mray, to random
@mray@social.tchncs.de avatar

:troll: Helping to develop probably costs you money! If you want to be a long time contributor you'll likely smash the trial period:

but seriously… ?

Go !

jwildeboer, to github
@jwildeboer@social.wildeboer.net avatar

still doesn't support issue templates in , the way and can. Only , which is a lot less attractive. But and can do label changes in the Kanban (project) view, which can't.

osjobhub, to opensource
@osjobhub@fosstodon.org avatar

Are you looking for a new role in open source? Browse 500+ jobs on from companies including @acquia @mozilla @wikimediafoundation and more! https://opensourcejobhub.com/jobs/

openproject, to opensource
@openproject@fosstodon.org avatar

📡 Open Collaboration: OpenProject + GitLab Integrate

A new article on the OpenProject has been published: https://opensource.net/open-collaboration-openproject-gitlab-integrate/

We are very happy and proud of our amazing Community. Only together we can achieve great things! 💙

sergi, to github
@sergi@floss.social avatar

TIL my employer blocks for "security reasons" but doesn't block or

🤦‍♂️

nekohayo, to random
@nekohayo@mastodon.social avatar

With 17.0 (stated to be released on May 16th), the operating system theme preference is now respected, as there is now an opt-in setting to enable "Auto (Experiment)" support in your user preferences panel.
It can finally switch between light & when your OS or desktop environment requests it at various times of the day! I tried it; it works.

You can find it under "User Settings > Preferences > Appearance" when running that GitLab version (it is already the case on gitlab.com)

philonous, to opensource
@philonous@framapiaf.org avatar

I don't understand why so many excellent #opensource projects such as @Minetest, #SuperTuxCart, @openttd or #OpenRCT2 still rely on gilded jails like #Github and #Discord instead of the free alternatives, #Gitlab, #Codeberg, #Matrix or else !

#GAFAM #devs #Microsoft

Linux, to fediverse
@Linux@sakurajima.social avatar

The Sharkey leadership is a little incompetent. 🙄

Join Sharkey dot Org has been OFFLINE for over 2 months. The reason given was hosting issues, and this was before the whole Hetzner drama. Join Sharkey dot Org is supposed to be the gateway for people to learn about Sharkey and how they can join.

The Documentation Page (Wiki) is still up, using the subdomain, Doc dot Join Sharkey dot Org, but the URLs are broken. I have repeatedly reported the broken URLs for over 2 months (both in the Git and on their Discord Server). No one seems to want to address that.

They have a private copy of GitLab located at ActivityPub dot Software, that you cannot find via a search looking for Sharkey (DuckDuckGo, Bing, Google). That is where you can report code changes and fixes, but you would likely not know that unless you stumbled upon the URL somewhere (or someone gave you that URL).

Sharkey raised a lot of money so they can host their own content, safely, and securely. They now own their own physical server and lease the space to have that server housed (hosted) remotely. And while the lead developer promotes that server partially as a minecraft server, Join Sharkey dot Org still remains, OFFLINE.

I have pulled funding from Sharkey and will not be supporting it further until they get their act together. It is a good software, and it is my preferred method to use the Fediverse, but you would assume they would want their website working.

-- edit-- for grammar and clarify

bortzmeyer, to random French
@bortzmeyer@mastodon.gougere.fr avatar

@Framasoft "Your account [Framagit] has been deactivated" "Les comptes sont désactivés après un an sans activité" C'est du grand n'importe quoi, j'utilise régulièrement .

nekohayo, to accessibility
@nekohayo@mastodon.social avatar

As GitLab 17.0 is coming next week, it looks like my very polite reminder nudge might have encouraged the #GitLab maintainers to request reviews from specific people for the automatic ("system") light/dark theme mode implementation, hopefully this lands in time for 17.0 🤞 so that we don't have to wait another full year to enjoy this #accessibility and #UX improvement, even if somehow considered experimental: https://gitlab.com/gitlab-org/gitlab/-/merge_requests/150254#note_1895251010

geekymalcolm, to random
@geekymalcolm@ioc.exchange avatar

Federal frenzy to patch gaping account takeover hole

https://www.theregister.com/2024/05/02/critical_gitlab_vulnerability/

PrivacyDigest, to security
@PrivacyDigest@mas.to avatar

Maximum-severity flaw allowing account under active exploitation

https://arstechnica.com/?p=2021409

governa, to random
@governa@fosstodon.org avatar

Critical #GitLab Bug Under Exploit Enables Account Takeover, #CISA Warns ⚠️ :gitlab:

https://www.darkreading.com/application-security/critical-gitlab-bug-exploit-account-takeover-cisa

kubikpixel, to email German
@kubikpixel@chaos.social avatar

Die machen Werbung über sich, dass ihre KI toll einsetzbar sei und dann das, eine übliche Schwäche von Profi-Dienste. Nicht im Detail, sondern was es betrifft.

