frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

I feel open source has turned into two worlds

https://utcc.utoronto.ca/~cks/space/blog/tech/OpenSourceTwoWorlds
57•sdht0•6h ago

Comments

CaptainFever•4h ago
Personally, the distinction I draw isn't between corporations and cooperation as per the article ("they make money" is kind of an arbitrary difference IMO), but just that in general maintainers have no obligation to do any sort of work for free.

So like, regardless of the user of the software, one should understand that there really is no warranty, or promise of quality or support from FOSS.

If one (whether it be Debian or Apple) needs a feature, bug fix, or security fix, one can ask for it, but don't expect anything.

The best way is to do it themselves, and share their code if they wish to or are obligated to under the GPL. Or commission a programmer or the maintainer to do it. Or buy a support contract from the maintainer. Or encourage it by doing micropatronage and voting for it.

anewhnaccount2•3h ago
I think this is correct and projects like DuckDB are doing a food job at supporting both halves by triaging issues also based on the identity and affiliation of the author (no anonymous issues) and converting them into supporters https://duckdblabs.com/community_support_policy/

This passive approach of libxml2 where the software remains community only is just fine and totally fair, but corporate users can pay up if there's a clear offering. What they actually get doesn't need to be much, but if it does need to be clear. Of course this does change the project into hybrid community/corperate open source but there can be a spectrum there where a lot of time and resources is carved out for the community approach and the corperate sponsors are given just enough to keep them happy. In a way some more corperate focussed Linux distributions are also an example of a hybrid approach really given the two worlds are very much linked.

captn3m0•1h ago
I don’t see affiliation/no-anon-issues on the DuckDB link, do you have a better link?
politelemon•2h ago
> This policy will probably make some downstream users nervous, but maybe it encourages them to contribute a little more.

This is an understated but brilliant framing. Oh I know they won't contribute, users will continue to apply pressure through issue threads saying that their clueless security teams are breathing down their necks. But at least you'd hope this gives pause.

The linked issue is worth a read, it's a shame the burden that corporate leeches like apple and google have placed on him. To them this project is simply free labour they have assumed they are entitled to and by extension are subject to their individual security theatrics.

https://gitlab.gnome.org/GNOME/libxml2/-/issues/913

jsnell•1h ago
I'd note that the only thing Apple, Google and MS are said to have done is to use the software.

The bug has no actual example of them making demands, "leeching" or acting entitled.

The security issues would be security issues just the same even if the library was only used by Linux desktops. (And if the library is unfit for use in other operating systems like the author suggests, feels like it probably is equally unfit for use in Gnome.)

polotics•1h ago
It's high-time for a "reasonable compensation" clause in hobbyists' open-source software licenses I think. Something to the effect of: "if you're using my labour of love to make millions, gimme one of these millions..."
altairprime•59m ago
Uncompensated use for unshared reward is, by definition, leeching. The BBS use of the term referred to leeching in the context your upload/download ratio, the torrent use in the context of your seeded/downloaded ratio.

ratio = (contributions - demands) : earnings

If you contribute nothing, demand nothing, and earn nothing, carry on. “Nothing” is loosely defined as “near enough to zero in the context of a specific project”.

If you contribute nothing, demand nothing, and earn (DL) a million dollars using it somehow, you’re a leecher. Your U/D ratio is 0.0. That should be an uncomfortable realization. One way to cope with that is to raise your ratio to 0.1. If you make a million dollars of revenue using libcurl, how much are you allocating to donate back?

If you contribute nothing and demand security fixes, then you’re not a leecher — you’re a parasite, because your demands exceed your contributions; your sign bit is still negative even if your ratio is 0.0 or NaN. It has been zero days since this workplace had a maintainer injury due to parasitic behavior.

Leechers are demoralizing when the revenue earned would let the author quit their day job to do more fun work instead. Parasites leave a trail of damaged and dead projects in their wake. libxml2’s maintainer made a policy change that cuts off the food supply for parasites; good. They’ll still burnout someday due to the untreated morale damage being done by the billionaire leechers, though.

If an author accepts contributions and you feel like a leecher, do something about it. If they do not accept contributions (including money) or if the anccepted contributions are incompatible (their code is in COBOL and you only know Rust, they only offer “donate bitcoin”, you’re a broke student funding school with your project) then maybe write them a thank you letter? and revisit this if your or their circumstances change someday.

As a former open source maintainer, I don’t mind it when people leech. That’s chill. Go for it. I don’t have a tip jar because I don’t expect a tip. But I mind when people DL a million dollars of revenue using my work and have a UL:DL ratio of 0.0 with me.

Corporations, formally do not care whether users are hobbyists, leechers, or parasites. Maintainers do. The OSI continues to reject as Open Source any licenses attempting to stop the morale impact of millionaire leechers and the time and effort drained by parasites.

Which is more important to the future of open source: the right to be a leecher or a parasite, or the maintainers that they feed upon?

KingMob•1h ago
The current attitudes and licenses of FOSS, while good in many ways, have also enabled a ton of exploitation and free-riding, and people need to acknowledge that.

Nobody should be giving Bezos free work.

ItCouldBeWorse•25m ago
Especially when Bezos uses that free work,to sabotage the free eco-system wherever he can. Building moats and garden walls, embracing, extending and extincting.

And you can tell by the way they move, they do not want to hurt each other- a cartel of toe-owners. Otherwise, what happened to gaming with the steam-deck, could have happened with linux to the desktop world years ago. Especially now, where the owner describing his intent, transfers to scripting glue code.

notarobot123•43m ago
At this point, why shouldn't the licences change?

