The GitHub Secure Open Source Fund helped #curl and others to beef up security https://github.blog/open-source/maintainers/securing-the-ai-software-supply-chain-security-results-across-67-open-source-projects/
Post
The GitHub Secure Open Source Fund helped #curl and others to beef up security https://github.blog/open-source/maintainers/securing-the-ai-software-supply-chain-security-results-across-67-open-source-projects/
@bagder considering that curl has been around longer than GitHub, I read this like: securing our (now) AI business.
Hope you stay on board for the next hype, too.
@fromthesocks their sponsorship of curl probably helps a large amount of users, but yes also those riding the latest hype. Not sure how that matters...
@bagder yep, I was only picking on the narrow justification 'AI supply chain'.
@bagder > Modern software is built on open source projects. In fact, you can trace almost any production system today, including AI, mobile, cloud, and embedded workloads, back to open source components. These components are the invisible infrastructure of software: the download that always works, the library you never question, the build step you haven’t thought about in years, if ever.
And they all rely on DNS … and BGP. These are the invisible^2 infrastructure of the Internet.