Posts by stilic@social.oss.zone
 (DIR) Post #B5BJHi0efTlQgmScAS by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @thing @fiore @emmy I had found a way to fix that a long time ago with an uki generator script thing but I don't have it anymore sadly (I stopped using Chimera)
       
 (DIR) Post #B5BJHiLZPiUhjeFJlg by stilic@social.oss.zone
       1 likes, 1 repeats
       
       @thing @fiore @emmy not anymore :Dhttps://codeberg.org/Gardenhouse/stemhttps://codeberg.org/Gardenhouse/graft-kernel
       
 (DIR) Post #B5KMK7phg1Bfdvoywa by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @star @thing Can we stop finding excuses to reduce this as if it was insignificant?If we were able to work on our software without any LLM from the beginning, there's no reason to allow even a single commit to pass throughThis is how most projects are becoming more welcoming of LLMs, let's not get fooled
       
 (DIR) Post #B60r5Xbip5lISJ7kzA by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @navi @june what do you think about the approach described in the last paragraph of this? https://madaidans-insecurities.github.io/guides/linux-hardening.html#systemd-service-sandboxingi don't necessarily think it's needed to reimplement that on your own but that's how i see things on my own so i dunno tbh
       
 (DIR) Post #B60r5Y0XKpbxhGjZfE by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @june @navi Well this is coming from a security researcher who knows a lot about Linux security issues so I think they know what they're doing unless someone proves me wrong or smthBubblewrap is pretty much able to do around 90% of the stuff systemd already does in terms of sandboxing without having to get its features reimplemented in the init system itselfThere are use cases for sandboxing a whole bootstrap process (https://github.com/fosslinux/live-bootstrap) or just building a few packages in an isolated environment (as done by a few package build systems), so I'm pretty sure that is sufficient on its own along with seccompBubblewrap has a large amount of CLI options if you have specific requirements in mind, it's very polyvalentEven ChromeOS has a tool for similar purposes (https://google.github.io/minijail/)
       
 (DIR) Post #B60r5YMW17BynR17vE by stilic@social.oss.zone
       1 likes, 0 repeats
       
       @june y'know whatI'm not going to argue with someone who is openly supporting incestThat's it, you lost all your credibility
       
 (DIR) Post #B60r5YlKWr2e2OcwbI by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @june I'm sorry but if it's mentioned in https://lgbtqia.wiki/wiki/Harmful_Terminology#Paraphilic_Terminology you don't really have a sayIt's just Bad, period.
       
 (DIR) Post #B60r5Z7JD8cf8YuUrI by stilic@social.oss.zone
       0 likes, 0 repeats
       
       @june What the fuck are you on? WHAT YOU'RE PROMOTING IS LITERALLY ILLEGAL.I'm not even queerphobic, you passing literal incest at it was fine and making shit up about me and this wiki I used is just... weird and fucked upFor fuck sakes, get out of fedi if you can't understand where YOU are going