Security Advisory: `services.mysql` is configured with insecure authentication by default when used with `mysql` or `percona-server`
Summary The NixOS module for MySQL services.mysql initializes the MySQL database in a way that allows local users (e.g. unprivileged web/CGI processes on the same host, but not remote users) to log in as the root user without a password when the service is used with mysql or percona-server. Am I affected? You’re impacted if: you are using services.mysql with the mysql or percona-server package you did not adjust MySQL authentication settings You can confirm that you are impacted by executing...
once again begging for a #nixpkgs committer to review 🥺

The cache directory was introduced in #378228, but did what it was supposed to do. The variable expansion inside Environment= never worked, so the cache was never used (only an empty directory was ...
This has been going on for a while, huh? Well, one day Raphael-XIV will get into nixpkgs. https://github.com/NixOS/nixpkgs/pull/498518
Well, I'm awake and we do have 3 more, which, by the math, is roughly a <10% increase in watchers on the SC votes.
Haha, whatever, I'll take it.
But there is a non-zero chance I'll point people here when someone mentions The Ills Of The Community again.
We've finally got a community governece system in place. It's not perfect (far from it), but we did it! It was a huge hubbub to get it all set up in the first place, but now it feels like nobody actually cares anymore.
Not many projects get here! Others try to do this and just trip on their shoelaces. So let's make this one work.
https://discourse.nixos.org/t/call-to-ban-ai-commits/78262
Main topic aside, I absolutely adore the Gruntilda rhyming bit. I can't help but read all of their messages out loud in an evil witch kinda voice… 
Also, while I'm here, a brief travel fatigue fueled rant about NixOS transparency.
You guys wanted transparency, right? Well, the votes and opinions for every major decision the Steering Committie makes are right here, in a public GitHub repo. For everyone to see. You can get every comment and PR emailed directly INTO YOUR INBOX FOR FREE EVERY DAY.
*Looks at watcher count*
34
I'm going to bed, and when I wake up, we had better have way way more than that.
Sorry for the random aggro. But like. We can immediately work towards better processes in our org by increasing the number of eyeballs on leadership. It's so easy! And, like, they want us to watch them!
Anyway 🛌
/rant