBOMs) API over the Dependency Graph GraphQL API (2 mins read).
Why you should use GitHub's Software Bill of Materials API instead of the Dependency Graph GraphQL API.
Two years ago, I posted my salary history - in an impulsive move - and I absolutely do not regret it. I know directly of some the great impact having this data has had (including leading to others sharing their own), and I'm so glad to be able to use my privilege to help others
quasar
V Körbes returns to talk prototyping with Natalie, Johnny & Kris. Is Go good for prototyping? What makes a language prototypable, anyway? How does space radiation fit in to all this? Tune in and ride along to find out!
Normalize talking about about income, menstruation, mental health, and everything. Shameful , aka “taboo”, topics are a form of control; a way to keep people in their place. Shame benefits the patriarchy and the predator class. That’s why calling it what it is — the white supremacacist capitalist patriarchy— is proscribed as well. Normalize it all
Scott's in Mexico this week and he's sitting down with Molly Holzschlag. Molly is a well-known Web standards advocate, instructor, and author and correctly works for Opera as an evangelist. She explains the history of HTML, SGML and XML and we chat about where we think the web is headed.
This week we’re talking about the launch of OpenTF and what it’s going to take to successfully fork HashiCorp’s Terraform. We’re joined by Josh Padnick to discuss what exactly happened, how HashiCorp’s license change changes things, who has been impacted by this change, and ultimately what they are doing about it.
Today's guest is Dan Moore. He is the head of Devrel at FusionAuth and the author of "Letters To A New Developer", which is subtitled, What I Wish I Had Known When Starting My Development Career. Episode 136 on YouTube: https://youtu.be/1C1q-o6DtPU You can engage Dan here: LinkedIn - https://www.linkedin.com/in/mooreds/ Website - https://letterstoanewdeveloper.com/ Book - https://www.amazon.com/Letters-New-Developer-Starting-Development-ebook/dp/B08FD7DG943 Substack - https://ciamweekly.substack.com The Geek Within can be found on several podcast platforms - https://www.polywork.com/posts/W0IZQ1lu List of past episodes: https://tgwlink.net/episodes
Super excited that it's only a couple of weeks to go to #DevOpsDays London! There are still some tickets available, hit me up if you want a discount 👀
It's such a great conference, regardless of the fact that I'm speaking 🤓
Dan North tells the tale of Tim, the worst programmer he’s worked with (who also is a heck of a programmer), Kevin Lin declares that OpenTelemetry delivers on its promise for open observability, Justin Garrison details Terraform vs GitOps vs System Initiative, Inc. writes how Apple beats burnout & Aline Lerner’s ad...
Wealth of Elon Musk 2012: $2,000,000,000 2023: $248,800,000,000 Wealth of Jeff Bezos 2012: $18,400,000,000 2023: $160,900,000,000 Wealth of Mark Zuckerberg 2012: $17,500,000,000 2023: $105,200,000,000 Federal Minimum Wage 2012: $7.25 2023: $7.25 Three words: tax the rich.
PSA: until you've experienced burnout, you are likely to underestimate how long it takes to recover. It's not a couple of months, it's 6-18 months for partial recovery, and maybe 3 years for full recovery (all depending on how bad it gets). The company burning you out will almost never support your recovery, mostly they'll drop you when you stop being productive. Nobody in business cares about your health but you, so be your own advocate, or suffer the consequences.
Explore Joe's insights on corporate open source motivations and sustainability, and SAS's balance of financial incentives with community engagement.
I too aspire to be provided as-is, without any warranty of any kind
Techbros: self driving cars are inevitable! Also techbros: prove you are human by performing a task that computers can’t do, like identifying traffic lights.
Today we go behind the scenes at Chef - the game changing infrastructure automation tool. Adam Jacob created Chef, and it became a massively popular DevOps tool. But despite Chef's success, Adam constantly battled self-doubt and finding his footing as a leader. In this raw episode, Adam shares how the pressure of going from sysadmin to startup CTO caused an... […]
Go Time panelist (and semi-professional unpopular opinion maker) Kris Brandow joins us to discuss his deep-dive on the waterfall paper, his dislike of the “tech debt” analogy, why documentation matters so much & how everything is a distributed system.
Week Notes 23#35 (2 mins read).
What happened in the week of 2023-08-28?
Given that my entire wardrobe consists of #hacktoberfest t-shirts, I'm a little upset by this news. https://hacktoberfest.com/about/#digital-rewards I get the challenges (and the annoyance of drive-by contributors) but I'll miss the fun of getting a random prize in the post.
Twitter's new privacy policy takes effect 09/29/23, giving them the right to use your posts & all of your data to train musk's "AI." Elon Musk's. "AI." If you're still over there, now is the time to request your archived data, delete your posts, and stop using that site. view-source:https://twitter.com/en/privacy
Setting up your Maven settings.xml
to release a Jenkins plugin (1 mins read).
How to set up your crdentials to release a Jenkins plugin via Maven.
