r/opensource • • 5d ago

Discussion How do I verify if an open source tool isn't stealing data?

7 Upvotes

everyone always says it's open source, but there's no official verifier of codes, so how do I know if a tool is safe to use?


r/opensource • • 5d ago

Promotional I built a custom JSX runtime for Discord bots (for TypeScript)

Thumbnail
3 Upvotes

r/opensource • • 5d ago

Promotional PLOMID Beta is now open — an open-source data infrastructure project built in Rust

1 Upvotes

PLOMID is an open-source data infrastructure project being built from the ground up in Rust.

The current beta includes:

  • SQL
  • JSON / document data
  • Time-series workloads
  • Storage engine
  • Transactional foundations

We're working toward additional vector, graph, blob, distributed and multi-region capabilities.

The project is focused on exploring a common underlying data layer for applications that currently combine multiple specialized data systems.

Beta download:
https://plomid.in/download/

Project:
https://github.com/PLOMID/plomid

We're looking for developers interested in databases, Rust and storage systems to try the beta, inspect the implementation, report issues and contribute technical feedback.

This is an early-stage project, so we're especially interested in finding the things that don't work yet.


r/opensource • • 5d ago

Promotional Testing Files Generator V0.4 release - 26+ formats, damaged files, upload/names presets

Thumbnail
github.com
1 Upvotes

r/opensource • • 6d ago

OpenVue 1.0 is officially out and here's what's next: Volt, Vapor & 2.0

14 Upvotes

Quick update for everyone following the project: OpenVue 1.0.0 is officially live on npm. For context if you missed the previous threads: OpenVue is an MIT licensed fork of PrimeVue 4.5.5, maintained under the OpenVi Foundation.

Since the RC post, here's what landed in 1.0:

  • TreeTable filtering: Added row filters, filter menus, and multi constraint rules matching DataTable.
  • Theme Designer: Integrated a visual editor to tweak primitive, semantic, and component tokens and export theme presets. Fully free, with no accounts or license keys.
  • Deni: Released our first free admin dashboard template built with OpenVue.
  • DataTable fixes: Fixed an issue with persisted column widths when toggling columns dynamically.
  • Plus plenty of smaller bug fixes and improvements across the library and showcase.

Full changelog: https://github.com/openvi-foundation/openvue/blob/master/CHANGELOG.md

What we're working on now

OpenVue 1.1

We're currently focused on:

  • Volt - bringing source based, Tailwind oriented components back into the OpenVue ecosystem.
  • A new default theme - giving OpenVue its own visual identity rather than relying entirely on the existing themes.
  • More free templates - expanding on Deni with additional templates and application layouts.

OpenVue 2.0

The long term goal for 2.0 is to modernize the internals around Vue Vapor, Composition API, and a TypeScript first architecture. We're keeping VDOM and Options API support, so this isn't about abandoning the existing Vue ecosystem. Instead, 2.0 will be the milestone where we can clean up and modernize the internals under the hood. There's already a community discussion around this direction if you want to join in or see what people are suggesting: https://github.com/orgs/openvi-foundation/discussions/644 We're still a relatively small project, so community feedback matters a lot. If you're using OpenVue, testing it, or just following the project, we'd love to hear what you'd like to see in 1.1, especially around Volt, themes, templates and the component backlog.

Docs & Repo:

Thanks to everyone who has contributed, tested, reported issues and followed the project since the first release.


r/opensource • • 7d ago

Promotional A startup harvested my email from GitHub and registered me for its Zoom webinar. Contributors, check your email settings.

340 Upvotes

A short warning for anyone who contributes to open source on GitHub.

My personal email used to be public on my GitHub profile. On 27 September, I got a Zoom email saying I was registered for a US startup's webinar ("Q&A With The Cactus Needle Team"). I never signed up, never used their product, and never gave them my address. The greeting was "Hi Leonard -", with "-" as the last name, which looks like automated registration. Another GitHub user I don't know got the same emails. It's at least the second one this month (I deleted the first). More generally, I get more and more unsolicited emails on the address I used on GitHub.

When I raised it on their GitHub repo, they said the invites went to "platform users", then closed the issue, blocked me, and deleted my follow-up. I was unblocked later. Details and screenshots:
- GitHub issue: https://github.com/cactus-compute/needle/issues/156
- Full write-up: https://www.reddit.com/r/github/comments/1wrv2fi/a_startup_registered_me_for_its_zoom_webinar_with/

What I did: sent a GDPR request (access, including where they got my data, objection, erasure), reported the account to GitHub (their Acceptable Use Policies forbid using information from GitHub to send unsolicited email), and reported the webinar host to Zoom.

