#gpl-v3

[ follow ]
#open-source
Software development
fromZDNET
3 weeks ago

How AI has suddenly become much more useful to open-source developers

AI tools are becoming increasingly useful for open-source maintainers, but legal and quality issues remain.
UX design
fromMedium
1 day ago

Working in the open

Working in open source enhances design skills through collaboration, user empowerment, and continuous learning.
Privacy professionals
fromTheregister
1 day ago

Linux may get exemption from Colorado age-check bill

OS-level age checks for open source systems raise concerns, but proposed exemptions in Colorado may set a precedent amid potential federal legislation.
Python
fromThe Hacker News
3 weeks ago

The State of Trusted Open Source Report

AI is reshaping software development and security, influencing container image usage and vulnerability management.
Software development
fromZDNET
3 weeks ago

How AI has suddenly become much more useful to open-source developers

AI tools are becoming increasingly useful for open-source maintainers, but legal and quality issues remain.
fromPython Software Foundation Blog
14 hours ago

Announcing Python Software Foundation Fellow Members for Q1 2026!

The following people continue to do amazing things for the Python community: Bill Deegan, El-karece Asiedu, (James) Kanin Kearpimy, Jonas Obrist, Kristen McIntyre, Lucie Anglade, Philippe Gagnon, Sarah Kuchinsky, Simon Charette, Sony Valdez, Stan Ulbrych, and Steve Yonkeu.
Django
Information security
fromDevOps.com
6 days ago

The Open Source Trap: Why Trust Isn't a Security Strategy - DevOps.com

The software supply chain is vulnerable due to reliance on under-resourced open source maintainers, requiring active organizational support for security.
DevOps
fromSecuritymagazine
1 week ago

Democratized Software, Democratized Risk: Who's Accountable When Everyone Codes?

AI-driven coding tools enable non-technical teams to create software, but they introduce vulnerabilities and require clear ownership and governance.
#open-source-security
fromInfoQ
1 week ago
Web frameworks

Empower Your Developers: How Open Source Dependencies Risk Management Can Unlock Innovation

Web frameworks
fromInfoQ
1 week ago

Empower Your Developers: How Open Source Dependencies Risk Management Can Unlock Innovation

Improving security in open-source dependencies is essential for effective risk management and innovation.
Information security
fromTechzine Global
1 month ago

Linux Foundation Receives $12.5 Million for Open Source Security

The Linux Foundation receives $12.5 million in grants from major tech companies to address security challenges in open source software caused by AI-generated vulnerability reports overwhelming maintainers.
Software development
fromTheregister
1 month ago

Linux Foundation wants to shield FOSS devs from AI bug slop

Six major tech companies are funding a $12.5 million Linux Foundation initiative to help open source maintainers manage the surge of AI-generated vulnerability reports.
Python
fromPython Software Foundation Blog
1 week ago

Reflecting on Five Years as the PSF's First CPython Developer in Residence

The inaugural CPython Developer in Residence is leaving after five years, ensuring the program's continuity and future sponsorship through mid-2027.
fromTheregister
1 week ago

Git identity spoof fools Claude into giving bad code the nod

In a blog published this week, Manifold Security showed how an AI-powered code reviewer built on Claude accepted changes that appeared to come from a legitimate maintainer. By setting a fake author name and email in Git, the team made a commit appear to originate from a trusted source, then passed it through an automated review flow where the model approved it.
Information security
Software development
fromTheregister
1 week ago

20-year-old Enlightenment E16 bug finally gets patched

Kamila Szewczyk fixed a 20-year-old bug in the Enlightenment E16 Linux window manager, emphasizing the value of maintaining older software.
Software development
fromZDNET
1 week ago

The new rules for AI-assisted code in the Linux kernel: What every dev needs to know

Torvalds and Linux maintainers establish a formal policy for AI-assisted code contributions, emphasizing human responsibility and accountability.
fromTheregister
3 weeks ago

Contracts are in C++26 despite disagreement over their value

Contracts are a means of setting preconditions and postconditions on function declarations, and adding assertion statements within functions. The feature is intended to help make C++ code safer and more reliable.
Intellectual property law
#linux-kernel
Software development
fromTheregister
1 week ago

Linux 7.0 debuts as Linus Torvalds ponders AI's impact

Version 7.0 of the Linux kernel features small fixes, AI tool integration, official Rust support, and enhancements for various processors and filesystems.
fromZDNET
2 months ago
Software development

Linux after Linus? The kernel community finally drafts a plan for replacing Torvalds