»Account-Übernahme möglich – Kritische Gitlab-Schwachstelle wird aktiv ausgenutzt:
Die Schwachstelle ermöglicht es Angreifern, beliebige Nutzerpasswörter über eine eigene E-Mail-Adresse zurückzusetzen. Tausende von Gitlab-Instanzen sind gefährdet.«

👉 https://www.golem.de/news/account-uebernahme-moeglich-kritische-gitlab-schwachstelle-wird-aktiv-ausgenutzt-2405-184798.html

Linux, to opensource
@Linux@sakurajima.social avatar

⚠️ GitLab Security Flaw (exploit) ⚠️

No matter if you host your own copy of GitLab Software or use GitLab's servers directly, you should enable 2-step Verification - NOW (right now, do not wait). There is a current exploit that allows someone to hijack GitLab Accounts, who are not using 2-step verification.

craftyguy, to cochlearimplants
@craftyguy@freeradical.zone avatar

debugging tests that fail only in is the worst... absolutely has it right by allowing you to SSH into a runner that failed a job.

morenonatural, to github Spanish
@morenonatural@todon.nl avatar

[2208.04259] First Come First Served: The Impact of File Position on
https://arxiv.org/abs/2208.04259

basster, to hamburg German
@basster@norden.social avatar

Heute mal auf der in . Mal schauen, was es Neues gibt.

doctormo, to journalism
@doctormo@floss.social avatar

Hey #journalists if you're going to use an open source project as an example of a hack, can you at least let them know in advance you're about to do something reckless so they can prepare?

K. Thanks! 🙄

This doofus used inkscape and wireshark's live gitlab for a bit of a demo hack: https://www.bleepingcomputer.com/news/security/gitlab-affected-by-github-style-cdn-flaw-allowing-malware-hosting/

#journalism #ethics #oss #foss #floss #gitlab #cdn #infosec

polychromata, to github

@fujowebdev It's nice to see representation of something other than , but given that is maintained by a forprofit, i expect it's only a matter of time before the same shit starts happening (and there /has/ already been one incident). It'd be cool to see like a cameo (or at least an offhand mention) of something like .

InternetIsScary, to fediverse French
@InternetIsScary@mstdn.social avatar

The fediverse is amazing!

I can’t get over how cool it is to view my posts from any server. I’m definitely going to use activitypub for my social media I’m planning on making. I was going to use @Discourse , but considering it’s like where you are only able to self host and each instance of discourse can’t interconnect makes me kinda sad. But activitypub seems like the only way I feel happy in both ways.

@lemmy

welcomewerkstatt, to github German
@welcomewerkstatt@norden.social avatar

Kennt ihr ? Auch wenn ihr kein(e) Programmierer:in seid, dann seid ihr bestimmt schonmal auf , o.Ä. gestoßen. Auch als Designer:in, Maker:in, Texter:in oder einfach nur zum Projektmanagement spielen Git und die dazugehörigen Plattformen heute eine große Rolle. Wir erklären Git/GitHub/GitLab für Nicht-Programmierer in einem dreistündigen Workshop am Sonntag, den 19. Mai. https://www.welcome-werkstatt.de/veranstaltungen/git-fuer-nicht-programmierer

toxi, to github
@toxi@mastodon.thi.ng avatar

"Instead of generating the URL after a comment is posted, GitHub automatically generates the download link after you add the file to an unsaved comment, [...]. This allows threat actors to attach their malware to any repository without them knowing."

I always wondered if these attachments would stay around and if so for how long. Seems to be permanent, though (at least until this is going to be fixed)...

https://www.bleepingcomputer.com/news/security/gitlab-affected-by-github-style-cdn-flaw-allowing-malware-hosting/

abcdw, to github
@abcdw@fosstodon.org avatar

The nice thing about sourcehut: API is exposed to me to the full extent and I can easily integrate things how I want.

https://man.sr.ht/lists.sr.ht/api.md
https://man.sr.ht/todo.sr.ht/api.md

arda, to github
@arda@micro.arda.pw avatar

GitLab C̶o̶p̶i̶l̶o̶t̶ 😆 Duo chat is now generally available:

https://about.gitlab.com/gitlab-duo/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • rosin
  • InstantRegret
  • ethstaker
  • DreamBathrooms
  • mdbf
  • magazineikmin
  • thenastyranch
  • Youngstown
  • GTA5RPClips
  • slotface
  • Durango
  • khanakhh
  • kavyap
  • megavids
  • everett
  • vwfavf
  • tacticalgear
  • osvaldo12
  • cisconetworking
  • cubers
  • modclub
  • ngwrru68w68
  • Leos
  • anitta
  • normalnudes
  • tester
  • JUstTest
  • All magazines