Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. This is bad.

This is bad.

Scheduled Pinned Locked Moved Uncategorized
84 Posts 20 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • xgranade@wandering.shopX xgranade@wandering.shop

    This is bad. This is very, very bad.

    I'm not trying to pick on Python here, I pick it because Python is something I'm actively using, and so I have a vested interest in the project *not* being AI-vulnerable.

    But it's not good, chat. It's very far from good, in fact.

    Link Preview Image
    theorangetheme@en.osm.townT This user is from outside of this forum
    theorangetheme@en.osm.townT This user is from outside of this forum
    theorangetheme@en.osm.town
    wrote last edited by
    #2

    @xgranade These are very much not fergalicious vibes. 😕 Now I'm curious what they used Claude for. *runs some diffs*

    reillypascal@hachyderm.ioR snoopj@hachyderm.ioS iampytest1@infosec.exchangeI 3 Replies Last reply
    0
    • xgranade@wandering.shopX xgranade@wandering.shop

      This is bad. This is very, very bad.

      I'm not trying to pick on Python here, I pick it because Python is something I'm actively using, and so I have a vested interest in the project *not* being AI-vulnerable.

      But it's not good, chat. It's very far from good, in fact.

      Link Preview Image
      xgranade@wandering.shopX This user is from outside of this forum
      xgranade@wandering.shopX This user is from outside of this forum
      xgranade@wandering.shop
      wrote last edited by
      #3

      I'm gonna be real with folks here. I fucked up, and bad, with my participation in the open-slopware list. As a result, I'm not the right person to do it, but there has to be some kind of accounting for what damage AI is doing to open source.

      For all the whinging about "supply chains" over the past few years, it *is* a problem when your code suddenly depends on AI, even if only indirectly.

      cap_ybarra@beige.partyC xgranade@wandering.shopX jo@infosec.exchangeJ 3 Replies Last reply
      0
      • xgranade@wandering.shopX xgranade@wandering.shop

        This is bad. This is very, very bad.

        I'm not trying to pick on Python here, I pick it because Python is something I'm actively using, and so I have a vested interest in the project *not* being AI-vulnerable.

        But it's not good, chat. It's very far from good, in fact.

        Link Preview Image
        cap_ybarra@beige.partyC This user is from outside of this forum
        cap_ybarra@beige.partyC This user is from outside of this forum
        cap_ybarra@beige.party
        wrote last edited by
        #4

        @xgranade @sparks
        as a casual pythonista i've been wanting to invest more time in using it because I have appreciated other community values (not taking fashy grant money being one)

        this is the thing that gives me pause instead: that they have abandoned engineering as a serious endeavor

        ozzelot@mstdn.socialO 1 Reply Last reply
        0
        • xgranade@wandering.shopX xgranade@wandering.shop

          I'm gonna be real with folks here. I fucked up, and bad, with my participation in the open-slopware list. As a result, I'm not the right person to do it, but there has to be some kind of accounting for what damage AI is doing to open source.

          For all the whinging about "supply chains" over the past few years, it *is* a problem when your code suddenly depends on AI, even if only indirectly.

          cap_ybarra@beige.partyC This user is from outside of this forum
          cap_ybarra@beige.partyC This user is from outside of this forum
          cap_ybarra@beige.party
          wrote last edited by
          #5

          @xgranade i made a little app, https://slopspotter.8bit.rodeo, for this purpose but I don't think anyone uses it but me

          1 Reply Last reply
          0
          • xgranade@wandering.shopX xgranade@wandering.shop

            I'm gonna be real with folks here. I fucked up, and bad, with my participation in the open-slopware list. As a result, I'm not the right person to do it, but there has to be some kind of accounting for what damage AI is doing to open source.

            For all the whinging about "supply chains" over the past few years, it *is* a problem when your code suddenly depends on AI, even if only indirectly.

            xgranade@wandering.shopX This user is from outside of this forum
            xgranade@wandering.shopX This user is from outside of this forum
            xgranade@wandering.shop
            wrote last edited by
            #6

            Part of the problem with doing so is.... well, now what? It's not like a Python project can just... stop being a Python project?

            But I think it's important to at least understand the scope of the problem.

            ireneista@adhd.irenes.spaceI 1 Reply Last reply
            0
            • theorangetheme@en.osm.townT theorangetheme@en.osm.town

              @xgranade These are very much not fergalicious vibes. 😕 Now I'm curious what they used Claude for. *runs some diffs*

              reillypascal@hachyderm.ioR This user is from outside of this forum
              reillypascal@hachyderm.ioR This user is from outside of this forum
              reillypascal@hachyderm.io
              wrote last edited by
              #7

              @theorangetheme @xgranade *each time I see a diff that _doesn't_ have AI contributions*

              “Fergalicious diff”

              theorangetheme@en.osm.townT 1 Reply Last reply
              0
              • reillypascal@hachyderm.ioR reillypascal@hachyderm.io

                @theorangetheme @xgranade *each time I see a diff that _doesn't_ have AI contributions*

                “Fergalicious diff”

                theorangetheme@en.osm.townT This user is from outside of this forum
                theorangetheme@en.osm.townT This user is from outside of this forum
                theorangetheme@en.osm.town
                wrote last edited by
                #8

                @reillypascal @xgranade Thank you for the laugh today hehe.

