@bagder@mastodon.social

Indeed.

So what would you attest about #curl?

It's a honest question: I can't think of an attestation useful to further increase public trust in curl.
An attestation that would not be voided by the no-warranty license condition.

I mean, it would be nice to held #opensource to higher standards, but afaik all proprietary software provide no warranty downstream.
I can't think of any attestation provided by #Meta, #Microsoft or #Google for example.
Sure, they might attest whatever, but who would fine them for lying anyway?

@smallsees@social.dropbear.xyz
TECH OVERSIGHT REPORT: UNSEALED COURT DOCUMENTS SHOW TEEN ADDICTION WAS BIG TECH’S “TOP PRIORITY” - Tech Oversight Project

New documents show the tactics Meta, Google, Snap, and TikTok execs used to disrupt learning, prey on minors, and co-opt the PTA to control the narrative with parents WASHINGTON, DC – Today, The Tech Oversight Project published a new report spotlighting newly unsealed documents in the 2026 social media addiction trials. The documents provide smoking-gun evidence […]

Tech Oversight Project
@bagder@mastodon.social

How much money would you ask to strip line 12 to 18 from #curl's license?

@smallsees@social.dropbear.xyz
curl/LICENSES/curl.txt at master · curl/curl

A command line tool and library for transferring data with URL syntax, supporting DICT, FILE, FTP, FTPS, GOPHER, GOPHERS, HTTP, HTTPS, IMAP, IMAPS, LDAP, LDAPS, MQTT, MQTTS, POP3, POP3S, RTMP, RTMP...

GitHub

Soon, @bagder will be on vacation and @vsz, @jimfuller and myself can do what we want in the #curl project!

Wait…we already do what we want more or less…hmm…tricky…🙈

*looking at my secret feature list*

Now, which of these?🧐

@zcutlip hah, as a #curling fan that uses #curl I’ve probably seen the overlap more than most.😆

Current weather for Marienburg SR / SA utilizing forza magnífico of wttr.in curl {ba{c{k{z{sh}}}}} and the sublime lolcat

Photograph in background composed with DSLR Nikon using FL Circular Polarizer 81A warming and of course Universal Love

#weather #curl #wttr #bash #csh #ksh #zsh #lolcat #technology #OpenSource #SR #SA #Marienburg #Commewijne #Universal #Love #UniversalLove

AWS SIGv4 is probably the most in-flux #curl code over the last years:

1. whatever AWS itself does is the correct behaviour
2. some parts of the behaviour are documented
3. when it does not work, rule 1 applies

This was the „industry norm“ situation before the IETF invented itself out of pure being-fed-uppery with the situation.

ok, for once I did replace #curl with the #aws cli tools in a PoC.

The curl command got several lines long, while it's a single aws call.

Sorry curl ...

#Unbound silently died on one of my #OpenBSD DNS resolver. And I only noticed it when I tried to DoH browse a website using #Librewolf.

Not what I expected to do today, but I now have #collectd monitoring the unbound process and sending a notification when there is no process alive. While I was there, I rewrote the old notification shell script into a 16 lines #Awk Intelligent one that pushes info to #Pushover using #curl; in reality, the script is 6 commands long but "Code is poetry".

(yes, this message contains non-paid products placement)

Youtuber "Low Level" speaks about #curl dropping the bug-bounty:

https://youtu.be/PG5sv20Jiic?si=Mg6Q0O_z69w69juk

AI ruined bug bounties

YouTube
We see no obvious AI made pull requests in the #curl project. Given how active sloperators are at security reporting, this seems strange.

Possible explanations?