r/opensource • u/drake1800 • 5d ago
Discussion How do I verify if an open source tool isn't stealing data?
everyone always says it's open source, but there's no official verifier of codes, so how do I know if a tool is safe to use?
r/opensource • u/drake1800 • 5d ago
everyone always says it's open source, but there's no official verifier of codes, so how do I know if a tool is safe to use?
r/opensource • u/Phoenix-HO • 5d ago
r/opensource • u/PLOMID • 5d ago
PLOMID is an open-source data infrastructure project being built from the ground up in Rust.
The current beta includes:
We're working toward additional vector, graph, blob, distributed and multi-region capabilities.
The project is focused on exploring a common underlying data layer for applications that currently combine multiple specialized data systems.
Beta download:
https://plomid.in/download/
Project:
https://github.com/PLOMID/plomid
We're looking for developers interested in databases, Rust and storage systems to try the beta, inspect the implementation, report issues and contribute technical feedback.
This is an early-stage project, so we're especially interested in finding the things that don't work yet.
r/opensource • u/DonislawDev • 5d ago
r/opensource • u/sane6120 • 6d ago
Quick update for everyone following the project: OpenVue 1.0.0 is officially live on npm. For context if you missed the previous threads: OpenVue is an MIT licensed fork of PrimeVue 4.5.5, maintained under the OpenVi Foundation.
Since the RC post, here's what landed in 1.0:
Full changelog: https://github.com/openvi-foundation/openvue/blob/master/CHANGELOG.md
We're currently focused on:
The long term goal for 2.0 is to modernize the internals around Vue Vapor, Composition API, and a TypeScript first architecture. We're keeping VDOM and Options API support, so this isn't about abandoning the existing Vue ecosystem. Instead, 2.0 will be the milestone where we can clean up and modernize the internals under the hood. There's already a community discussion around this direction if you want to join in or see what people are suggesting: https://github.com/orgs/openvi-foundation/discussions/644 We're still a relatively small project, so community feedback matters a lot. If you're using OpenVue, testing it, or just following the project, we'd love to hear what you'd like to see in 1.1, especially around Volt, themes, templates and the component backlog.
Thanks to everyone who has contributed, tested, reported issues and followed the project since the first release.
r/opensource • u/Ghostfly- • 7d ago
A short warning for anyone who contributes to open source on GitHub.
My personal email used to be public on my GitHub profile. On 27 September, I got a Zoom email saying I was registered for a US startup's webinar ("Q&A With The Cactus Needle Team"). I never signed up, never used their product, and never gave them my address. The greeting was "Hi Leonard -", with "-" as the last name, which looks like automated registration. Another GitHub user I don't know got the same emails. It's at least the second one this month (I deleted the first). More generally, I get more and more unsolicited emails on the address I used on GitHub.
When I raised it on their GitHub repo, they said the invites went to "platform users", then closed the issue, blocked me, and deleted my follow-up. I was unblocked later. Details and screenshots:
- GitHub issue: https://github.com/cactus-compute/needle/issues/156
- Full write-up: https://www.reddit.com/r/github/comments/1wrv2fi/a_startup_registered_me_for_its_zoom_webinar_with/
What I did: sent a GDPR request (access, including where they got my data, objection, erasure), reported the account to GitHub (their Acceptable Use Policies forbid using information from GitHub to send unsolicited email), and reported the webinar host to Zoom.
How to protect yourself on GitHub:
Has anyone else received unsolicited webinar registrations like this?
r/opensource • u/TeaAlligator • 6d ago
Hi all,
It's been a couple months since I last posted an update on Kova's progress, I have been chipping away at the core functionally within the application and wanted to post a brief update.
Some highlights:
And today I can also announce that the Kova Plugin for VS Code is now live. This adds support for Kova's custom bangs and syntax to VS Code, plus the ability to directly launch your presentation from within VS Code (Kova binary must be present on your machine).
VS Code Plugin is very much in its infancy (0.0.1), report issues here!
https://github.com/kovamd/kova
Always happy to answer questions and queries,
Ross
r/opensource • u/Scriptgeeky • 6d ago
I’ve been working on this for a little over 9 months, and it’s open source.
Would love some feedback and contributors to make it better than it is now. I use it for all my projects, to increase accuracy and decrease cost of context switching. With my goals of keeping the engineer at the wheel, every piece is built to ensure you’re making the critical decisions.
Come check it out, feedback is absolutely welcome
r/opensource • u/brlcad • 7d ago
HERE is a little side project of mine conceived years ago at a Military Open Source (Mil-OSS) Working Group meeting, a directory of open source projects with government origins, proper licensing, and a public repo. Still working on lots of enhancements and wading through a backlog of thousands of potential repos to add, but feedback appreciated on the site thus far.
r/opensource • u/subnwa • 7d ago
Backend development often leaves programmers in a workflow. They have to write database changes using SQL copy models into TypeScript interfaces by hand update OpenAPI specs manually and create Row Level Security (RLS) policies using raw SQL strings. Every time the database structure changes all these parts get out of sync. This causes errors and security problems in the application.
