MikeTrendsTrends right now

search

open-source maintainers

Trends

  1. 1

    OpenBao is an open-source tool written in Go for managing, storing, and distributing sensitive data such as passwords and API secrets, encryption keys, and digital certificates. It emerged as a community-maintained alternative to HashiCorp Vault after licensing changes. On GitHub's trending list this week it has picked up new stars and attention, with developers discussing it as a free, open option for handling secrets securely in their infrastructure.

  2. 2
    Article highlights volunteer figures behind free software infrastructure●# internet # LogicielLibre Un article long mais intéressant sur quelques personnalités (et Logiciels Libres) sur lesquelMmastodonTechnologyInternet551 d ago

    A French-language article has drawn attention for profiling key personalities in free and open-source software whose work underpins today's computing infrastructure, including the internet, computers and connected systems. The piece stresses that many of these contributors maintain critical systems on a volunteer basis, prompting readers to share and discuss how much of the digital world rests on unpaid labour.

  3. 3
    Chimera Linux explains why it built its own build tool●Creating distro build tooling for a small community https://chimera-linux.org/news/2026/10/the-case-for-cbuild.html # LiMmastodonTechnologySoftware52 d ago

    Chimera Linux has published a new essay making the case for cbuild, its distribution build tooling developed in-house rather than reused from an existing distro. The article argues that a small community-maintained distribution benefits from owning its packaging and build pipeline, and the piece is drawing attention among Linux and open-source developers discussing dev tooling choices.

  4. 4
    EmDash adopts Clef to moderate its plugin registry●EmDash uses Clef to moderate the plugin registry https://emdashcms.com/blog/how-emdash-uses-clef-to-moderate-the-plugin-MmastodonTechnologySoftware42 d ago

    The EmDash CMS project has published a blog post explaining how it uses Clef to moderate its plugin registry. The announcement is drawing attention among developers interested in open-source content management systems and approaches to keeping plugin ecosystems safe and well-maintained. Discussion so far is modest but positive, with the open-source community watching how automated moderation tooling is applied to CMS plugin marketplaces.

  5. 5
    Massive open-source pull request sparks AI slop debate●Ok, this got to be a repo diff record. +238,856 -260 https:// github.com/saga-soft/novelWrit er/pull/3067 # AI # Slop #MmastodonTechnologySoftware73 d ago

    A pull request on the open-source project novelWriter by saga-soft is drawing attention for its sheer scale: roughly 238,856 lines added against just 260 removed, a size developers are calling a possible repo diff record. Commenters suspect bulk AI-generated code, tagging it as "AI slop", and are debating whether maintainers can meaningfully review changes of this magnitude.

  6. 6
    WordPress.org's forced takeover of ACF plugin sparks debate●Analisis pengambilalihan paksa plugin ACF oleh WordPress.org menjadi Secure Custom Fields. Dampak etika open source danMmastodonTechnologySoftware54 d ago

    WordPress.org took over the popular Advanced Custom Fields plugin and renamed it Secure Custom Fields, prompting analysis of the ethics of the move. Commenters are weighing the impact on open-source principles, trust between maintainers and repositories, and software supply-chain security for developers who rely on plugins distributed through WordPress.org.

  7. 7
    Greg Kroah-Hartman on security in the age of LLMs●Greg Kroah-Hartman – Security in the LLM Age [video]YhnTechnologyAI34421 h ago

    Greg Kroah-Hartman, the longtime maintainer of the Linux kernel's stable branch, is featured discussing what large language models mean for software and kernel security. The talk examines how AI-generated code affects maintenance, review practices, and vulnerability risks in widely used open-source infrastructure, and it is drawing attention among developers weighing the benefits and dangers of AI-assisted programming.

  8. 8
    KDE's Kate wins over a Hugo site author as Markdown editor●I’ve written about how and why KDE’s Kate has become my Markdown editor of choice for my # homelab # Hugo website. SpellMmastodonTechnologySoftware65 d ago

    A Linux user has published a blog post explaining why KDE's Kate became their Markdown editor of choice for writing and maintaining a Hugo-based homelab website. They highlight Kate's spell checking, Markdown highlighting, live preview, and code snippets, saying the features let them work entirely within the KDE ecosystem without switching tools.

