←back to thread

Open Source is one person

(opensourcesecurity.io)
433 points LawnGnome | 3 comments | | HN request time: 0s | source
Show context
blueflow ◴[] No.45050331[source]
If they had done an activity check they would have seen that half of all projects have zero maintainers.
replies(1): >>45051284 #
ysofunny ◴[] No.45051284[source]
software once "perfected" (working well enough long enough) needs NO maintenance. No cleaning. No calibrating/tunning.

updating is a systemic issue, not a per-project matter

replies(8): >>45051346 #>>45051557 #>>45052779 #>>45053610 #>>45053967 #>>45055423 #>>45056222 #>>45057634 #
1. IAmBroom ◴[] No.45052779[source]
That is a hysterically wrong statement.

It is true of Solitaire, Minesweeper, Calculator, and Notepad, and probably about the same number of programs on other OSes. (Notepad has recently had an important expansion of functionality, but it didn't NEED that change.)

It's also true of some dinosaurs I have on my system, that copy DVDs and so forth.

It's not true of most other applications, nor can it be true, unless the app works in a sealed, unchanging environment.

Even then... Voyager 2 recently required a software upgrade, IIRC.

replies(2): >>45053202 #>>45056327 #
2. Wololooo ◴[] No.45053202[source]
The point is everything require maintenance, the degree at which it does require it depends on how dependent you are on it and how resilient the system itself is.

You are but going to fundamentally be in distress if solitaire and minesweeper is not running, if your monitoring SW for some important infrastructure starts to exhibit some issues, you might want to take a look or two...

3. supportengineer ◴[] No.45056327[source]
You don't think Notepad needed AI, a subscription model, and interstitial ads?