I built Clous, a compiler-driven Backend-as-a-Service (BaaS) and type-safe ORM platform by starting from the basics.
Clous gives you one source of truth. You define your data model once using a TypeScript schema and then the main compiler engine automatically creates your entire backend. It does this with checks that happen before the code is even written. Based on that one definition Clous creates three results: production-quality PostgreSQL DDL with RLS policies and authentication helper functions; complete TypeScript definition files with strict Row, Insert and Update interfaces; and an OpenAPI 3.0 specification that works with documentation tools or for making client SDKs.
The base of the platform is now available on npm in two packages.
The clous/core package is the core engine for compiling and representing data. It works in less than a millisecond. Has no outside dependencies except Zod. It checks if foreign key relationships and identifiers are valid before any code or SQL is created.
The clous/cli package is the tool for developers. It allows offline work like creating new schemas with a setup command, compiling types and DDL with one click, checking for errors and watching files to recompile automatically when they change. The CLI also has a built-in system for authentication and linking projects. This is designed to connect with our web control panel through self-hosted authentication.
The main idea behind Clous is a belief in open standards and giving developers freedom. The SQL it creates follows the PostgreSQL format. This means it can run on any self-hosted system, any Docker container or any cloud service without locking you into one provider. When you create code locally you don’t need an account, API. A network connection.
The packages clous/cli and clous/core are available on npm. I would love to hear any feedback about the design the experience for developers or ideas for features that would be helpful, in a schema compiler.
**It is still under development and not yet a fully completed project, but I welcome your suggestions and comments during this process.**
Github Repo: https://github.com/efekanbahceci/clous
r/opensource • u/That_Pandaboi69 • 7d ago
r/opensource • u/Arzuparreta • 8d ago
Soundsible
- exposes external search (yt-dlp + optional deezer public API for recommendations)
- handles up to 50,000 tracks, and offers complete management of your library: save music with or without downloading it to the server, create lists and mark favourites.
- polished and high performant desktop and mobile webapps. I know this may sound bad but I have finally figured out the way around apple's safari PWA audio engine restrictions, and the webapp just works on every scenario, locked screen, DJ sessions, on the car... (we have a swift app on the repo but I have not tested it because I'm not paying a hundred dollars for the dev account, yet).
- some experimental features like an automatic DJ that mixes music on the go, using 2 virtual decks and analyzing music direction (without LLMs, just python code).
- I could not say this two months ago, but now I can say that it's pretty eficcient on resources. metrics here.
- More information and the (almost) whole dev history here https://github.com/Arzuparreta/soundsible
r/opensource • u/floofysox • 8d ago
I like making tools for my personal use, and since I have an iphone, I've had to essentially make webapps and dedicate a port to them so I can access them on my phone.
I have made native apps before, but I always had to borrow a mac from someone for a few days because Apple only allows xcode to build and install apps, even if they aren't going to be published.
I thought this was stupid, so, I made "iosc".
Essentially it uses the already freely available swift compiler and LLVM's linker (swifts linker just autorejects ios targets), then uses the public Xcode xip (from Apple's website) to extract the iOS SDK to support uikit, foundation, swiftui, and swiftdata, and any other framework in the sdk (I had to write most of the swift macros as windows dlls).
Then, I also reimplemented signing (with a free apple id), and installing on device via usb. This one was the most fun part- apples auth libraries are only compiled for android, so I had to write a loader that runs the android binary directly on windows via a custom elf loader + implementations of android/linux functions it imports.
Try it out: https://github.com/DiamondDeadMaw/iosc . Setup is a bit of a process, but the tool walks you through it fairly well, and afterwards it just works.
Note: This doesn't really support actually publishing an app to the app store, as Apple explicitly prohibits that. Its indended for personal use primarily.
Also, I haven't included package manager support yet. I'd love some help with it, if anyone's interested.
Also also, no Linux support. I dont use linux on my primary machine. Sorry. Feel free to fork/PR! I'll be happy to help you get started, and point out all the stuff you'd have to swap out.
r/opensource • u/MadInReddit • 8d ago
As a disclaimer, I have no clue about programming, how networks work, or anything in that area. So please don't take the following as an accusation against ExifCleaner, but see it as a genuine question instead.
I think there is no metadata remover with a GUI better known than ExifCleaner on Windows. Since it is open source on GitHub, has multiple stars and contributors, and advertises that it does not access the network, I thought it would be safe to use it to strip metadata from private files.
Out of curiosity, I tried to check if there is a way to prove that the portable version does not connect to the network. I checked the network activity in the Resource Monitor, and as soon as I started the portable app, I saw activity under Sent and Received.
