π΄ Man United 2-0 Man City π΅ (Premier Leage LIVE)
β° 65' Bryan Mbeumo β½οΈ
β° 76' Patrick Dorgu β½οΈ
β
#ManUnited #ManCity #PremierLeage #scorecard #zflixfootball ...
The @openssf #scorecard project is misleading and harmful; it reduces projects to fairly arbitrary numerical scores based purely on whether they're using tools the scorecard authors are familiar with. For example, it doesn't recognize ruff for python projects.
E.g. https://deps.dev/ displays this information.
π The latest issue of my #newsletter is out, issue 010.
Stories from reviving #Expressjs & reimagining #Lodash, secure publishing on #npm, why #OSS doesnβt fail because of code, backlog updates & #OpenSSF #Scorecard β¨
Just shipped a new newsletter to my GitHub Sponsors! π
This one includes my latest talk, secure publishing research, #Expressjs updates, #OSSF #Scorecard improvements, and a bunch of ecosystem news.
It will be public soon, but you can read it early and support my OSS work here:
https://github.com/sponsors/UlisesGascon
π Great news!
#Netlify deployments for @openssf #scorecard are running smoothly and PR preview environments are fully live π
Itβs the perfect time to get involved. We have plenty of good-first-issues and help-wanted items ready for you: https://github.com/ossf/scorecard-webapp/issues?q=sort%3Aupdated-desc+state%3Aopen+label%3A%22help+wanted%22
Your contributions are welcome. Come build with us β€οΈβπ₯
π Recent #Lodash updates focus on stronger #CI & #security posture!
β CI support expanded (Node 4 β 25)
π New browser tests via #Playwright
π Docs now have dedicated CI
π Added #OpenJS #CNA escalation policy
π Reporting #OSSF #Scorecard
π§― New Incident Response Plan (#IRP)
π§ Threat Model inspired by #Express & #Webpack
More details: https://blog.ulisesgascon.com/the-future-of-lodash