Live data from Hacker News

Omarchy development practices lead to predictable security issues

blog.happyfellow.dev

191–200 of 480 posts

Re: Omarchy development practices lead to predictable security issues

#191

Earlier quoted context omitted.

"Freedom to compute" cannot be separated from "Freedom to exist" as it explicitly depends on it. The authors of Omarchy pay lip service to the former while taking a stance against the latter.

[flagged]

See links further down: https://news.ycombinator.com/item?id=49448069

Re: Omarchy development practices lead to predictable security issues

#192
post #180

Earlier quoted context omitted.

It was (my) main takeaway and I wanted it to be evident in the headline. I didn’t want to bury the lede; I’ll uneditorialize it because it seems it’s causing some fighting in the comments and I don’t really want to instigate anything, more just warn people using the distro. I don’t think it’ll reach the people who need to be warned if it’s not evident that there’s an issue from the start.

Appreciate it! Editorialised is fine but the post is mostly about the development practices leading to bugs & the lack of awareness of how dangerous that is, not about the current absolute number of security holes if that makes sense.

Agreed! It’s a good post.

Re: Omarchy development practices lead to predictable security issues

#193

I don't know, Omarchy's team really don't care if you're complaining. Wouldn't the security team and the agents just go and fix the security holes? They have a dedicated security team now that is being paid for this: https://omarchy.org/security/ But having a dedicated security team is marketing? I'm sure with the $10M cash chest the security will just improve over time and this blog post will be irrelevant. I don't…

Yea, I don’t get the shade. As many have said, it’s just Arch + a very polished UX preconfigured so you can jump right in without a lot of setup overhead. Why it’s security would be on a different level than any other Linux distro isn’t clear.

Because the "polish" is done in an insecure way?

Re: Omarchy development practices lead to predictable security issues

#194
post #87

Earlier quoted context omitted.

I think there is a pretty decent swath of people willing to rally behind someone who says they are trying to make a cool project specifically for people who want to be away from the "insufferable injection of identity politics". How large that swath is relative to the other is up for debate but it doesn't have to be particularly large. You'll get funding from people who are both interested in the actual product AND t…

dhh is very strongly associated with identity politics, though? (as in, "western"/white identity)

This. The alt right in German speaking countries are calling themselves "Identitäre", which was inspired by French Les Identitaires. For all their criticism of what once was just a niche and fringe academic leftist movement, they are hypocritically are mirroring at least mirroring it if not more so. I believe they have actually helped progressive identity politics become mainstream as a reaction to their attacks on minorities, as a reaction to their hatred the mainstream has signaled their solidarity with minority identities, this is the main reason for Rainbow flags, to show solidarity against hatred.

Re: Omarchy development practices lead to predictable security issues

#195
post #26

Earlier quoted context omitted.

It's a political statement disguised as a FOSS project (which itself is fine, all software is political). The funders are not funding the development of a Linux distro, they are co-signing the political statement.

[flagged]

"political histrionics" is an interesting way to refer to calling for ethnic cleansing

Re: Omarchy development practices lead to predictable security issues

#196
post #26

Earlier quoted context omitted.

It's a political statement disguised as a FOSS project (which itself is fine, all software is political). The funders are not funding the development of a Linux distro, they are co-signing the political statement.

[flagged]

Thank you, this is exactly my experience with reporting on Omarchy. There is a small vocal group that is very determined to pull politics into it somehow, but to most (a more silent, big majority) this is not even known.

I.e., when Omarchy is reported on in my country (on local blogs) nobody ever replies with anything political, it's just about the tech. But in some circles this is very different, somehow.

Re: Omarchy development practices lead to predictable security issues

#197
Obviously every single loaded take on this distro has already been taken, on this thread alone. So there is little anybody can add to it... all I would say is that no publicity is bad publicity and if that's the intention, then well done.

I am happy that the Linux ecosystem is getting attention, traction and funding. People that dont like and want to choose to go die on another hill, so be it, their prerogative.

Re: Omarchy development practices lead to predictable security issues

#198

Earlier quoted context omitted.

Probably so people can understand what the post is about and can skip the rage-bait?

How is my title a rage bait? The current submission title is terrible, "Omarchy development practices lead to predictable security issues" would be much closer.

So be it!

Re: Omarchy development practices lead to predictable security issues

#199
post #79

Earlier quoted context omitted.

Care to elaborate on "fascist agitator" or are you just going to smear a person with a truly serious epithet without anything to back it up?

https://jakelazaroff.com/words/dhh-is-way-worse-than-i-thoug...

Even before I read this blog post only the way he behaved on The Standup made me suspicious, raised some red flags.

Re: Omarchy development practices lead to predictable security issues

#200
Look - I'm am the opposite of DHH fan -- that said -- they could fix all these bugs/security issues that same way they created them. It makes sense to some extent to create a product that emphasized what is different about it from a feature/UX perspective so people can consider if it would even be useful to them at all. If they can prove that they have created something useful - then they can fix all these issues. Fixing these issues is not hard. Creating a useful product that people want -- this is the hard part.
Post reply on HN