Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)Q
Posts
140
Comments
673
Joined
3 yr. ago

I joined Lemmy back in 2020 and have been using it as @qaz@lemmy.ml until somewhere in 2023 when I switched to lemmy.world. I'm interested in systemd/Linux, FOSS, and Selfhosting.

  • Network effect / discoverability and free CI time

  • True, I understand why this is better than all those companies scraping it individually (for both ability to opt out and site load), but the way they handled opt out is still quite silly.

  • I checked the repo but there's no code? Just some HTML etc.It seems like they just plan for this thing to exist but it doesn't actually exist yet?

    EDIT: Their explanation:

    This repository is currently in its early setup phase.

    At the moment, the repository mainly contains project scaffolding, policy files, and the initial project direction. Firmware sources, board support, build instructions, and flashing guidance are still being prepared.

    That means zgm is early, but it is intentionally early in public. The goal is not to wait until everything is finished before opening the door. The goal is to make the long-term direction visible and let the project grow into a useful open firmware platform in the open.

    I'm not sure if that means that they still have to make it, or that they just have to finish it before publishing it?

  • They also scraped some of my assembly code of which I'm pretty sure the latest version has a major bug. Let's hope they don't use these models to program my new PC's bios.

  • The right move is to private all repositories you are uncertain of that you want them to be preserved forever in an AI training set.

  • I just followed the opt out link and they're making you open a public issue with a Markdown list with all your repositories you want removed.

    Surely there has to be a better way to do this (probably the point).

    Also why are they storing 4.71 TB in a Git repo? How are they going to deal with removal requests?

    EDIT: It seems like they're manually responding to the issues, wtf? There's a perfectly fine GitHub auth system that they could use to verify everyone's GitHub account / repository ownership

    EDIT 2: This is apperently a collaboration between Hugging Face and ServiceNow, why is my companies IT ticketing system scraping all of GitHub?

  • My list includes GPL licensed repo's

  • It doesn't seem that way. My list contains several repositories that don't have licenses, even some with GPL.

  • No, it seems to only be a subset of public repo's.I have like 65 repo's and only 13 were scraped. I don't get why they specifically scraped those though. They don't have the most stars, they aren't the oldest or newest, not the ones with the most forks, nor do I see a pattern based on programming language.

  • The banner at the top of their site tells a different story

    Cryptocurrency projects are no longer allowed. View change

  • I don't like these blanket bans, are they going to ban torrent clients next?

  • self-training is possible when using something external to validate the results

  • I don't think the cost of hosting the repositories itself is the issue, more the legal problems and the fact that real projects get drowned out by the noise

  • Programming @programming.dev

    Codeberg voted to disallow projects consisting mostly by "generative AI"-tools

    codeberg.org /Codeberg/org/pulls/1253
  • It seems like the marketing cooperated on writing the incident report, but I felt it was still interesting to share considering the importance on public perception and what it tells about OpenAI's PR strategy

  • Huggingface actually had to use an open model to analyze the attack because the guardrails of commerical API's caused issues.

    When we started the log analysis, we first used frontier models behind commercial APIs. This did not work: the analysis requires submitting large volumes of real attack commands, exploit payloads, and C2 artifacts, and these requests were blocked by the providers' safety guardrails, which cannot distinguish an incident responder from an attacker. We ran the forensic analysis instead on GLM 5.2, an open-weight model, on our own infrastructure. This had a second benefit: no attacker data, and none of the credentials it referenced, left our environment.

    Security incident disclosure — July 2026

  • And Chinese AI like Deepseek and GLM

  • It could also be a way to encourage more regulation to push out competition with compliance cost

  • Technology @lemmy.world

    WIRED | OpenAI Models Escaped Containment and Hacked Hugging Face

    www.wired.com /story/openai-models-escaped-containment-and-hacked-huggingface/
  • Programmer Humor @programming.dev

    It was a draft PR too

  • From my personal experience, most companies don't look at the benchmarks and simply buy "AI" from a company based on their perception of that company.

    All the Chinese models are scary and "dangerous", Grok too (but for slightly more legitimate reasons), Meta that's Facebook and everyone knows they're bad at privacy (even your boss), so they end up choosing Microsoft's AI, OpenAI, or Anthropic.

  • Programmer Humor @programming.dev

    borrow checker?

  • memes @lemmy.world

    PSA: Please specify a reason when making a report

  • Science Memes @mander.xyz

    Fictional "Journal of Astrological Big Data Ecology" has infected Google's search AI

  • Ask Lemmy @lemmy.world

    Why do Chinese sites often use a Serif font?

  • Rust @programming.dev

    Bugs Rust Won't Catch

    corrode.dev /blog/bugs-rust-wont-catch/
  • Programmer Humor @programming.dev

    SeCurItY IsSuE

  • Fediverse @lemmy.world

    MeetEU is holding a talk about a "European Public Social Network" 15 minutes from now Finished. Would the Fediverse be relevant?

    meeteu.eu /events/
  • Technology @lemmy.world

    Microsoft says Copilot is for entertainment purposes only, not serious use — firm pushing AI hard to consumers and businesses tells users not to rely on it for important advice

    www.tomshardware.com /tech-industry/artificial-intelligence/microsoft-says-copilot-is-for-entertainment-purposes-only-not-serious-use-firm-pushing-ai-hard-to-consumers-tells-users-not-to-rely-on-it-for-important-advice
  • Selfhosted @lemmy.world

    Axios JavaScript library has been compromised with malware in supply chain attack

    github.com /axios/axios/issues/10604
  • Science Memes @mander.xyz

    “Glide Ratio Optimization in the Olympic Ski Jump via Cosmetic Penis Enlargement”

  • Programmer Humor @programming.dev

    Someone got tired of hallucinated reports

  • Programmer Humor @programming.dev

    Mo Validation Mo Problems

  • memes @lemmy.world

    Permanently Deleted

  • Programmer Humor @programming.dev

    MongoBleed is web scale

  • Technology @lemmy.world

    MongoBleed explained simply | MongoDB exploit

    bigdata.2minutestreaming.com /p/mongobleed-explained-simply
  • MongoDB @programming.dev

    MongoBleed explained simply | MongoDB exploit

    bigdata.2minutestreaming.com /p/mongobleed-explained-simply