Live data from Hacker News

Omarchy development practices lead to predictable security issues

blog.happyfellow.dev

241–250 of 480 posts

Re: Omarchy development practices lead to predictable security issues

#241
post #200

Look - I'm am the opposite of DHH fan -- that said -- they could fix all these bugs/security issues that same way they created them. It makes sense to some extent to create a product that emphasized what is different about it from a feature/UX perspective so people can consider if it would even be useful to them at all. If they can prove that they have created something useful - then they can fix all these issues. Fi…

> Creating a useful product that people want -- this is the hard part.

When you do that you'll just a bunch of people clowning on the project due to the politics of the founder.

Re: Omarchy development practices lead to predictable security issues

#242
post #114

Earlier quoted context omitted.

He literally calls openly for the ethnic cleansing of undesirable populations from Europe. Just read his blog. There's no subtlety or nuance.

I think there's such a strong difference between remigration and ethnic cleansing. And if you are misinformed, maybe take a minute to actually read his blog posts. But if you are and willingly misrepresenting his viewpoints, then maybe take a step back and think about what that says about you. Not an endorsement of his viewpoints, but if we're going to debate people, we should do it on the actual words they say rathe…

> I think there's such a strong difference between remigration and ethnic cleansing.

First sentence of https://en.wikipedia.org/wiki/Remigration :

    Remigration is a far-right concept referring to the ethnic cleansing via
    mass deportation of non-white minority populations, especially immigrants
    and sometimes including native-born citizens, to their place of racial ancestry.

Re: Omarchy development practices lead to predictable security issues

#243
Reminds me of the bit about security in Steve Yegge's Google Platforms rant:

> But I'll argue that Accessibility is actually more important than Security because dialing Accessibility to zero means you have no product at all, whereas dialing Security to zero can still get you a reasonably successful product such as the Playstation Network.

Re: Omarchy development practices lead to predictable security issues

#244

Earlier quoted context omitted.

[flagged]

Thank you, this is exactly my experience with reporting on Omarchy. There is a small vocal group that is very determined to pull politics into it somehow, but to most (a more silent, big majority) this is not even known. I.e., when Omarchy is reported on in my country (on local blogs) nobody ever replies with anything political, it's just about the tech. But in some circles this is very different, somehow.

> There is a small vocal group that is very determined to pull politics into it somehow

I'd suggest you go look at DHH's own account, own tweets and then delete this embarrassing comment.

Re: Omarchy development practices lead to predictable security issues

#245
post #81

Isn't most of the security holes still there if used arch and installed the packages yourself. A lot of people complained ssh had security issues in omarchy because it used the default settings. That would still be the same on arch?

Arch doesn't market itself as a newbie-friendly opinionated secure-by-default distro.

An Arch package having less-than-ideal default settings is pretty normal: the user is expected to read the manpages and the Arch wiki when making any alterations to their system. They guide you towards making it secure, but if you want to leave it insecure because of reasons then Arch isn't going to stop you from shooting your own foot.

Re: Omarchy development practices lead to predictable security issues

#246

Just read DHH's blog and then you may quickly realise that other distributions may be a better choice. There is a difference between "opinionated" and ... whatever the content criteria is for DHH nowadays to write stuff on his blog. Younger DHH was more impressive than the TechBro aged later variant, in my personal opinion. Arch is in general a good base though - I mostly use Manjaro as base, then customize it via a…

Gobolinux was really a missed opportunity!

Re: Omarchy development practices lead to predictable security issues

#247
post #83

Earlier quoted context omitted.

Would have rails taken off if he was equally open about his politics back then?

Yes, people were more mentally resilient and mature then and it was pre Reddit, which has completely broken and warped many people’s minds.

As Gen X, I think they were already softies back then.

Re: Omarchy development practices lead to predictable security issues

#248
post #26

Earlier quoted context omitted.

It's a political statement disguised as a FOSS project (which itself is fine, all software is political). The funders are not funding the development of a Linux distro, they are co-signing the political statement.

> The funders are not funding the development of a Linux distro, they are co-signing the political statement. It's not even a Linux distro. It's an Arch respin with tweaks that DHH likes. This is for people who want to work like DHH.

Right; it's not political in the sense of "vote for candidate/party/policy XYZ", it's political in the sense that Omarchy is distinguished by being a vehicle for DHH's opinions, and by promoting Omarchy one can promote the general idea that DHH is a respectable guy with good opinions while still remaining firmly situated in "technical" subject matter.

Re: Omarchy development practices lead to predictable security issues

#249
post #183
post #47

Earlier quoted context omitted.

Financed by controversial figures too

I'm so disappointed that The Standup was platforming him.

Finally got me to unsubscribe. I'm surprised that the whole crew of them were cool with reposting the snippet of DHH calling linux maintainers "clowns and goblins" amongst other things.

https://x.com/thestanduppod/status/2091511392717213707?s=20

Post reply on HN