                1 Reply Last reply
                0
                • theorangetheme@en.osm.townT theorangetheme@en.osm.town

                  @xgranade These are very much not fergalicious vibes. 😕 Now I'm curious what they used Claude for. *runs some diffs*

                  snoopj@hachyderm.ioS This user is from outside of this forum
                  snoopj@hachyderm.ioS This user is from outside of this forum
                  snoopj@hachyderm.io
                  wrote last edited by
                  #9

                  @theorangetheme @xgranade here are the commits on `main` where it's explicitly a co-author:

                  ```
                  $ git log --oneline -i --grep "Co-authored-by: Claude.*anthropic\.com"
                  59f247e43bc gh-115952: Fix a potential virtual memory allocation denial of service in pickle (GH-119204)
                  5b1862bdd80 gh-87512: Fix `subprocess` using `timeout=` on Windows blocking with a large `input=` (GH-142058)
                  cc6bc4c97f7 GH-134453: Fix subprocess memoryview input handling on POSIX (GH-134949)
                  532c37695d0 gh-137134: Update SQLite to 3.50.4 for binary releases (GH-137135)
                  ```

                  xgranade@wandering.shopX 1 Reply Last reply
                  0
                  • theorangetheme@en.osm.townT theorangetheme@en.osm.town

                    @xgranade These are very much not fergalicious vibes. 😕 Now I'm curious what they used Claude for. *runs some diffs*

                    iampytest1@infosec.exchangeI This user is from outside of this forum
                    iampytest1@infosec.exchangeI This user is from outside of this forum
                    iampytest1@infosec.exchange
                    wrote last edited by
                    #10

                    @theorangetheme These commits: https://github.com/search?q=repo%3Apython%2Fcpython+%22Co-authored-by%3A+Claude%22&type=commits

                    1 Reply Last reply
                    0
                    • xgranade@wandering.shopX xgranade@wandering.shop

                      Part of the problem with doing so is.... well, now what? It's not like a Python project can just... stop being a Python project?

                      But I think it's important to at least understand the scope of the problem.

                      ireneista@adhd.irenes.spaceI This user is from outside of this forum
                      ireneista@adhd.irenes.spaceI This user is from outside of this forum
                      ireneista@adhd.irenes.space
                      wrote last edited by
                      #11

                      @xgranade it's extremely worrying, yeah. it's probably too big to fork 😕

                      xgranade@wandering.shopX 1 Reply Last reply
                      0
                      • snoopj@hachyderm.ioS snoopj@hachyderm.io

                        @theorangetheme @xgranade here are the commits on `main` where it's explicitly a co-author:

                        ```
                        $ git log --oneline -i --grep "Co-authored-by: Claude.*anthropic\.com"
                        59f247e43bc gh-115952: Fix a potential virtual memory allocation denial of service in pickle (GH-119204)
                        5b1862bdd80 gh-87512: Fix `subprocess` using `timeout=` on Windows blocking with a large `input=` (GH-142058)
                        cc6bc4c97f7 GH-134453: Fix subprocess memoryview input handling on POSIX (GH-134949)
                        532c37695d0 gh-137134: Update SQLite to 3.50.4 for binary releases (GH-137135)
                        ```

                        xgranade@wandering.shopX This user is from outside of this forum
                        xgranade@wandering.shopX This user is from outside of this forum
                        xgranade@wandering.shop
                        wrote last edited by
                        #12

                        @SnoopJ @theorangetheme There's a few more that list it in the PR thread but that don't list it as a co-author. Still, I agree, it's a fairly limited problem so far. My worry is that I don't see any mechanism for keeping that scope limited going forward.

                        snoopj@hachyderm.ioS theorangetheme@en.osm.townT 2 Replies Last reply
                        0
                        • xgranade@wandering.shopX xgranade@wandering.shop

                          @SnoopJ @theorangetheme There's a few more that list it in the PR thread but that don't list it as a co-author. Still, I agree, it's a fairly limited problem so far. My worry is that I don't see any mechanism for keeping that scope limited going forward.

                          snoopj@hachyderm.ioS This user is from outside of this forum
                          snoopj@hachyderm.ioS This user is from outside of this forum
                          snoopj@hachyderm.io
                          wrote last edited by
                          #13

                          @xgranade @theorangetheme yea I didn't mean to minimize the impact, just wanted to share the cantrip I've been using to check this when I run into the same thing

                          xgranade@wandering.shopX 1 Reply Last reply
                          0
                          • ireneista@adhd.irenes.spaceI ireneista@adhd.irenes.space

                            @xgranade it's extremely worrying, yeah. it's probably too big to fork 😕

                            xgranade@wandering.shopX This user is from outside of this forum
                            xgranade@wandering.shopX This user is from outside of this forum
                            xgranade@wandering.shop
                            wrote last edited by
                            #14

                            @ireneista Especially because you need to also fork the whole governance model around it.

