Edit: on the GPL front, GPL doesn’t require that you publish your code to everyone, just to the recipients of your binaries. And you only have to give it upon request. So they definitely could keep it somewhat under wraps if they wanted to.
When I said "hidden from the public", I was meaning refusing to disclose the source code even when asked. I do wonder how the laws would apply to government organizations violating copyright 🤔. Like what if it was the OS for some defense system? I'm not sure a government would be too keen on disclosing that — even if it was requested though some sort of freedom of information request (if the respective country has that) — and would rather classify it and refuse to disclose regardless of the license. I'm not aware of any precedent of this.
a really locked down/limited system might not be a step forward at all
Depends what you mean. Locked down as in hidden from the public (I don't think that's legal anyways because of the GPL) would be bad. But locked down/limited from employees so that they can't bork the system is good, imo.
Imo, this is your answer. I'm not sure exactly what other solution you want. Content will not appear on Lemmy without someone first posting it. Advertising the platform to help draw people in is also important.
I will preface by saying that I am not casting doubt on your claim, I'm simply curious: What is the rationale behind why it would be so unlikely for such an exploit to occur? What rationale causes you to be so confident?
Yep! I've found that the case is possibly a little too cramped for my liking — I'm not overly fond of the placement of the drive bay hangars — but overall it's been alright. It's definitely a nice form factor.
It wasn't a deliberate choice. It was simply hardware that I already had available at the time. I have had no performance issues of note as a result of the hardware's age, so I've seen no reason to upgrade it just yet.
Do y'all actually read articles or just the headline?
Both. I first read the headline (while taking it with an immense grain of salt due to, by my experience, the commonplace usage of clickbait/misleading headlines) to see if the article may interest me, then, if so, I read the article to either effectively fact-check the article's own headline, or to actually get more detail on what the headline summarized — though, it certainly feels like it is more often than not the former. Sometimes, however, the headline, on it's own, is enough, but that seems rare — logically, it is in a news company's best interest to get people to read the article (if it is assumed that they get income from people reading the article's content) so they would be incentivized to make the headline as provoking or nebulous as possible to maximize the probability that one will click on it.
Its just crazy cabinet nominees every time. Wars happening. Nothing I can control.
Personally, I believe that it's, at the very least, important to be peripherally aware of what's happening in the world, but one must be careful to recognize what they can and can't control — what is worth fretting over and what isn't. Inundating oneself with the knowledge of any number of horrible things that may have happened somewhere in the world in a given day is generally of no help to anyone and only serves to degrade one's own mental state.
Y’all actually read all this shit? How does anyone have the energy?
The most tiring thing, personally, is fact checking. It is tiring to feel like the majority of my interactions with news articles that are shared are that of dealing with misleading claims and misdirected or misinformed reactions. It certainly feels like the majority offloads the scrutiny of data onto the minority.
For clarity, I'm not claiming that it would, with any degree of certainty, lead to incurred damage, but the ability to upload unvetted content carries some degree of risk. For there to be no risk, fedi-safety/pictrs-safety would have to be guaranteed to be absolutely 100% free of any possible exploit, as well as the underlying OS (and maybe even the underlying hardware), which seems like an impossible claim to make, but perhaps I'm missing something important.
Yeah, that was poor wording on my part — what I mean to say is that there would be unvetted data flowing into my local network and being processed on a local machine. It may be overparanoia, but that feels like a privacy risk.
create from it each day or so yo run on the images since it was last destroyed.
Unfortunately, for this usecase, the GPU needs to be accessible in real time; there is a 10 second window when an image is posted for it to be processed [1].
fedi-safety must run on a system with GPU. The reason for this is that lemmy provides just a 10-seconds grace period for each upload before it times out the upload regardless of the results. [1]
Fair point. So I suppose that would be the employees using the distribution rather than the entire populace.