Sharing the result of collaborative efforts liberally makes sense. Wanting to be able to modify software and redistribute modifications makes sense. Allowing software to evolve in a broader eco-system makes sense.

What isn't seeming to make sense is how OSS software is used commercially and the way that skews the culture and priorities of open source projects. What purpose does the lack of commercial restrictions serve?

No restrictions on commercial use at all seems naive (and perhaps plain ideological) at this point. I used to think that things were too embedded to change but it does feel like a major shift is fermenting and has been for a while.

Let There Be Bobcoin

https://bitfieldconsulting.com/posts/cryptocurrency
1•gus_leonel•38s ago•0 comments

Sizing Up Sizewell C

https://thecritic.co.uk/sizing-up-sizewell-c/
1•scrlk•1m ago•0 comments

Protestware in JavaScript UI Toolkits on NPM Target Russian Language Sites

https://socket.dev/blog/protestware-on-npm-targets-russian-language-sites
1•feross•2m ago•0 comments

Optimizing tea: An N=4 experiment

https://dynomight.net/tea/
1•OuterVale•2m ago•0 comments

Usability Barriers for Liquid Types

https://dl.acm.org/doi/abs/10.1145/3729327
1•matt_d•6m ago•0 comments

Nationalization of Cyber Threat Intelligence

https://fromcyberia.substack.com/p/nationalization-of-cyber-threat-intelligence
1•campuscodi•7m ago•0 comments

Six-month-old, solo-owned vibe coder Base44 sells to Wix for $80M cash

https://techcrunch.com/2025/06/18/6-month-old-solo-owned-vibe-coder-base44-sells-to-wix-for-80m-cash/
3•myth_drannon•9m ago•0 comments

Show HN: 10xarch – System design playground for building and getting AI feedback

https://www.10xarch.com/
3•ahmadhawwash•10m ago•0 comments

The Most Ethical AI

https://www.gizvault.com/archives/the-most-ethical-ai
2•ricecat•11m ago•0 comments

From LLM to AI Agent: What's the Real Journey Behind AI System Development?

https://www.codelink.io/blog/post/ai-system-development-llm-rag-ai-workflow-agent
2•codelink•11m ago•0 comments

Seriously, can these bozos do anything on their own?

https://letterstome.cc/2025/06/19/seriously-what-happened-to-the-metaverse/
1•wiljr•11m ago•0 comments

Show HN: Some Pay Millions for McKinsey, Others Use BrainTerms

https://brainterms.ai/
2•Jderenne•12m ago•0 comments

Eat or be eaten by AI, Amazon CEO warns staff

https://www.theregister.com/2025/06/18/amazon_ceo_warns_ai_job_cuts/
1•Brajeshwar•13m ago•0 comments

Salesforce adds AI to everything, jacks up prices by 6%

https://www.theregister.com/2025/06/17/salesforce_ai_prices/
1•Brajeshwar•13m ago•0 comments

Microsoft Broke DHCP for Windows Server Last Patch Tuesday

https://www.theregister.com/2025/06/18/windows_server_dhcp_broken/
1•Brajeshwar•13m ago•0 comments

I built T2IM – AI-powered photo generation

https://texttoimagemodel.com/
1•ghazwan•14m ago•0 comments

Exploring the Theory and Practice of Concurrency in the ECS Pattern [pdf]

https://curious.software/plr/static/2025-03_ecs-conc-theory-practice.pdf
1•matt_d•17m ago•0 comments

Show HN: GitHub as Blogging Engine

2•revskill•22m ago•1 comments

NTSB – Urgent safety bulletin potential problems with Boeing 737 MAX jet engines

https://www.ntsb.gov:443/investigations/Pages/DCA24LA330.aspx
1•belter•25m ago•0 comments

Stanford CS 153: Infra Scale – Cursor CTO and Co-Founder Sualeh Asif [video]

https://www.youtube.com/watch?v=4jDQi9P9UIw
2•handfuloflight•29m ago•0 comments

Show HN: LifeHabitsAPI – Get daily habits aligned with core life values

https://lifehabitsapi.com/
1•galdevops•31m ago•0 comments

Greet Wheel Game

https://www.wheelgames.net/
1•tiantiankaixin•33m ago•2 comments

Ask HN: Would you take a job where back end is only in PHP?

1•nobitanobi•41m ago•5 comments

Market Risk Becomes Infrastructure (Settlement/Cyber) Risk in Crypto

https://papers.ssrn.com/sol3/papers.cfm?abstract_id=5270949
1•gattodipiombo•43m ago•2 comments

Show HN: I built YT2Medium – turn YouTube transcripts into Medium articles

https://yt2medium.xyz/
1•Bytesaint•43m ago•1 comments

Liberux NEXX – Linux phone crowdfunding

https://www.indiegogo.com/projects/liberux-nexx--3
1•mapleoin•46m ago•0 comments

Show HN: Expose your local services to public users safely

https://github.com/buhuipao/anyproxy
1•buhuipao•48m ago•0 comments

Apache Fory Serialization Framework 0.11.0 Released

https://github.com/apache/fory/releases/tag/v0.11.0
1•chaokunyang•51m ago•0 comments

Polylogarithm Values at a Golden Ratio-Based Argument

https://zenodo.org/records/15696357
1•tristenharr•56m ago•0 comments

Tariffs, Productivity and Resource Misallocation

https://academic.oup.com/wber/advance-article/doi/10.1093/wber/lhaf010/8112537
2•tokai•58m ago•0 comments