Untitled attachment
https://cdn.masto.host/triangletootparty/media_attachments/files/114/540/174/622/916/397/original/a69540b557198569.png
Random research I published this weekend: If you fetch open-source software from a projects official VCS (git repo, for example), you reduce your exposure to supply-chain attacks by 68%
If you do the same for its dependencies, your exposure is reduced by 76%!
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.