Discussion
Loading...

Discussion

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Sofie ๐Ÿณ๏ธโ€๐ŸŒˆ
Sofie ๐Ÿณ๏ธโ€๐ŸŒˆ
@soupglasses@hachyderm.io  ยท  activity timestamp 4 days ago

Learning that #mise, a meta packaging tool, which I personally use, package, and contribute to through a plugin, took a major turn 6 months ago towards largely vibe coding all future development by the lead developer. I'm not really sure what to do with this information, at least it is somewhat clearly labelled? blobfoxnotlikethis

So I'm on the market to look for another packaging tool. Wondering if #nix ever got their drama resolved since i left. I know nixpkgs does have a vague "no llm slop" rule, but nothing explicitly against use of AI completely. blobfoxsad

Maybe I should try to pick up another tool for packaging more seriously, like RPMs and Open Build Service, and contribute more upstream to openSUSE. revblobfoxread

https://github.com/jdx/mise/commit/23dc84b29

  • Copy link
  • Flag this post
  • Block
Sofie ๐Ÿณ๏ธโ€๐ŸŒˆ
Sofie ๐Ÿณ๏ธโ€๐ŸŒˆ
@soupglasses@hachyderm.io replied  ยท  activity timestamp 4 days ago

Seems Determinate Systems are the true murderers of the once open community that was #nix. Since i have last looked they have:

1. Effectively Hard forked Nix into their own Determinate Nix, with a pinky promise to upstream everything, which does not seem to have been done at the scale originally promised. https://determinate.systems/blog/announcing-determinate-nix/

2. The nix installer has been reworked to not support the original nix project, only this non-standard Determinate Nix version for "their consumers".

3. Blaming upstream for not doing it their way with flakes. Effectively acting as flakes will one day become only supported by their Determinate Nix fork in the future. https://www.reddit.com/r/NixOS/comments/1j4fhgf/determinate_nix_30_featuring_stable_flakes/mg8e5w7/

4. Forked nixpkgs and (mis)used the MIT license to create a proprietary fork with SBOMs and CVE monitoring. Notably maintaining security patches for packages outside of nixpkgs, effecitively commercializing the open project nixpkgs for their profit. https://determinate.systems/secure-packages/

Ah well, I wont be getting back into Nix anytime soon. Maybe the community is largely ignoring DetSys, but given that still core people of the nix community work there, the actions of this one company destroys the trust in nix as a whole.

Determinate Secure Packages

Secure, signed, auditable Nix packages that you can trust

Announcing Determinate Nix

Determinate Nix is a Nix distribution for teams
  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About ยท Code of conduct ยท Privacy ยท Users ยท Instances
Bonfire social ยท 1.0.1-beta.35 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct