Mark your calendars! ✏️ 📆
This year’s Upstream is Wednesday, June 5th!
The theme? Unusual ideas to solve the usual problems. 🤔
Read about the theme and register for the free, fully virtual event now 👉 https://t.co/J6V0ANGUyC
This year's @UpstreamOSS broke records! Thank you so much to everyone who participated and attended 🤗
Missed us on June 7th? Don't worry, we prepared a summary just for you: https://t.co/AHr1E2rrVg
Yesterday @tidelift had its biggest Upstream yet!
#Upstream2023 included:
- Trains 🚂
- Food analogies 👩🍳
- Community 🤗
- AI 🤖
- And of course, why #opensource is incredible ✨
https://t.co/NascW597e9
“Let’s stop winging it, and instead create a more intentional supply chain, with intentional, thriving open source maintainers” @dff paraphrasing @luis_in_brief
https://t.co/gI9pdbphIf
#upstream2023
“If we want healthier, more secure open source software, we can’t think of it as a zero-sum equation anymore. We need to think about how everyone can win, both the creators and users of open source.”
https://t.co/znannlavOX
#upstream2023
“There’s a reason why corporations employ people and pay them. Because that’s the best way to get work done. Getting paid should be considered normal, not out of the ordinary.”
@dff quoting maintainer @GaryGregory
https://t.co/TlQuKd3WQr
#upstream2023
“Lauren shared some highlights of the multi-year effort we’ve made at Tidelift to pay maintainers to validate they are following common software security practices. Paid maintainers achieved a better than 2x OSSF Scorecard score!” 🎉
https://t.co/IsQrtLsP4f
#upstream2023
A few minutes ago, @juliaferraioli stated this very eloquently:
Software is not just bits. It’s a complex, socio-technical system, and you can’t simply abstract the people out of it.
https://t.co/V8HLdTM1yC
#upstream2023
The dream at @tidelift has always been to make open source work better—for everyone.
So the goal of @UpstreamOSS is to get to know each other, both those who create open source, and those who use it.
https://t.co/DvjRQ3jTl5
#upstream2023
“When we created Upstream two years ago, we had a pretty straightforward idea: that people should get to know better the upstream ingredients that make up their software applications.” - @dff
https://t.co/rsgvfNhvym
#upstream2023
“When we're building technology, when we're commenting on issues or pull requests, or submitting our own, we need to consider all people as critical in, and to, the software supply chain.” - @juliaferraioli
https://t.co/Y7EeN6T43b
#upstream2023
“The system that produces software is a complex socio-technical system. We have people in the mix that you can't separate out of the overall system—they're inextricably linked.” - @juliaferraioli
https://t.co/kCF8ERARmE
#upstream2023
“We have components that interact in multiple ways following local rules with no unifying rule to define all the interactions, and the emergent system is greater than the sum of its parts.” - @juliaferraioli on the complexity of #OSS 🌐
https://t.co/NGx6UOfTiu
#upstream2023
“We used to have a handful of commonly used complex, open source projects. Now we've got tons of them. And what's more, they're relying on each other—the complexity space has gotten way more complex.” - @juliaferraioli
https://t.co/rirlzcd5E2
#upstream2023
“In talking to people about the software supply chain, they tend to use it as a shortcut to mean the piece of code, infrastructure, or system that I can blame when things go wrong.” - @juliaferraioli
https://t.co/yjOH9f8kgr
#upstream2023
“When Log4Shell came in, the whole team stopped what they were doing and we dealt with that. I [was] on vacation that week. So vacation ‘bye-bye’ but that's my choice, right?” - @GaryGregory
https://t.co/G78HKE8XDE
#upstream2023
“The process of chain of custody is second nature to election administrators.” - @benadida
✔️ Paper ballots when they're printed and delivered
✔️ Blank paper ballots
✔️ Filled-in paper ballots after they're cast
✔️ Equipment that's used
https://t.co/ifxja2U1Dh
#upstream2023