  9. 9

    Anthropic has announced a free AI-powered vulnerability scanner for open-source projects. The tool is intended to help maintainers automatically detect security flaws in their code without paying for commercial scanning services. Security outlets highlighted the launch as it lowers the barrier for under-resourced open-source teams to harden widely used software against exploitation.

  10. 10
    The unsung maintainers holding up the internet●The people holding up the internet https:// sheets.works/data-viz/holding- up-the-internet # internet # blog # web # curMmastodonTechnologySoftware41 d ago

    A new data visualisation from Sheets.works highlights the small teams and individual volunteers behind critical open-source software the internet depends on, including OpenSSL, SQLite, zlib, curl, sudo, ffmpeg, Linux and core-js. The piece, being shared widely in open-source and developer circles, underscores how few maintainers keep essential infrastructure running, renewing debate about underfunding and burnout in the volunteer-run software ecosystem.

  11. 11
    Solus Linux Adopts Formal AI Contribution Policy●Linuxiac: Solus Linux Adopts Formal AI and LLM Contribution Policy https:// linuxiac.com/solus-linux-adopt s-formal-ai-aMmastodonTechnology113 d ago

    Solus Linux, the independent Linux distribution, has introduced a formal policy governing contributions created with AI and large language models. The move, reported by Linuxiac, sets clear rules for how AI-assisted code is handled in the project. It reflects a broader debate in open-source communities about how to manage the growing volume of AI-generated submissions to volunteer-maintained software projects.

  12. 12
    The handful of people holding up the internet●I found this a fascinating read... The people holding up the internet. Billions of phones run on code looked after by aMmastodonTechnologyInternet410 h ago

    A widely shared article highlights how billions of phones and everyday services rely on critical open-source code maintained by just a handful of often unpaid volunteers. From phone alarms to boarding passes and banking, essential digital infrastructure rests on a tiny group of maintainers, prompting renewed debate about the fragility of the software underpinning daily life and the lack of funding and support for the people who keep it running.

  13. 13

    Sentry, the open-source error tracking and performance monitoring platform maintained by Sentry, is seeing fresh attention among developers. The tool helps engineering teams catch, prioritise and fix crashes and performance problems in production software, and its Python-based repository remains a widely used reference project in the monitoring space.

  14. 14
    Google pauses open-source bug bounty program after flood of invalid AI-generated reports▼Google freezes open-source bug bounty program amid flood of invalid AI slop submissions — product flaw submissions halted until 2027 as maintainers drown in hallucinationsMmastodon1713 d ago

    Google has suspended submissions to its open-source bug bounty program until 2027, according to Tom's Hardware, after a surge of low-quality, AI-generated bug reports overwhelmed engineers and maintainers. The reports, often plausible-sounding but fabricated or hallucinated flaws, have made it impractical to separate genuine vulnerabilities from noise, prompting the freeze on new product flaw submissions.

  15. 15
    StreetComplete iOS port via Kotlin Multiplatform reaches halfway point●El mantenedor de StreetComplete, westnordost, reporta que la migración a iOS con Kotlin Multiplatform y Compose MultiplaMmastodonTechnologySoftware47 d ago

    StreetComplete maintainer westnordost reports that the effort to bring the OpenStreetMap surveying app to iOS using Kotlin Multiplatform and Compose Multiplatform has reached roughly 50 percent completion after several months of work. The update gives the open-source mapping community a concrete progress marker on bringing the popular Android app to Apple devices.

  16. 16
    Anthropic offers free AI security scans for open-source projects●Anthropic launches free AI security scans for open-source projects https://www.theverge.com/ai-artificial-intelligence/1MmastodonTechnologyAI420 h ago

    Anthropic has launched a free AI-powered security scanning service for open-source projects, according to a report by The Verge. The tool is aimed at helping maintainers find vulnerabilities in widely used code at no cost. The announcement is drawing attention from developers and security observers discussing the growing role of AI companies in open-source security.

