

Do not use Flatpack, it causes more problems than it solves, especially if you don’t know what you are doing


Do not use Flatpack, it causes more problems than it solves, especially if you don’t know what you are doing
Debian is unable to manage modern dependency trees because they chose not to. It is fucking embrarassing what happens with any “normal and modern” thing in cargo, npm or other cursed repository pulling in 2000 dependencies you have absolutely no hope in being able to vet for malware or stupid bugs. This comes on top of a culture of API instability between one minor version and another.
Debian has their packages and those are tested and inspected in depth, regressions are tested. There are people running debian for a job and we don’t want that kind of nonsense.


Ok thought you where a crusader, I am sure you also are against systemd and probably a rust keyboard warrior too eh?


The people running the agent need to be looking at the code and cleaning it, not someone else, that is the key thing that is missing in all these failures. Linux is the same, they would never accept something that has not at least the same quality as something written by a competent human


I am a software dev with more than 10 years of experience I have code in production and need to support legacy systems. I am trying to explain how I found a way to use this stuff in helping me in doing my job and getting food on my family’s table, but sure buddy I don’t know what I am talking about.


Well, my point is that the review should be before the pr, not after.


Disagree on your first point. AI will generate code that is mostly correct, the human time cost of (properly) reviewig this code and correcting it is generally less than also writing it. People that do more serious work than vibe-coding oneshot skateboard simulators in html do actually get noticeable productivity boosts even when every generated line of code is reviewed by multiple people.
That is why the kernel allows it, because they mostly care that a human is around that will take responsability for it, that the patches are of the same quality than always and that everything is manageable by humans. This is in contrast to the techbro github repo with commits that span 20 files and 2k edits where there is no hope in hell to understand what is going on.
Look op, you kind of want to drive around without wanting to put in the work to either lern how a car works or what the road rules are.
Security is not something you install and the you got it.
I highly suggest to learn what the common risks are and how they work, then how to counter them.
This whole security and privacy thing requires both effort and knowledge, that is why corpos fuck over people so much, because they ain’t willing to put in the work to care.
P.s sorry I reread my answer and I come off a bit harsh, what I mean is that by prompting a community like this with your kind of questions like if we were an AI will not work towards getting you good answers. You need to learn first and one of the first lessons is that there is no security and a casual “I will be opening sketchy files”. A better question is: how can I open sketchy files and still be safe?
All I’m saying is that if you want to keep a moral high ground and accuse someone of being a fascist you should at least not put words in their mouth, what they say should be enough. Otherwise it gets to be a witch hunt.
I am not saying he is right, but I do want to point out that is not what he said. He said he no longer wants to live in london because it is full of people “like you”.
Which is kind of a different thing


Never said we should not try, nor that it was pointless.
I just said it was impossible to avoid, but I agree we should not make it effortless


Where on that page do they claim that?
I am a dev (unrelated to this) and I do think it is impossible, on what grounds do you think it isn’t?


Honestly I usually don’t use either sleep or any suspensions. I prefer to turn the device off, since turning it on will take less than 20 seconds anyway.
It was also a lot less supported some time ago so that is the reason I avoided it originally.
I feel like these weird sleep things are some windows heritage to avoid reboot updates and edge browser queries or whatever other crap flies over there.
That seems like a good idea if you are a corporation.
It also is fixable, you can add other keys to unlock luks.
Personally TPMs can go fuck themselves on all my devices. If someone has physical access to it you have to consider it pwned no matter how many “security chips” microsoft told the industry are absolutely necessary to run their malware of an os.


I mean, nobody is saying there is no way to prevent this, and I would hardly say that “twice” can be cathegorized as regularly.
Also I find this of extremely bad taste as you seem to compare this to school shootings, with literal children deaths. I would say that a few thinkerers getting pwned from their claude tokens is a couple orders of magnitude less serious.


Seconded. I have worked on linux for 15 years doing software dev and some IT. Nobody knows that stuff in detail unless they have to because of some arkane deployment reason. Any half good local llm will be miles ahead of most books. Tell it what you need, it will spit out some code, understand the code and ask it or search online how it works exactly. Rinse and repeat.


You seem to have a very idealized idea of how selfless this whole thing is. Google has sponsored a lot of work in the kernel, so have multiple corporations over the years. This is not some puppies and raibows shit here.
It just happens to work really well because the license and multiple interest of a good kernel do just that: a good kernel.
Surveillance issues and too strong corporations are an issue with your government, not the kernel


The point is that in the correct hands it does not.


Nah, they just would have either used something else, or fucked us with some other way. The kernel license just allowed them to do it like this.
Imo any attacker that has access to the hardware cannot be countered by software. There always is a badusb or sodder this here chip type attack possible against any attempt at locking up your pc.
You can encrypt and backup, but any legends about tpm, bios passwords, weird hardware encryption features and keys are moot once an attacker can read what transits on the pcie or memory bus