Software development
fromTheregister
1 week ago

Linux 7.0 debuts as Linus Torvalds ponders AI's impact

Version 7.0 of the Linux kernel features small fixes, AI tool integration, official Rust support, and enhancements for various processors and filesystems.
fromZDNET
2 months ago
Software development

Linux after Linus? The kernel community finally drafts a plan for replacing Torvalds

Software development
fromArs Technica
3 weeks ago

Anthropic says its leak-focused DMCA effort unintentionally hit legit GitHub forks

Anthropic's DMCA takedown mistakenly removed legitimate forks of its code, leading to backlash and a request for reinstatement of affected repositories.
Tech industry
fromFuturism
1 month ago

Sam Altman Thanks Programmers for Their Effort, Says Their Time Is Over

Tech companies are laying off thousands of workers while claiming AI has made them redundant, though the actual cause may be pandemic-era overhiring and corporate bloat.
Intellectual property law
fromTheregister
1 month ago

FSF urges AI vendors to liberate LLMs

The FSF received a settlement notice from Anthropic's copyright infringement lawsuit, with Anthropic agreeing to create a $1.5 billion compensation fund for authors whose works were used in AI model training without permission.
Privacy technologies
fromTheregister
1 month ago

Nanny state vs. Linux: show us your ID, kid

Multiple US states now require operating system vendors to collect and store user age or date of birth, with similar laws emerging globally and threatening open-source platforms' user freedom principles.
Software development
fromArs Technica
3 weeks ago

Entire Claude Code CLI source code leaks thanks to exposed map file

Claude Code's complexity and architecture provide valuable insights for competitors and pose security risks for Anthropic.
#ai-in-open-source
fromZDNET
1 month ago
Miscellaneous

Why AI is both a curse and a blessing to open-source software - according to developers

AI can benefit open source when properly applied for security analysis, but causes harm when generating low-quality automated bug reports that overwhelm maintainers with false positives.
fromZDNET
1 month ago
Artificial intelligence

Why AI is both a curse and a blessing to open-source software - according to developers

AI can benefit open source when properly applied for security analysis, but causes harm when generating low-quality automated bug reports that overwhelm maintainers with false positives.
fromZDNET
1 month ago
Miscellaneous

Why AI is both a curse and a blessing to open-source software - according to developers

Artificial intelligence
fromZDNET
1 month ago

Why AI is both a curse and a blessing to open-source software - according to developers

AI can benefit open source when properly applied for security analysis, but causes harm when generating low-quality automated bug reports that overwhelm maintainers with false positives.
Online Community Development
fromInfoWorld
1 month ago

Oracle rejects request it give up control of MySQL

Oracle refused to restructure MySQL Community Edition governance despite requests from database companies and 544 users, though it promised increased transparency and feature parity with commercial versions.
Python
fromInfoQ
1 month ago

Google Open-Sources the Common Expression Language for Python

Google open sourced CEL-expr-python, a Python implementation of the Common Expression Language for policy enforcement, data validation, and dynamic configuration with improved consistency and maintainability.
Intellectual property law
fromArs Technica
1 month ago

AI can rewrite open source code-but can it rewrite the license, too?

A developer rewrote open-source code using AI while having prior exposure to the original codebase, claiming the AI-generated version is structurally independent and not a derivative work despite not following traditional clean room practices.
Software development
fromArs Technica
4 weeks ago

Mozilla dev's "Stack Overflow for agents" targets a key weakness in coding AI

cq aims to enhance coding agents' efficiency by enabling knowledge sharing and addressing outdated information and resource consumption issues.
Business
fromHelen Min
1 month ago

Software isn't dying, but it is becoming more honest - Helen Min

SaaS's subscription-based billing model is evolving beyond fixed seat-based pricing toward usage-based and outcome-based billing models that better align costs with actual value delivered.
Web frameworks
fromMedium
1 month ago

My 8-Year-Old Open-Source Project was a Victim of a Major Cyber Attack

A popular open-source project fell victim to a supply-chain attack through a development workflow loophole, threatening years of work and project reputation.
Growth hacking
fromGitHub
2 months ago

GitHub - zenika-open-source/promote-open-source-project: How to promote my open source project?

