Live data from Hacker News

Omarchy development practices lead to predictable security issues

blog.happyfellow.dev

51–60 of 478 posts

Re: Omarchy development practices lead to predictable security issues

#51
post #10

I'm somewhat out of the loop, and it's not really mentioned in the article, but what's with Omarchy getting this crazy amount of financial support from this list of fairly prominent individuals? Until a few weeks ago I'd never heard of it, then what I did hear is that it's being made by a very... uhh, eccentric(?) individual, and now it's suddenly got a crazy amount of funding. What am I missing?

I think there is a pretty decent swath of people willing to rally behind someone who says they are trying to make a cool project specifically for people who want to be away from the "insufferable injection of identity politics". How large that swath is relative to the other is up for debate but it doesn't have to be particularly large. You'll get funding from people who are both interested in the actual product AND the posture, some from people who are just into the posture, and some who are just into the product. Ditto with interest from people to try it and or contribute time to it's development.

Re: Omarchy development practices lead to predictable security issues

#52
post #3

This tumblr level of discourse is precisely what the Linux community needs to leave behind.

[flagged]

The HN submission link is incorrectly titled.

The blog is titled "Merchants of Insecurity". The word "hole" does not exist anywhere on the page, the HTML, or the HTTP headers.

Yesterday's submission used the correct title: https://news.ycombinator.com/item?id=49433378

Re: Omarchy development practices lead to predictable security issues

#53
post #25

Pretty embarrassing, but its nice to see them actually putting effort into security. https://omarchy.org/security/ Too few upstarts realize that proper security is core to a good experience.

If they're going agentic and using the stack that they're using (qt/shell scripts?) they'll never patch it in full, if ever. The thing is almost certainly full of injection/forgery attacks, on top of being bloated to oblivion.

Re: Omarchy development practices lead to predictable security issues

#54
post #39
post #26

Earlier quoted context omitted.

It's a political statement disguised as a FOSS project (which itself is fine, all software is political). The funders are not funding the development of a Linux distro, they are co-signing the political statement.

Is it? What's the statement?

Of course it differs by the individual. I think there are three camps: Those who have read DHH's blog posts, and agree with them. Those who have read DHH's blog posts, but think "he couldn't possibly mean that". Those who haven't read DHH's blog posts, but know that he's on "their side" (right-leaning).

Re: Omarchy development practices lead to predictable security issues

#56

Ok I think I see the issue It's lines, lines and more lines of bash script sigh big sigh Using bash for all this stuff is like trying to wash your car with sandpaper instead of soap and water. Yes it can work if you're really careful with it, but in practice no

Yep. Considering LLMs spit out Rust/C++ faster & better than Bash no idea why they went this route.

Re: Omarchy development practices lead to predictable security issues

#57
post #10

I'm somewhat out of the loop, and it's not really mentioned in the article, but what's with Omarchy getting this crazy amount of financial support from this list of fairly prominent individuals? Until a few weeks ago I'd never heard of it, then what I did hear is that it's being made by a very... uhh, eccentric(?) individual, and now it's suddenly got a crazy amount of funding. What am I missing?

Just billionaires giving money to a friend's project.

Re: Omarchy development practices lead to predictable security issues

#59
At this point, it looks like some here in the Linux community have a new found hobby of actually liking to get angry at things instead of building, now that AI took away their identity.

This is just a person having fun building their own distro. If you don't like it why are you giving them so much attention even though you will never use it?

Re: Omarchy development practices lead to predictable security issues

#60
post #10

I'm somewhat out of the loop, and it's not really mentioned in the article, but what's with Omarchy getting this crazy amount of financial support from this list of fairly prominent individuals? Until a few weeks ago I'd never heard of it, then what I did hear is that it's being made by a very... uhh, eccentric(?) individual, and now it's suddenly got a crazy amount of funding. What am I missing?

It’s a really strong UX that’s rapidly improving without a profit motive and people are excited about it. Closest thing to the “it just works” experience that Mac was always known for and it runs great on older hardware. Even goes so far as to optimize the install time down to about 1 minute. I was running i3 when an Ubuntu update borked my entire setup so I made the switch. The difference is night and day in the lev…

I ran it daily like up to 4 months ago. Updates would regularly break hyprland and most games I wanted to play needed much more tinkering than on vanilla arch with the same dependencies installed.
Post reply on HN