A little demo of my Github browser project, when you browse repos on #github it provides visibility of the vulnerable versions of dependencies that the repo is configured to use.
Perhaps the #developer , #security community would find useful ?
Would appreciate feedback
Is there really a legitimate use case remaining for using closed weight models ?
Running a fleet of agents using the latest open weight models is a fraction of the price 24/7
My runtime uses open weight models and I am seriously considering moving dev in the same direction
giving the @apertusllm Apertus-v1.5-8B a swing on my diehard burner macbook (Ubuntu). Actually quite impressed with this tiny model, works well with RAG, will be testing the multi language capabilties shortly
@apertusllm Apertus-v1.5-8B will happily write you an essay from sources outside of your RAG, hallucinate like a pro, and pop in a little info here and there from your RAG.
Supply chain attacks are exploding.
The scary part? The risk may already be inside your source code.
Every package, module, or third-party library could be a hidden doorway for attackers.
Do you know which dependencies in your app have known vulnerabilities?
Want a review ?
Updated @antigravity and now stuck in "Editing....." hell I have to stop and waste tokens sending it a screenshot with a prompt "I think you have a bug in your own code as you keep getting stuck on editing" for it to progress only to have this issue return moments later.
@antigravity not only have you broken the usability by reducing quotas to an impractical level but in addition I can't even use the quotas due to your server load issues. Are you consuming my quota irrespective of service availability ? You are going to lose a paying customer
Putting GPT-5.3-Codex (Extra High) through the grinder - Solid instruction following. Evaluating 21 "Agentic Loop" repos, across 17 eval domains, reporting on each & updating a consolidated report. Slow but quality and consistency is epic so far. #codex
@DrewAustin@openclaw@steipete one of the primary shortfalls in contributing is the agreement from the repo owner to contributors. This should be legally binding like LICENSE.
"So Long, and Thanks for All the Fish" aka #OpenSource
"Contributing to humanity one person at a time" - feeling warm and fuzzy.