Skip to main content

Stuff I already wrote that other people might be open to reading this week, because of the #xz incident: Four Non-Dev Ways To Support Your Upstreams (Pass this along to executives who are asking "how can we prevent this in our dependencies?") Potential cross-project #opensource tools and practices that you/we can implement to help lighten the load on each other
