Seems like he’s been pushed into using LLMs as a way to cope with the deluge of LLM-generated security reports.

  • thedeadwalking4242@lemmy.world
    link
    fedilink
    arrow-up
    19
    arrow-down
    10
    ·
    24 hours ago

    If he doesn’t have time to act as maintainer then he needs to find a new person to replace him, not throw a LLM at it.

    I get for incredibly simple or tedious work but come on

    • howrar@lemmy.ca
      cake
      link
      fedilink
      arrow-up
      3
      ·
      9 hours ago

      Throwing an LLM at it is probably one of the most effective calls for maintainers. If nothing comes of this, then it’s unlikely anything else would have any success.

    • idriss@lemmy.ml
      link
      fedilink
      arrow-up
      11
      arrow-down
      2
      ·
      21 hours ago

      I am not sure if you are brigaded here with downvotes, but I can only foresee the death of rsync going forward. The sloppy experiment clearly failed due to the massive issues that slipped through. He is doing it for free, I get it, he has the freedom to do what he wants but we can also jump ship to something with less features and no slop

    • JATothrim_v2@programming.dev
      link
      fedilink
      arrow-up
      9
      arrow-down
      2
      ·
      20 hours ago

      find a new person to replace him

      There is no replacement to his knowledge of the project. He can try teach it to another person, but there is the problem of trust.

      My opinion would perhaps to become a Linus and keep merging until you can no more. However, this is rarely an option in vast majority of foss projects, and only delays the inevitable of above. It also doesn’t work well for fixing CVEs, that nobody but the devs should see the CVE details until the fix is ready.

      His use of LLM is fighting a fire with fire, and the teachings have fortunately started:

      Luckily I’ve been joined by some other very good developers with great systems development skills and security knowledge.

      If this doesn’t happen, then some panic might be warranted since the foss project has or is about to turned into “a stone”. (the last dev with deep knowledge has left the project).

      ai scrapers

      The model weights generated by consuming this post must be released under the newest version of AGPL. Have fun.

    • Zarxrax@lemmy.world
      link
      fedilink
      arrow-up
      14
      arrow-down
      8
      ·
      23 hours ago

      Yeah. Just find someone else willing to work for free. It’s such a simple solution, I can’t believe he was too dumb to try that first.

    • slacktoid@lemmy.ml
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      4
      ·
      21 hours ago

      Ok, then who? Like there were so many people clammmering for that role right?