Optimize README and documentation, provide demos, promote widely, and invite and reward contributors to grow and sustain an open source project.
fromTheregister
2 months ago

Gentoo moves to Codeberg amid GitHub Copilot concerns

Gentoo's official migration from Microsoft-owned GitHub to Codeberg is underway, as the Linux distribution fulfills a pledge to ditch the code shack due to "continuous attempts to force Copilot usage for our repositories." The decision was made public last month, when Gentoo confirmed it intended to migrate repository mirrors and pull request contributions to the new home. On February 16, the organization revealed it now had a presence on Codeberg, where contributions could be submitted.
Miscellaneous
Philosophy
fromMedium
2 months ago

Why code is not the source of truth

Design specifications and blueprints, not implementation code, are the authoritative source of truth; implementation is derived from and judged against originating design authority.
#open-source-funding
fromTechCrunch
1 month ago
Non-profit organizations

A VC and some big-name programmers are trying to solve open source's funding problem, permanently | TechCrunch

fromTechCrunch
1 month ago
Non-profit organizations

A VC and some big-name programmers are trying to solve open source's funding problem, permanently | TechCrunch

#goose
fromZDNET
2 months ago
Artificial intelligence

I tried a Claude Code alternative that's local, open source, and completely free - how it works

fromZDNET
2 months ago
Artificial intelligence

I tried a Claude Code rival that's local, open source, and completely free - how it went

fromZDNET
2 months ago
Artificial intelligence

I tried a Claude Code alternative that's local, open source, and completely free - how it works

fromZDNET
2 months ago
Artificial intelligence

I tried a Claude Code rival that's local, open source, and completely free - how it went

fromThe Verge
2 months ago

I went back to Linux and it was a mistake

A few months ago, I decided to breathe new life into a 2019 Dell XPS 15 that had been collecting dust for a couple of years. Despite its (at the time) high-end Core i7 CPU and 32GB of RAM, Windows was frustratingly slow on it. The fan was constantly at full throttle even when the machine was idle, and it regularly failed to install updates.
Tech industry
Software development
fromInfoWorld
1 month ago

How AI is changing open source

Open source shifted focus from consumer visibility to critical infrastructure layers like Kubernetes, observability, and platform engineering that power AI and cloud-native systems.
fromZDNET
2 months ago

Want local vibe coding? This AI stack replaces Claude Code and Codex - and it's free

If you've been programming for any number of years, you've pretty much lived through a bunch of hype cycles. Whether it's a new development environment, a new language, a new plugin, or some new online service with an oh-so-powerful time-saving API, it's all "revolutionary" and "world-changing," at least according to the PR reps hawking The Big New Thing. And then there's agentic AI coding. When a tool can help you do four years of product development in four days, the impact is world-changing.
Artificial intelligence
fromTypelevel
1 month ago

Typelevel Foundation is a 501(c)(3) public charity

The process of applying for charitable status is challenging, and especially so for open source organizations, which frequently receive denials. Working together with our attorneys, we prepared an application that explained what Typelevel does and why this work is charitable, citing the unique innovations of our projects, our participation in conferences and mentoring programs, and our commitment to open collaboration.
fromTechzine Global
1 month ago

AI code undermines control over open source and IP

While AI tools are lowering the barrier to development, the gap between speed and manageability is growing. In just over a year and a half, AI code assistants have grown from an experiment to an integral part of modern development environments. They are driving strong productivity growth, but organizations are not keeping up with the associated security and governance issues.
Information security
Miscellaneous
fromTheregister
1 month ago

Open source package repositories face sustainability crisis

Open source repositories face unsustainable demand from companies misusing them as CDNs, prompting consideration of tiered payment systems where heavy users pay while individual developers remain free.
fromInfoWorld
2 months ago

Open source maintainers are being targeted by AI agent as part of 'reputation farming'

The important shift is that software contribution itself is becoming programmable,
Artificial intelligence
Information security
fromTheregister
2 months ago

How the GNU C Compiler became the Clippy of cryptography

Modern compilers optimize away security protections, causing constant-time and other defensive code to fail and reintroducing side-channel vulnerabilities.
fromInfoQ
2 months ago

GitHub Reworks Layered Defenses After Legacy Protections Block Legitimate Traffic

GitHub engineers recently traced user reports of unexpected "Too Many Requests" errors to abuse-mitigation rules that had accidentally remained active long after the incidents that prompted them. According to GitHub, the affected users were not generating high-volume traffic; they were "making a handful of normal requests" that still tripped protections. The investigation found that older incident rules were based on traffic patterns that were strongly associated with abuse at the time, but later began matching some legitimate, logged-out requests.
Information security
fromTechzine Global
1 month ago