                            ireneista@adhd.irenes.spaceI glyph@mastodon.socialG 2 Replies Last reply
                            0
                            • xgranade@wandering.shopX xgranade@wandering.shop

                              @SnoopJ @theorangetheme There's a few more that list it in the PR thread but that don't list it as a co-author. Still, I agree, it's a fairly limited problem so far. My worry is that I don't see any mechanism for keeping that scope limited going forward.

                              theorangetheme@en.osm.townT This user is from outside of this forum
                              theorangetheme@en.osm.townT This user is from outside of this forum
                              theorangetheme@en.osm.town
                              wrote last edited by
                              #15

                              @xgranade @SnoopJ I think it'll be pretty hard for a while, unfortunately, and it'll depend on what you have the energy for. For now, for some things, interacting with slop might be unavoidable. 😕 Trying to minimize it as much as you can is still good, though.

                              snoopj@hachyderm.ioS 1 Reply Last reply
                              0
                              • snoopj@hachyderm.ioS snoopj@hachyderm.io

                                @xgranade @theorangetheme yea I didn't mean to minimize the impact, just wanted to share the cantrip I've been using to check this when I run into the same thing

                                xgranade@wandering.shopX This user is from outside of this forum
                                xgranade@wandering.shopX This user is from outside of this forum
                                xgranade@wandering.shop
                                wrote last edited by
                                #16

                                @SnoopJ @theorangetheme No, absolutely. I see this as the leading indicator rather than the damage itself, if that makes sense?

                                I keep using the term "AI-vulnerable" to try and point to that there isn't necessarily an actual direct impact, so much as a dramatically increased vulnerability surface area.

                                dave@alvarado.socialD 1 Reply Last reply
                                0
                                • xgranade@wandering.shopX xgranade@wandering.shop

                                  @ireneista Especially because you need to also fork the whole governance model around it.

                                  ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                  ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                  ireneista@adhd.irenes.space
                                  wrote last edited by
                                  #17

                                  @xgranade yeah. we think it's highly likely there are too many specific people with specific knowledge for that to work...

                                  this isn't a particularly helpful observation, but we should probably never have put so many eggs in one basket to begin with

                                  ireneista@adhd.irenes.spaceI 1 Reply Last reply
                                  0
                                  • ireneista@adhd.irenes.spaceI ireneista@adhd.irenes.space

                                    @xgranade yeah. we think it's highly likely there are too many specific people with specific knowledge for that to work...

                                    this isn't a particularly helpful observation, but we should probably never have put so many eggs in one basket to begin with

                                    ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                    ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                    ireneista@adhd.irenes.space
                                    wrote last edited by
                                    #18

                                    @xgranade though, of course, it's hard to see what else we could have done

                                    xgranade@wandering.shopX 1 Reply Last reply
                                    0
                                    • xgranade@wandering.shopX xgranade@wandering.shop

                                      @ireneista Especially because you need to also fork the whole governance model around it.

                                      glyph@mastodon.socialG This user is from outside of this forum
                                      glyph@mastodon.socialG This user is from outside of this forum
                                      glyph@mastodon.social
                                      wrote last edited by
                                      #19

                                      @xgranade @ireneista "do you have five million dollars of disposable income to fund an alternative to the PSF" is a good place to start, if you want to frame it as a "hostile fork" situation. the only solution is to get involved in the messy process of politics and governance and try to figure out a way to negotiate a durable peace

                                      glyph@mastodon.socialG ireneista@adhd.irenes.spaceI xgranade@wandering.shopX 3 Replies Last reply
                                      0
                                      • glyph@mastodon.socialG glyph@mastodon.social

                                        @xgranade @ireneista "do you have five million dollars of disposable income to fund an alternative to the PSF" is a good place to start, if you want to frame it as a "hostile fork" situation. the only solution is to get involved in the messy process of politics and governance and try to figure out a way to negotiate a durable peace

                                        glyph@mastodon.socialG This user is from outside of this forum
                                        glyph@mastodon.socialG This user is from outside of this forum
                                        glyph@mastodon.social
                                        wrote last edited by
                                        #20

                                        @xgranade @ireneista unless you do have $5MM++ in which case, uh, cool, very happy for you

                                        1 Reply Last reply
                                        0
                                        • glyph@mastodon.socialG glyph@mastodon.social

                                          @xgranade @ireneista "do you have five million dollars of disposable income to fund an alternative to the PSF" is a good place to start, if you want to frame it as a "hostile fork" situation. the only solution is to get involved in the messy process of politics and governance and try to figure out a way to negotiate a durable peace

                                          ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                          ireneista@adhd.irenes.spaceI This user is from outside of this forum
                                          ireneista@adhd.irenes.space
                                          wrote last edited by
                                          #21

                                          @glyph @xgranade yes, well, if we did have five million dollars to spare we'd be spending it on building community and fighting Nazis (these are the same picture), not on technology. so 😕

                                          1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups