Switter.su
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
jackpot@lemmy.ml to Open Source@lemmy.ml · 2 years ago

Quillpad is looking for new maintainers

github.com

external-link
message-square
12
fedilink
109
external-link

Quillpad is looking for new maintainers

github.com

jackpot@lemmy.ml to Open Source@lemmy.ml · 2 years ago
message-square
12
fedilink
Help Wanted!!! · Issue #275 · quillpad/quillpad
github.com
external-link
I had to switch to an iPhone couple of month and won't be able to test the Quillpad app on my phone anymore. I am still an Android developer by job, though not mostly on the UI. I am looking for so...
  • erAck@discuss.tchncs.de
    link
    fedilink
    arrow-up
    8
    arrow-down
    6
    ·
    2 years ago

    This is how one attracts and invites Jia Tan and Hans Jansen types.

    • jackpot@lemmy.mlOP
      link
      fedilink
      arrow-up
      6
      arrow-down
      2
      ·
      2 years ago

      this isnt worth the time, it’s not a dependency of a huge piece of software

      • erAck@discuss.tchncs.de
        link
        fedilink
        arrow-up
        2
        arrow-down
        1
        ·
        2 years ago

        Malicious account holders with a long term goal need to build reputation. It doesn’t matter much that such an app isn’t a dependency of other software.

        • steeznson@lemmy.world
          cake
          link
          fedilink
          arrow-up
          6
          ·
          2 years ago

          Practically every FOSS project is actively looking for volunteers/maintainers all of the time. More contributors are not problematic.

          The xz problem was that they socially engineered the main dev into giving them the keys to the kingdom.

          • erAck@discuss.tchncs.de
            link
            fedilink
            arrow-up
            3
            arrow-down
            1
            ·
            2 years ago

            Making one a maintainer (with merge and possibly even direct commit/push permissions) is handing them a key to the kingdom. Recruiting a maintainer out of the blue without them being already contributor and long term participant in the project is questionable.

            • steeznson@lemmy.world
              cake
              link
              fedilink
              arrow-up
              1
              ·
              2 years ago

              I believe that the bad actor was a contributor for several years before becoming a maintainer

              • erAck@discuss.tchncs.de
                link
                fedilink
                arrow-up
                2
                ·
                2 years ago

                Apparently not, you can check commits in https://git.tukaani.org/?p=xz.git;a=summary the first authored commit was 2022-01-28, then long time nothing until 2022-06-10, the first merge as committer was 2022-12-16.

                • steeznson@lemmy.world
                  cake
                  link
                  fedilink
                  arrow-up
                  1
                  ·
                  2 years ago

                  Interesting! I’d not realised it was so recent

    • Vigilante@lemmy.today
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 years ago

      Is Hans you are refering to the guy on fdroid or someone else ?

      • erAck@discuss.tchncs.de
        link
        fedilink
        arrow-up
        2
        ·
        2 years ago

        Of the xz/liblzma backdoor incident.

        • Vigilante@lemmy.today
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 years ago

          Oh i only remembered jia tan so thought it was fdroid one.

Open Source@lemmy.ml

opensource@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !opensource@lemmy.ml

All about open source! Feel free to ask questions, and share news, and interesting stuff!

Useful Links

  • Open Source Initiative
  • Free Software Foundation
  • Electronic Frontier Foundation
  • Software Freedom Conservancy
  • It’s FOSS
  • Android FOSS Apps Megathread

Rules

  • Posts must be relevant to the open source ideology
  • No NSFW content
  • No hate speech, bigotry, etc

Related Communities

  • !libre_culture@lemmy.ml
  • !libre_software@lemmy.ml
  • !libre_hardware@lemmy.ml
  • !linux@lemmy.ml
  • !technology@lemmy.ml

Community icon from opensource.org, but we are not affiliated with them.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 777 users / day
  • 1.51K users / week
  • 3.41K users / month
  • 9.98K users / 6 months
  • 1 local subscriber
  • 41.2K subscribers
  • 2.43K Posts
  • 37K Comments
  • Modlog
  • mods:
  • Evan@lemmy.ml
  • kevincox@lemmy.ml
  • CrypticCoffee@lemmy.ml
  • Lettuce eat lettuce@lemmy.ml
  • BE: 0.19.10
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org