Go developer questions effectiveness of Dependabot

Dependabot sounded the alarm on a large scale. Thousands of repositories automatically received pull requests and warnings, including a high vulnerability score and signals about possible compatibility issues. According to Valsorda, this shows that the tool mainly checks whether a dependency is present, without analyzing whether the vulnerable code is actually accessible within a project.
Information security
Software development
fromTheregister
2 months ago

Vibe coding may be hazardous to open source

AI coding tools reduced Tailwind documentation traffic by about 40%, cutting commercial exposure and causing Tailwind Labs to lay off three workers.
fromTheregister
2 months ago

VS Code for Linux may be secretly hoarding trashed files

The reason for this is Snap - a Linux application packaging format - creates a local Trash folder for each VS Code version, one that's separate from the system-managed Trash, according to a VS Code bug report dating back to November 11, 2024. Not only that, but Snap keeps older versions of VS Code after updates, potentially multiplying the number of local Trash folders and the trashed-but-not-deleted files therein. Emptying the system Trash folder doesn't affect the local instances.
Software development
fromTheregister
2 months ago

Oracle Java licensing worries keep percolating

A study from Dimensional Research shows that 92 percent of the 2,000 respondents reported being concerned about Oracle Java pricing, up from 82 percent in the same survey last year. Those stating they were very concerned about the changes leapt from 19 percent in 2025 to 29 percent this year. In 2023, Oracle changed its Java SE subscription model, shifting from a per-user or per-processor basis to per-employee.
Software development
Software development
fromZDNET
1 month ago

Linux explores new way of authenticating developers and their code - here's how it works

The Linux kernel is transitioning from PGP-based developer identification to a more efficient system that addresses privacy concerns and streamlines the cumbersome face-to-face key-signing verification process.
fromTechCrunch
2 months ago

For open-source programs, AI coding tools are a mixed blessing | TechCrunch

AI coding tools have caused as many problems as they have solved, according to industry experts. The easy-to-use and accessible nature of AI coding tools has enabled a flood of bad code that threatens to overwhelm projects. Building new features is easier than ever, but maintaining them is just as hard and threatens to further fragment software ecosystems. The result is a more complicated story than simple software abundance.
Software development
Software development
fromInfoQ
1 month ago

GitHub's Points to a More Global, AI-Challenged Open Source Ecosystem in 2026

Open source faces unprecedented scale with 36 million new developers joining GitHub in 2025, requiring formal governance structures and strategies to manage AI-generated low-quality contributions.
Software development
fromInfoWorld
2 months ago

GitHub previews support for Claude and Codex coding agents

GitHub agents run inside repositories and tools to surface trade-offs, keep context, and create draft pull requests for standard code review.
fromInfoWorld
2 months ago

GitHub eyes restrictions on pull requests to rein in AI-based code deluge on maintainers

GitHub is exploring what already seems like a controversial idea that would allow maintainers of repositories or projects to delete pull requests (PRs) or turn off the ability to receive pull requests as a way to address an influx of low-quality, often AI-generated contributions that many open-source projects are struggling to manage.
Software development
fromQuinnkeast
2 months ago

What, then, are we paying for?

Generative AI exponentially brings down the cost of building solutions. It lets people build exactly what they need to solve an exact problem in an exact moment. It lets people own their own solutions. This is great for a lot of specific problems that need specific solutions that wouldn't normally get solved easily. This has been the evergreen promise of computers and programming and hacking. But there's a difference between solving your specific problem, and owning a problem domain.
Software development
fromInfoQ
2 months ago

OpenCode: an Open-source AI Coding Agent Competing with Claude Code and Copilot

Open-source AI coding tool OpenCode features a native terminal-based UI, multi-session support, and compatibility with over 75 models, including Claude, OpenAI, Gemini, and local models. In addition to its CLI tool, OpenCode is also available as a desktop app and and an IDE extension for VS Code, Cursor, and other tools. OpenCode allows developers to use their existing subscriptions to paid services such as ChatGPT Plus/Pro, GitHub Copilot. Additionally, it includes a set of free models that can be used locally through LM Studio.
Software development
Software development
fromInfoWorld
2 months ago

Community push intensifies to free MySQL from Oracle's control amid stagnation fears

Database veterans and contributors urge MySQL to move to an independent foundation model to restore roadmap transparency, increase development velocity, and add AI-era features.
Software development
fromInfoWorld
2 months ago

Go 1.26 unleashes performance-boosting Green Tea GC

Go 1.26 introduces self-referential generic parameters, expression operands for new, go fix modernizers, reduced cgo overhead, and multiple runtime and performance improvements.
[ Load more ]