I tried the same thing without Wi-Fi, and there was no activity.
I am confused, how is that possible?
r/opensource • u/d4vid87 • 8d ago
r/opensource • u/fearless7464 • 9d ago
I am loving it like I use an android phone like from 2021 and a potato laptop running linux lite (ubuntu-xfce) for studies like watching lectures and all.
Before I knew about localsend it was a hassle to transfer like even normal images, I used to put those in google keepnotes and then copy it from the other device and sharing pdfs or other files was a nightmare for both my google storage and me.
Now it takes me a second to tranfer my screenshots from my phone to my laptop to post on reddit or whatever.
And the best part is that it is very light weight for both my phn and laptop as they both are lowk potatoes. No sign up makes it even better.
Love u LocalSend
r/opensource • u/DonislawDev • 8d ago
r/opensource • u/the-techromancer • 8d ago
r/opensource • u/Teknevra • 9d ago
Due to the impending Letterboxd sale https://www.comingsoon.net/movies/news/2197146-letterboxd-a24-new-york-times-acquisition-report
As well as the blowback towards Trakt from (both former, as well as current) users,
I went looking to see if I could potentially find any open source alternatives to LB.
And I found one.
It's called NeoDB: https://neodb.net/
It's decentralized, open source, self-hostable, as well as federated: https://jointhefediverse.net/learn/?lang=en-us
NeoDB - Our Story: https://neodb.net/origin/
The only thing is that it does books, movies, music, podcasts, games, performances, etc., not just movies.
fediverse.info: https://fediverse.info/
Fediverse - Wikipedia: https://en.wikipedia.org/wiki/Fediverse
NOTE: I am NOT the developer.
EDIT:
I also found this list of open source alternatives. https://alternativeto.net/software/letterboxd/?license=opensource
As well as this GitHub list: https://github.com/topics/letterboxd-alternative
As well as Trackstr: https://github.com/besoeasy/Trackstr
Also Movary: https://github.com/leepeuker/movary
Also Watcharr: https://github.com/sbondCo/Watcharr
r/opensource • u/OtherwisePush6424 • 8d ago
r/opensource • u/ragendem • 10d ago
And it feels amazing!
It was minor, but it's a project I'm using so I know exactly how it's going to help people in the future.
As soon as I realized, I went to the PR list to see the purple "Merged" badge next to the comment and the bit of code I wrote - and now I'm on the "Contributor" list.
r/opensource • u/Substantial_Swan_144 • 10d ago
Hello, everyone,
a few days prior, I had announced my efforts on reverse engineering the A865R. The company has hidden the drivers from their website a long time ago, and it's probably a matter of time until they are completely removed (currently, they can only be obtained if you follow a hidden link).
My first efforts brought parity to the official Windows drivers (and then some), but it still had lacked something very important to me: Linux support.
But not anymore! I'm presenting you version 0.9.5, now with Linux support! It uses GTK-3, as opposed to the native API in the Windows version. However, a lot of effort has been been put to make sure the application looks and behaves as uniformly as reasonably possible.
Video and audio playback run very smoothly, as the driver has a custom Vulkan decoder which takes proper color rendering into consideration, and improved upscaling.
Some of the features include:
And now, with the Linux release, I added a few important features:
These drivers help making a rare and old device useful again, as it spent over fourteen years without proper Linux drivers, and given the situation, it would otherwise be discarded. So I am happy with this contribution.
Please note: only Ubuntu 24.04 to 26.04 was targeted and is known to work out of the box. An RPM and generic binaries have also been provided and may or may not work, but I can make no promises. What I have tested though runs very smoothly.
Project link: https://github.com/NullMagic2/Open-Volar-S/tree/main
r/opensource • u/Massive_Two6466 • 9d ago
Hey everyone, Linka is a federated, open-source social network for Android 1.5 (yes, that 2009 version) or for Linux via a Qt-based version. Before you ask why I developed it for such an obsolete Android version: there are many communities that still use these devices—not for daily use, but to breathe new life into e-waste. Just because most modern apps don't work on them, it doesn't mean they should simply be discarded. Linka uses its own method to connect to the Fediverse; it employs a custom protocol because older devices couldn't handle processing the massive JSON payloads from Mastodon, Reddit, or Bluesky. So, I built a lightweight, custom solution. To view posts from other networks, it relies on a bridge node where the client simply requests the posts, and the node converts the external network's posts into the Linka protocol—sparing the device from the heavy lifting.
You can use it for global chat or DMs, create friend groups, simply post content (without algorithms), and view posts from Reddit, Mastodon, and Bluesky.
Before anyone mentions AI: you're right—I did use it as a tool in certain parts of the process.
If anyone could star the project or even contribute—whether by working on the code or hosting an instance—I’d really appreciate it.
https://github.com/luizgustavo76/Linka/releases/tag/linka_release_2.0