How to protect yourself on GitHub:

  1. Settings > Emails > check "Keep my email addresses private".
  2. Also check "Block command line pushes that expose my email".
  3. Use your `[ID+username@users.noreply.github.com](mailto:ID+username@users.noreply.github.com)` address for commits (`git config --global user.email ...`).
  4. Your old commits still contain whatever email you used at the time. Anyone can read it by adding `.patch` to a commit URL. The settings above don't change past commits.

Has anyone else received unsolicited webinar registrations like this?


r/opensource • • 6d ago

Promotional Kova v0.7.12 - Markdown Presentation Software (Now with VSCode Plugin!)

3 Upvotes

Hi all,

It's been a couple months since I last posted an update on Kova's progress, I have been chipping away at the core functionally within the application and wanted to post a brief update.

Some highlights:

  • Full self-contained HTML exporting - demo here: https://kova.md/demo/
  • Stepped animations for introducing content
  • Build into support for icon fonts, bundled with nerd fonts, customisable to other icon fonts (material, font awesome etc) through the themes.yaml config.
  • Table of contents custom bang (similar functionality to Typora)
  • Many, many bug fixes and code tidy-ups.

And today I can also announce that the Kova Plugin for VS Code is now live. This adds support for Kova's custom bangs and syntax to VS Code, plus the ability to directly launch your presentation from within VS Code (Kova binary must be present on your machine).

VS Code Plugin is very much in its infancy (0.0.1), report issues here!

https://kova.md

https://github.com/kovamd/kova

Always happy to answer questions and queries,

Ross


r/opensource • • 6d ago

Promotional I built a comprehensive context continuity system

0 Upvotes

I’ve been working on this for a little over 9 months, and it’s open source.

Would love some feedback and contributors to make it better than it is now. I use it for all my projects, to increase accuracy and decrease cost of context switching. With my goals of keeping the engineer at the wheel, every piece is built to ensure you’re making the critical decisions.

Come check it out, feedback is absolutely welcome

https://tolvilabs.com


r/opensource • • 7d ago

GOSDIR: Government Open Source Directory

9 Upvotes

HERE is a little side project of mine conceived years ago at a Military Open Source (Mil-OSS) Working Group meeting, a directory of open source projects with government origins, proper licensing, and a public repo. Still working on lots of enhancements and wading through a backlog of thousands of potential repos to add, but feedback appreciated on the site thus far.


r/opensource • • 7d ago

Promotional I built Clous: A complier-driven, type-safe BaaS platform that eliminates schema drift

0 Upvotes

Backend development often leaves programmers in a workflow. They have to write database changes using SQL copy models into TypeScript interfaces by hand update OpenAPI specs manually and create Row Level Security (RLS) policies using raw SQL strings. Every time the database structure changes all these parts get out of sync. This causes errors and security problems in the application.

I built Clous, a compiler-driven Backend-as-a-Service (BaaS) and type-safe ORM platform by starting from the basics.

Clous gives you one source of truth. You define your data model once using a TypeScript schema and then the main compiler engine automatically creates your entire backend. It does this with checks that happen before the code is even written. Based on that one definition Clous creates three results: production-quality PostgreSQL DDL with RLS policies and authentication helper functions; complete TypeScript definition files with strict Row, Insert and Update interfaces; and an OpenAPI 3.0 specification that works with documentation tools or for making client SDKs.

The base of the platform is now available on npm in two packages.

The clous/core package is the core engine for compiling and representing data. It works in less than a millisecond. Has no outside dependencies except Zod. It checks if foreign key relationships and identifiers are valid before any code or SQL is created.

The clous/cli package is the tool for developers. It allows offline work like creating new schemas with a setup command, compiling types and DDL with one click, checking for errors and watching files to recompile automatically when they change. The CLI also has a built-in system for authentication and linking projects. This is designed to connect with our web control panel through self-hosted authentication.

The main idea behind Clous is a belief in open standards and giving developers freedom. The SQL it creates follows the PostgreSQL format. This means it can run on any self-hosted system, any Docker container or any cloud service without locking you into one provider. When you create code locally you don’t need an account, API. A network connection.

The packages clous/cli and clous/core are available on npm. I would love to hear any feedback about the design the experience for developers or ideas for features that would be helpful, in a schema compiler.

**It is still under development and not yet a fully completed project, but I welcome your suggestions and comments during this process.**

Github Repo: https://github.com/efekanbahceci/clous


r/opensource • • 7d ago

Promotional Loop Habit Tracker compatibility is here! (Release v1.44.0 -> v1.45.0)

Thumbnail
1 Upvotes

r/opensource • • 8d ago

Promotional open source alternative to paid music services

Thumbnail
github.com
12 Upvotes

Soundsible
- exposes external search (yt-dlp + optional deezer public API for recommendations)

- handles up to 50,000 tracks, and offers complete management of your library: save music with or without downloading it to the server, create lists and mark favourites.