  17. 17
    novelWriter maintainer weighs dropping Debian 12 packages●I'm still releasing novelWriter packages for Debian 12, and I just checked and noticed people are still downloading thosMmastodonTechnologySoftware114 d ago

    The maintainer of novelWriter says they are still building packages for Debian 12 and have noticed people keep downloading them, even though the Debian 12 release reached end-of-life a few months ago. They would like to drop support, which would let them move on from Python 3.11, but are weighing that against users who still rely on those builds.

  18. 18

    Anthropic is providing free AI-powered security scans to open-source maintainers, helping volunteer developers find vulnerabilities in widely used software at no cost. The move targets a community that often lacks the resources for professional security audits, and it arrives as concern grows over supply-chain attacks and flaws in open-source dependencies.

  19. 19
    Anthropic offers free AI security scans for open-source projects▼Anthropic launches free AI security scans for open-source projects✉newsTechnologySoftware3 h ago

    Anthropic has launched a free service that uses AI to run security scans on open-source software projects. The move aims to help volunteer maintainers find vulnerabilities they might otherwise miss due to limited time and resources. It also positions Anthropic more deeply in the developer tools space alongside rivals like OpenAI and Google.

  20. 20
    Two ARM64 compiler bugs hit curl in GCC and Rust toolchains▼Two ARM64-specific compiler optimization bugs, in GCC 15/16 and Rust, hit curlYhn463 d ago

    curl maintainer Daniel Stenberg reports that two ARM64-specific compiler optimization bugs, one in GCC 15/16 and one in the Rust compiler, have affected curl. The bugs, triggered by aggressive optimization on 64-bit ARM platforms, caused miscompiled code in the widely used data transfer library. The report has drawn attention from developers discussing the risks compiler bugs pose to critical open-source infrastructure.

  21. 21
    Anthropic offers free AI security checks for open-source software●Anthropic now offers a free vulnerability-finding service for open-source software https://www.engadget.com/2282005/anthMmastodonTechnologyAI410 h ago

    Anthropic has launched a free service that uses its AI to scan open-source software for security vulnerabilities. The move is being discussed as a potentially significant boost for under-resourced open-source maintainers, who often lack dedicated security auditing, while also raising questions about the growing role of AI companies in software infrastructure and security.

  22. 22
    Dutch animal rights party criticised for omitting Mastodon from job ad▼RE: https:// mastodon.social/@PartijvoordeD ieren/117360440016649804 Waarom wordt # Mastodon niet genoemd in de vacatureMmastodonTechnologySoftware276 d ago

    The Dutch Party for the Animals posted a vacancy for a full-time social media and content specialist for its parliamentary faction, listing Instagram, TikTok, Bluesky and Facebook among the platforms. Mastodon users are questioning why the decentralised network Mastodon is not mentioned, noting the party itself maintains an active account there. The discussion highlights debate over whether organisations should include smaller, open-source platforms in their communications work.

  23. 23
    Google freezes bug bounty program amid flood of AI-generated junk reports▼Google freezes open-source bug bounty program amid flood of invalid AI slop submissions — product flaw submissions halted until 2027 as maintainers drown in hallucinations✉newsTechnologySoftware5 d ago

    Google has paused submissions to its open-source bug bounty program until 2027, citing an overwhelming volume of invalid, AI-generated vulnerability reports. Maintainers are said to be drowning in hallucinated or low-quality flaw submissions that waste review time, prompting the freeze on product flaw reports. The move highlights a growing strain that generative AI tools are placing on security research programs.

  24. 24
    Anthropic launches free vulnerability scanner for open-source projects●Anthropic now offers a free vulnerability-finding service for open-source software Anthropic is offering open-source proMmastodonBusinessStartups22 h ago

    Anthropic has introduced OSS Scanner, a free service that helps open-source software projects find security vulnerabilities. Open-source maintainers can now use the company's AI tools to check their code for weaknesses at no cost. The move comes amid growing concern over the security of widely used open-source dependencies, which are often maintained by small teams with limited resources.

