Post #2340677
2026-05-06 12:57 UTC
Replies (4)
-
@arclight@oldbytes.space 2026-05-06 13:34
So what am I actually arguing here? This is not 1995 and the expectations surrounding publicly distributed code are very different now. Some of those expectations are reasonable. If an author knows their code is dangerously broken, it should be fixed or be pulled from distribution. You need to be better than Matt from Matt's Script Archive. You should not be publishing to npm or PyPi or CRAN or CPAN or any of the public repositories unless you accept the minimal responsibility for fixing or retiring your code. _RETIRING CODE IS ALWAYS AN OPTION, EVEN IN A PUBLIC REPOSITORY_ But let's take npm as a bad example. What happens when an author decides to retire their code and stops distributing it and pulling it from a public archive breaks other people's applications that rely on code from that public archive? Do we accept the breakage that results from our naïve expectations of the public archive or does the archive continue to distribute the retired code against the author's wishes without forking the code and taking responsibility for it? I was on call the night of Friday, December 31, 1999. The right answer is that organizationally, you take responsibility for your code _AND ALL ITS DEPENDENCIES_ and you factor in that the public repository is not guaranteed to be there when you need it and that any code you pulled in from the internet is your responsibility. You own those dependencies once you start relying on them. Unless you have an explicit agreement with the original author, they owe you _NOTHING_. That is apparently not the modern expectation. The modern expectation is that authors who make their code public owe free maintenance, development, and security fixes to corporations for free forever and if you ever try to extract yourself from this implicit serfdom by retiring your code, some asshole organization will keep distributing your retired code under your name and keep you yoked to that millstone. Am I arguing to have it both ways? No. It's reasonable to distribute code of average quality and maintain it on one's own schedule. It's also reasonable to retire code for any reason but specifically because you no longer have the time or interest to maintain it at an average or (personally) acceptable level of quality. Mark it as archived and unsupported so it's clear to everyone what the project's status is. In an extreme case, stop distributing the code - that's what should have happened with Matt's Script Archive.
-
@idlestate@toot.cat 2026-05-06 13:02
@arclight@oldbytes.space there's a transposition in the middle two letters from the animal name to the curl dev: "bagder" @meena@cathode.church
-
@graydon@canada.masto.host 2026-05-06 13:06
@arclight@oldbytes.space Coding, having been stolen from women ("calculator", as a thing you got paid to do) had a couple generations of being a semi-elite specialty; the gold rush meant you could make a lot of money at it. After the gold rush, it's like being a plumber. The result has to work, you can make decent money, and most people both wouldn't want to and ought not, because it does take a certain specific view of the trade to be effective. The social change isn't free from stress. @meena@cathode.church @badger@mastodon.social
-
@davidfetter@kolektiva.social 2026-05-06 13:15
@arclight@oldbytes.space @meena@cathode.church @badger@mastodon.social Matt indirectly made me money back when I had a shingle out that read something along the lines of Perl Monger, and he did it the way someone showing up at the potluck with botulism-infected food would have made money for a caterer.