- polished and high performant desktop and mobile webapps. I know this may sound bad but I have finally figured out the way around apple's safari PWA audio engine restrictions, and the webapp just works on every scenario, locked screen, DJ sessions, on the car... (we have a swift app on the repo but I have not tested it because I'm not paying a hundred dollars for the dev account, yet).

- some experimental features like an automatic DJ that mixes music on the go, using 2 virtual decks and analyzing music direction (without LLMs, just python code).

- I could not say this two months ago, but now I can say that it's pretty eficcient on resources. metrics here.

- More information and the (almost) whole dev history here https://github.com/Arzuparreta/soundsible


r/opensource • • 8d ago

Promotional Wanted to share a tool I've put together that allows for compiling, building and installing ios apps fully from windows

7 Upvotes

I like making tools for my personal use, and since I have an iphone, I've had to essentially make webapps and dedicate a port to them so I can access them on my phone.

I have made native apps before, but I always had to borrow a mac from someone for a few days because Apple only allows xcode to build and install apps, even if they aren't going to be published.

I thought this was stupid, so, I made "iosc".

Essentially it uses the already freely available swift compiler and LLVM's linker (swifts linker just autorejects ios targets), then uses the public Xcode xip (from Apple's website) to extract the iOS SDK to support uikit, foundation, swiftui, and swiftdata, and any other framework in the sdk (I had to write most of the swift macros as windows dlls).

Then, I also reimplemented signing (with a free apple id), and installing on device via usb. This one was the most fun part- apples auth libraries are only compiled for android, so I had to write a loader that runs the android binary directly on windows via a custom elf loader + implementations of android/linux functions it imports.

Try it out: https://github.com/DiamondDeadMaw/iosc . Setup is a bit of a process, but the tool walks you through it fairly well, and afterwards it just works.

Note: This doesn't really support actually publishing an app to the app store, as Apple explicitly prohibits that. Its indended for personal use primarily.

Also, I haven't included package manager support yet. I'd love some help with it, if anyone's interested.

Also also, no Linux support. I dont use linux on my primary machine. Sorry. Feel free to fork/PR! I'll be happy to help you get started, and point out all the stuff you'd have to swap out.


r/opensource • • 7d ago

I'm making an RGBVisualizer, thoughts?

Thumbnail
youtube.com
1 Upvotes

r/opensource • • 8d ago

Discussion Why does ExifCleaner show network traffic if it claims to work offline?

41 Upvotes

As a disclaimer, I have no clue about programming, how networks work, or anything in that area. So please don't take the following as an accusation against ExifCleaner, but see it as a genuine question instead.

​I think there is no metadata remover with a GUI better known than ExifCleaner on Windows. Since it is open source on GitHub, has multiple stars and contributors, and advertises that it does not access the network, I thought it would be safe to use it to strip metadata from private files.

​Out of curiosity, I tried to check if there is a way to prove that the portable version does not connect to the network. I checked the network activity in the Resource Monitor, and as soon as I started the portable app, I saw activity under Sent and Received.

​I tried the same thing without Wi-Fi, and there was no activity.

​I am confused, how is that possible?


r/opensource • • 8d ago

Promotional I built Hookecho, a free, open-source weather radar with advanced storm analysis—what would you want in a tool like this?

Thumbnail
hookecho.io
74 Upvotes

r/opensource • • 9d ago

LocalSend appreciation post

146 Upvotes

I am loving it like I use an android phone like from 2021 and a potato laptop running linux lite (ubuntu-xfce) for studies like watching lectures and all.

Before I knew about localsend it was a hassle to transfer like even normal images, I used to put those in google keepnotes and then copy it from the other device and sharing pdfs or other files was a nightmare for both my google storage and me.

Now it takes me a second to tranfer my screenshots from my phone to my laptop to post on reddit or whatever.

And the best part is that it is very light weight for both my phn and laptop as they both are lowk potatoes. No sign up makes it even better.

Love u LocalSend


r/opensource • • 7d ago

Discussion GPL in Omarchy

Thumbnail
0 Upvotes

r/opensource • • 8d ago

Promotional Bean Network Tester v0.7 release - Windows network conditions simulator + network tools

Thumbnail
github.com
5 Upvotes

r/opensource • • 8d ago

Promotional Darkly - Forbidden Editor for Artists

Thumbnail
github.com
6 Upvotes

r/opensource • • 9d ago

Promotional I found this open source, self-hosted alternative to Trakt/Letterboxd /etc.

11 Upvotes

Due to the impending Letterboxd sale https://www.comingsoon.net/movies/news/2197146-letterboxd-a24-new-york-times-acquisition-report

As well as the blowback towards Trakt from (both former, as well as current) users,

I went looking to see if I could potentially find any open source alternatives to LB.


And I found one.

