Jeff Triplett

@webology
2.2K Followers
827 Following
15.5K Posts

πŸ¦„ @djangoproject president, πŸŒ‹ @defnado cofounder, 🏝 @djangocon organizer, 🏎 @revsys consultant, 🐍 @Thepsf former vice-chair + treasurer, πŸ€, ✨, πŸ’ͺ, πŸƒβ€β™‚οΈ, πŸ€–, Oh Mai.

If you are into #django and #python content, please follow @djangonews

Daily Micro.bloghttps://micro.webology.dev
Bloghttps://jefftriplett.com
Codehttps://github.com/jefftriplett
Developer/Partnerhttps://www.revsys.com

RE: https://social.screamingatmyscreen.com/@fallenhitokiri/116313307808324135

✨ What a nice write-up by @fallenhitokiri on building your own coding agent but it's really approachable for writing any kind of agent.

RE: https://mastodon.social/@webology/116301486796785103

And we are going and talking about Code* Forge* and all the things.

πŸ“… Office Hours returns today with two times to pick from:

- πŸ€– AI / Demos 30 minutes early: https://time.is/0200PM_27_March_2026_in_CT?Jeff%27s_Office_Hours

- πŸ’¬ Normal Office Hours at the regular time (might be up to 15 minutes late): https://time.is/0230PM_27_March_2026_in_CT?Jeff%27s_Office_Hours

Jeff's Office Hours

Exact time now, time zone, time difference, sunrise/sunset time and key facts for New York, United States.

@webology I, too, run my own Forgejo instance, though I set it up manually rather than via docker.

I think the reality is that not all developers are sysadmins and vice versa, despite the "devops" claims.

I would personally favour, for projects/orgs that are large enough, separate people to handle infrastructure from the core dev team. Perhaps we need an OpenSysAdmin group that provide services to lots of smaller projects? I'm probably overthinking this, as usual.

I host my own private Forgejo instance and I mirror some projects, and while it's free to use, it's not free to run/self-host and run at any scale. I thought it was a pain to set up (hello SSH keys with their Docker quickstart).

Overall, I think action over inaction is good, but let's be realistic about what a good newbie experience is, but that's the group we are going to pass our projects over to once the time has come. I just hope that's not a bill that only grows.

RE: https://techhub.social/@ironicbadger/116301246624014978

I feel this, but I also fear 100s, 1000s, and 10ks of self-hosted servers with different rules and nuances just to figure out how to post an issue or fork a project, and I fear we are going to leave new contributors even further behind.

I struggle to say, let's all hop to https://codeberg.org or another platform, since that probably kicks the can down the road until it's too big and fights the same fight.

RE: https://fosstodon.org/@ehmatthes/116295458672207886

πŸ€” Does anyone else have thoughts and opinions for @ehmatthes

With recent Python supply chain attacks (Trivy/LiteLLM), it’s worth mentioning uv’s `exclude-newer = "x days"` config.

It forces uv to only installs packages published more than x days ago, reducing risks since problematic packages should be yanked by then.

https://docs.astral.sh/uv/reference/settings/#exclude-newer

Settings | uv

uv is an extremely fast Python package and project manager, written in Rust.

Why is it that I keep seeing "everyone should pin their GitHub Actions versions to a SHA because that's the secure way to do it" and not "GitHub should build tooling that creates and manages Actions lockfiles by default"? Am I just missing that version and only seeing the former one boosted?

#ClaudeCode right now

https://status.claude.com

Green sick crab is the new "it shows green" even when fully down.