Thank you to this week's sponsor, Koyeb!Go 1.21.1 & 1.20.8 coming Sept 6Conference updates🇺🇸 GopherCon in San Diego, California, USA, coming Sept 26-29📼 GopherCon EU videos are online!HashiCorp announced open source licence changeProposals:Accepted: net/http: enhanced ServeMux routingRelated...
why does everyone want to own the libs as an open source developer i own multiple libs i would happily pay people to take them from me you do not want to own libs. its so much work
Ty Franck (one half of James S.A. Corey) and Wes Chatham ('Amos Burton' on The Expanse) discuss their favorite space vacuum scenes and The Expanse S5E7.
I have not slept well at all. Instead of working on negotiating layoffs, leadership is taking this extended break to congratulate themselves for what they've done. Meanwhile, workers of all disciplines and levels are either scrambling to find work or understanding what next steps they can take. I truly don't understand how people who run layoffs sleep well at night - knowing that you've signed off on the destabilizing action of so many.
Hey babe wake up, new #Hacktoberfest site just dropped 👀🎃
Removing ANSI escape codes in Vim (1 mins read).
How to remove ANSI escape codes in (Neo)Vim.
Ty Franck (one half of James S.A. Corey) and Wes Chatham ('Amos Burton' on The Expanse) discuss S6E5 and that amazing meeting of the space queens at the end... as well as top 5 rival teamups in movies.
Creating global middleware for net/http
servers in Go (1 mins read).
How to wrap net/http
servers in Go with middleware(s) on every request.
Myself, along with almost 40 other workers (a large amount of @cfaworkers@union.place), were laid off from Code for America. Instead of working with workers to get a union contract, they gutted our stances. AFAIK, we will be getting COBRA covered until November 2023 and one month of severance. The workers wrote the following: https://cfaworkersunited.com/stories/2023/08/31/code-for-america-lays-off-35-colleagues
This week on The Changelog Adam is joined by Zach Lloyd, Founder & CEO of Warp. We talked with Zach last year about what it takes to build the terminal of the future, and today Adam catches up with Zach to see where they are at on that mission. They talk about the business model of Warp, how they measure success, r...
Very excited to be speaking at #TechMids2023 on October 20th about Quantifying your reliance on Open Source software, where we'll look at how you can get a better view of your organisation's Open Source and internal dependency usage using dependency-management-data 🎉
What Go versions are my modules and dependencies targeting? (1 mins read).
Without using go mod vendor
, how you can look at the version of Go that each of your modules and dependencies target.
Why is Go trying to upgrade my go.mod
to Go 1.21? (1 mins read).
Why you may be seeing Go trying to upgrade the Go version in your go.mod
to Go 1.21.
Our “what’s new in Go” correspondent Carl Johnson joins Johnny & Kris yet again to discuss what’s new with the latest iteration of Go in version 1.21.
Denver discusses JMP's goal to make phone numbers as flexible as emails, his role at Software Freedom Conservancy, and software compliance controversies.
Matthew discusses Snikket, improving XMPP for friendly communication while Stephen presents JMP, easing transitions from other platforms using XMPP.
Erik of Mythics discusses the challenges of transitioning open-source software to government departments and the need for technical and cultural support in sustaining open source in the public sector.
Karen discusses her SFC role, Copyleft licenses' significance, diversity initiative called Outreachy & her personal defibrillator pacemaker encounter, stressing the necessity for greater technological control.
Creating a Zoho Mail alias using the API (2 mins read).
How to use the Zoho Mail API to add an alias to your account.
Sam delves into the sustainability challenges faced by Mellium and similar projects, and his advocacy for support from larger companies and well-funded open-source initiatives.
Play Podcast (extra): Download (Duration: 17:41 — 14.5MB) Contributor license agreements aren’t very popular, but not having a CLA can cause problems for projects in the future. Gary can’t do things …
Ok Homelabbers, it’s time to unite! Join Adam and his new friend Techno Tim for 1.5 hours of homelab goodness. From networking and WiFi, virtualizing Ubuntu running Docker containers, to Home Assistant and automation, building a Kubernetes cluster, to gutting a perfectly good machine just to build exactly what you need...
Setting up Mend Renovate Community Edition for GitLab.com on Fly.io (2 mins read).
How to set up Mend Renovate Community Edition on Fly.io, when integrating with GitLab.com.
How would you go about designing a dark mode theme? I'm looking to implement a dark theme for Datasette and wondering how's best to approach this 🤔
Nick celebrates a decade of writing everyone’s favorite language with guest Josh Goldberg, who contributes to TypeScript, maintains typescript-eslint, and is an all-around great person! Jerod is also here to join the celebration, but let’s keep that a secret from him!
If you work in tech and haven't heard about "being glue", I would say that it's vital to read about it: https://noidea.dog/glue by @whereistanya@hachyderm.io You'll either feel extremely heard, or it will open your eyes to what some of your (disproportionately female) coworkers struggle with on a regular basis.