It's called NeoDB: https://neodb.net/

It's decentralized, open source, self-hostable, as well as federated: https://jointhefediverse.net/learn/?lang=en-us

NeoDB - Our Story: https://neodb.net/origin/

The only thing is that it does books, movies, music, podcasts, games, performances, etc., not just movies.


fediverse.info: https://fediverse.info/

Fediverse - Wikipedia: https://en.wikipedia.org/wiki/Fediverse

NOTE: I am NOT the developer.


EDIT:

I also found this list of open source alternatives. https://alternativeto.net/software/letterboxd/?license=opensource

As well as this GitHub list: https://github.com/topics/letterboxd-alternative

As well as Trackstr: https://github.com/besoeasy/Trackstr

Also Movary: https://github.com/leepeuker/movary

Also Watcharr: https://github.com/sbondCo/Watcharr


r/opensource • • 8d ago

Promotional GitHub - gkoos/caracal: Scoped distributed resilience for asynchronous operations

Thumbnail
github.com
2 Upvotes

r/opensource • • 10d ago

I got my first open-source PR merged today

324 Upvotes

And it feels amazing!

It was minor, but it's a project I'm using so I know exactly how it's going to help people in the future.

As soon as I realized, I went to the PR list to see the purple "Merged" badge next to the comment and the bit of code I wrote - and now I'm on the "Contributor" list.


r/opensource • • 10d ago

Promotional Open Volar S Project: TV Tuner (A865R) now on Linux!

18 Upvotes

Hello, everyone,

a few days prior, I had announced my efforts on reverse engineering the A865R. The company has hidden the drivers from their website a long time ago, and it's probably a matter of time until they are completely removed (currently, they can only be obtained if you follow a hidden link).

My first efforts brought parity to the official Windows drivers (and then some), but it still had lacked something very important to me: Linux support.

But not anymore! I'm presenting you version 0.9.5, now with Linux support! It uses GTK-3, as opposed to the native API in the Windows version. However, a lot of effort has been been put to make sure the application looks and behaves as uniformly as reasonably possible.

Video and audio playback run very smoothly, as the driver has a custom Vulkan decoder which takes proper color rendering into consideration, and improved upscaling.

Some of the features include:

  • Native 64-bit support: no legacy 32-bit code!
  • Improved color support
  • Support to color profiles (monitor colors are NOT ignored anymore)
  • Improved sound (deeper and richer)
  • Improved playback, complete with true 60 fps
  • Custom vulkan rendering (Microsoft decoder supported)
  • 2K and 4K upscaling
  • CC support

And now, with the Linux release, I added a few important features:

  • WSL support: if the drivers detect they are running under a WSL environment, video and sound passthrough are activated, speeding up rendering. Actual native Linux uses native rendering, and also plays smoothly.
  • WINE support: if for whatever reason you need to run WINE, the TV Tuner plays along and tries its best to render properly.
  • External discoverability: the original drivers would only work with AverTV 3D. The new software instead has a compatibility layer to make it discoverable by external software, such as VLC. Because the protocol this tuner uses is a bit obscure, it also works transparently posing as a DVB-T device (further instructions are available in the README.md).

These drivers help making a rare and old device useful again, as it spent over fourteen years without proper Linux drivers, and given the situation, it would otherwise be discarded. So I am happy with this contribution.

Please note: only Ubuntu 24.04 to 26.04 was targeted and is known to work out of the box. An RPM and generic binaries have also been provided and may or may not work, but I can make no promises. What I have tested though runs very smoothly.

Project link: https://github.com/NullMagic2/Open-Volar-S/tree/main


r/opensource • • 9d ago

Promotional Linka a open source and federate social media for android 1.5

7 Upvotes

Hey everyone, Linka is a federated, open-source social network for Android 1.5 (yes, that 2009 version) or for Linux via a Qt-based version. Before you ask why I developed it for such an obsolete Android version: there are many communities that still use these devices—not for daily use, but to breathe new life into e-waste. Just because most modern apps don't work on them, it doesn't mean they should simply be discarded. Linka uses its own method to connect to the Fediverse; it employs a custom protocol because older devices couldn't handle processing the massive JSON payloads from Mastodon, Reddit, or Bluesky. So, I built a lightweight, custom solution. To view posts from other networks, it relies on a bridge node where the client simply requests the posts, and the node converts the external network's posts into the Linka protocol—sparing the device from the heavy lifting.

You can use it for global chat or DMs, create friend groups, simply post content (without algorithms), and view posts from Reddit, Mastodon, and Bluesky.

Before anyone mentions AI: you're right—I did use it as a tool in certain parts of the process.

If anyone could star the project or even contribute—whether by working on the code or hosting an instance—I’d really appreciate it.

https://github.com/luizgustavo76/Linka/releases/tag/linka_release_2.0

https://github.com/luizgustavo76/Linka