Changelog Master Feed

Scoring your project’s security (Ship It! #94)


Listen Later

Autumn and Justin are joined by Chris Swan to discuss tech industry trends like AI and sustainability, gamifying the software development process and motivating devs to write more secure code, OpenSSF Scorecards and how they offer a way to measure and improve the security and compliance of GitHub repos, the scoring system, and the security posture of a repository.

Join the discussion

Changelog++ members save 10 minutes on this episode because they made the ads disappear. Join today!

Sponsors:

  • SynadiaTake NATS to the next level via a global, multi-cloud, multi-geo and extensible service, fully managed by Synadia. They take care of all the infrastructure, management, monitoring, and maintenance for you so you can focus on building exceptional distributed applications.
  • SentryLaunch week! New features and products all week long (so get comfy)! Tune in to Sentry’s YouTube and Discord daily at 9am PT to hear the latest scoop. Too busy? No problem - enter your email address to receive all the announcements (and win swag along the way). Use the code CHANGELOG when you sign up to get $100 OFF the team plan.
  • Fly.ioThe home of Changelog.com — Deploy your apps and databases close to your users. In minutes you can run your Ruby, Go, Node, Deno, Python, or Elixir app (and databases!) all over the world. No ops required. Learn more at fly.io/changelog and check out the speedrun in their docs.
  • Featuring:

    • Chris Swan – Website, GitHub, LinkedIn, Mastodon, X
    • Justin Garrison – GitHub, LinkedIn, X
    • Autumn Nash – GitHub, LinkedIn, X

    Show Notes:

    Links of the week
    • List of 2024 leap day bugs
    • Prescription orders delayed as US pharmacies grapple with “nation-state” cyber attack
    • Person, place, thing, || null
      • Linux - person (Linus Torvalds)
      • git - person (Linus Torvalds)
      • Kubernetes - thing (helmsman)
      • Algorithms - person (Al-Khwarizmi, Persian mathmetition)
      • Trojan Horse - place (Troy)
      • Bluetooth - person (Harold Bluetooth, Denmark king)
      • Hadoop - thing (kids elephant toy)
      • Venn diagram - person (John Venn)
      • MySQL - person (My Widenius)
      • Debian - person (Deb and Ian)
      • Neon - Greek neon meaning new
      • Something missing or broken? PRs welcome!

        ...more
        View all episodesView all episodes
        Download on the App Store

        Changelog Master FeedBy Changelog Media

        • 4.4
        • 4.4
        • 4.4
        • 4.4
        • 4.4

        4.4

        29 ratings


        More shows like Changelog Master Feed

        View all
        Hanselminutes with Scott Hanselman by Scott Hanselman

        Hanselminutes with Scott Hanselman

        377 Listeners

        Software Engineering Radio - the podcast for professional software developers by se-radio@computer.org

        Software Engineering Radio - the podcast for professional software developers

        272 Listeners

        The Changelog: Software Development, Open Source by Changelog Media

        The Changelog: Software Development, Open Source

        284 Listeners

        Thoughtworks Technology Podcast by Thoughtworks

        Thoughtworks Technology Podcast

        40 Listeners

        Talk Python To Me by Michael Kennedy

        Talk Python To Me

        590 Listeners

        Software Engineering Daily by Software Engineering Daily

        Software Engineering Daily

        621 Listeners

        Python Bytes by Michael Kennedy and Brian Okken

        Python Bytes

        215 Listeners

        Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

        Syntax - Tasty Web Development Treats

        987 Listeners

        CoRecursive: Coding Stories by Adam Gordon Bell - Software Developer

        CoRecursive: Coding Stories

        189 Listeners

        Kubernetes Podcast from Google by Abdel Sghiouar, Kaslin Fields

        Kubernetes Podcast from Google

        181 Listeners

        Practical AI by Practical AI LLC

        Practical AI

        192 Listeners

        The Stack Overflow Podcast by The Stack Overflow Podcast

        The Stack Overflow Podcast

        62 Listeners

        Oxide and Friends by Oxide Computer Company

        Oxide and Friends

        47 Listeners

        Latent Space: The AI Engineer Podcast by swyx + Alessio

        Latent Space: The AI Engineer Podcast

        75 Listeners

        The Pragmatic Engineer by Gergely Orosz

        The Pragmatic Engineer

        53 Listeners