  25. 25
    Anthropic launches free AI security scanner for open-source projects▼Anthropic launches free AI-powered security scanner for open-source software projects✉newsTechnologySoftware1 h ago

    Anthropic has released a free, AI-powered security scanner aimed at open-source software projects. The tool is designed to help volunteer maintainers, who often lack dedicated security resources, find vulnerabilities in their code at no cost. The announcement is drawing attention from developers and security researchers discussing how AI tools could improve security across widely used open-source software.

  26. 26
    Data Drop counts the people holding up the internet●“The people holding up the internet” by Data Drop 🔗 https:// sheets.works/data-viz/holding- up-the-internet > Billions oMmastodonTechnologyInternet26 h ago

    A new data project by Data Drop, 'The people holding up the internet', examines open-source software and finds that billions of phones run on code maintained by only a handful of people. The team counted maintainers directly from the code itself, highlighting how heavily the world's digital infrastructure depends on a very small group of often unpaid developers. Readers are sharing the findings and discussing the fragility of open-source maintenance.

  27. 27
    GitHub repositories gain a way to signal accessibility support●Open any repository on GitHub and you see the same tabs: README, Code of Conduct, Contributing,... # a11y # github # opeMmastodonTechnologySoftware34 d ago

    GitHub repositories can now declare their commitment to accessibility alongside the familiar README, Code of Conduct and Contributing tabs. The change gives open-source projects a standard place to show they care about inclusive design, letting maintainers communicate accessibility information to users and contributors directly within the repository interface. Developers are discussing how this could push accessibility into mainstream open-source workflows.

  28. 28
    Kagi Ends Orion Browser Development for Linux and Windows, Plans Open-Source Handover●Kagi ends development of Orion Browser for Linux and Windows, with plans to open-source both versions and hand them overMmastodonTechnologySoftware85 d ago

    Search company Kagi has stopped developing its Orion browser for Linux and Windows. The company says it plans to release the code for both versions as open source and hand the projects over to the community rather than continue maintaining them in-house. The move affects users of the privacy-focused browser on those platforms, who will now depend on community stewardship if development continues at all.

  29. 29
    Anthropic Offers Free AI Bug Hunting for Open-Source Projects▼Anthropic Is Offering Free AI Bug Hunting for Open-Source Projects✉newsTechnologySoftware1 h ago

    Anthropic is offering free AI-powered bug hunting services for open-source software projects. The announcement, reported by Android Headlines, means developers maintaining open-source code can use Anthropic's AI tools to find and fix vulnerabilities at no cost. The move is being discussed in developer and cybersecurity circles as a way to improve the security of widely used public software.

  30. 30

    Version 18.1 of GDB, the GNU Debugger widely used for debugging C, C++ and other compiled programs, has been released. The announcement was made on the GDB mailing list maintained by Sourceware, pointing users to the new stable point release. Developers are sharing the news in programming communities, where the debugger remains a core tool in open-source toolchains alongside GCC.

  31. 31
    Pidgin developers begin work toward 3.0 Alpha 4●Greetings Programs!! We're back tonight starting our work towards @ pidgin 3.0 Alpha 4!! Come on by!! https:// twitch.tvMmastodonTechnologySoftware47 d ago

    Work is underway on Pidgin 3.0 Alpha 4, the next testing release of the long-running open-source instant messaging client. Developer rw_grim announced a live coding session kicking off the push toward the new alpha, inviting the open-source community to watch and follow along as development resumes.

  32. 32
    The West's open-source AI race kicks into high gear▼View / The West’s open-source AI race kicks into high gear✉newsTechnologySoftware1 d ago

    Western companies and governments are accelerating efforts to compete in open-source artificial intelligence, according to Semafor's analysis. The push comes as open-weight models gain ground globally and policymakers weigh how to keep pace with rivals while maintaining an edge over Chinese AI developers. The debate centers on whether open approaches can match closed, proprietary systems from leading US labs.

  33. 33
    Bridgetown site generator seeks sponsors●We're spreading the word once more that you can become a sponsor of Bridgetown, the only hybrid site generator in the #MmastodonTechnologySoftware42 d ago

    The developers behind Bridown's Bridgetown are again asking the Ruby community to sponsor the project, describing it as the only hybrid site generator in the Ruby web ecosystem, capable of producing both static sites and dynamic server-rendered pages within one system. They note it powers websites for projects including Sidekiq and RuboCop. The renewed appeal suggests funding support remains modest, and open-source maintainers are increasingly turning to sponsorship to sustain development.

  34. 34

    The BBC maintains its own fork of dash.js, the open-source JavaScript library for adaptive video streaming via MPEG-DASH. A report examines why the broadcaster diverged from the upstream project and what its changes involve. The story is being discussed among developers interested in streaming media technology and the BBC's engineering practices.

  35. 35
    Anthropic Speeds AI Bug Reports to Open-Source Maintainers, Adds OT Security Partners▼Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security✉newsTechnologySoftware8 h ago

    Anthropic says it will fast-track the reporting of AI-related security bugs to open-source software maintainers, aiming to shorten the time between discovery and disclosure. The company also named 11 firms it is working with on operational technology security. The announcements signal Anthropic pushing deeper into cybersecurity coordination, drawing attention from developers and security teams watching how AI vendors handle vulnerability disclosure.

  36. 36
    Moderate vulnerability disclosed in Docling document parsing tool▼🚨 EUVD-2026-92803 📊 Score: 4.0/10 (CVSS v3.1) 📦 Product: docling, docling-slim 🏢 Vendor: docling-project 📅 Updated: 2026MmastodonTechnologyCybersecurity04 d ago

    A new vulnerability, EUVD-2026-92803, has been catalogued affecting the docling and docling-slim packages maintained by the docling-project. The flaw carries a moderate severity score of 4.0 out of 10 under CVSS v3.1 and affects versions from 2.91.0 onward. Docling is widely used to parse document formats and connect them with generative AI tools, so affected users are advised to check versions and apply fixes.

  37. 37
    The Open-Source Internet Is Bigger Than Most Realise●The Open-Source Internet Is Bigger Than I Thought▶youtubeTechnologySoftware53.2K1 h ago

    A new explainer is drawing attention to how much of the modern internet runs on open-source software, from Linux servers and open databases to the programming languages and libraries behind major websites and apps. The takeaway spreading among viewers and developers is that open-source projects quietly underpin far more of everyday online life than the average user realises, prompting discussion about how little recognition these projects and their volunteer maintainers actually get.

  38. 38
    Anthropic offers free AI security scans for open-source projects●Anthropic scannt Open-Source-Projekte kostenlos auf Sicherheitslücken Anthropic bietet Open-Source-Projekten kostenloseMmastodonTechnologySoftware28 h ago

    Anthropic is offering open-source projects free automated security scans to find vulnerabilities. The company says that in tests, most of the weaknesses identified by the scans turned out to be genuine. The move puts AI-powered security auditing in the spotlight, with observers weighing the benefit for under-resourced open-source maintainers against questions about trusting an AI vendor with code analysis.

  39. 39
    Kagi Ends Orion Browser Development for Linux, Will Open-Source It●Kagi Ends Orion Browser Development for Linux, Will Open-Source It https://linuxiac.com/kagi-ends-orion-browser-developmMmastodonTechnology34 d ago

    Search company Kagi has ended development of its Orion browser for Linux and will open-source the existing code. The move means Linux users will no longer receive official updates, but the community will be free to maintain and build on the browser themselves. The announcement is drawing attention among open-source and privacy-focused technology communities.

  40. 40
    OSS Scanner Offers Free Security Checks for Open-Source Projects▼OSS Scanner: Free Checks for Eligible Open-Source Projects✉newsTechnologySoftware1 h ago

    OSS Scanner is offering free checks for eligible open-source projects, a service aimed at helping maintainers identify vulnerabilities and quality issues in their code at no cost. The announcement is drawing attention in software communities, where maintainer budgets are often tight and automated security screening tools can be expensive. Details on eligibility criteria and what the checks cover remain limited so far.

Repos