homebrew-core
homebrew-cask-versions
Our great sponsors
homebrew-core | homebrew-cask-versions | |
---|---|---|
132 | 2 | |
13,184 | 1,184 | |
0.8% | 1.3% | |
10.0 | 10.0 | |
5 days ago | 2 days ago | |
Ruby | Ruby | |
BSD 2-clause "Simplified" License | BSD 2-clause "Simplified" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
homebrew-core
-
GitHub Disabled the Xz Repo
Is disabling the compromised repo the typical GitHub policy? My concern is there are monorepos used by package managers, like brew, that are a collection of thousands of projects [1]. These monorepos seem like a prime target for attack and if GitHub disables one because a malicious commit was merged then you've taken down an entire ecosystem.
-
Backdoor in upstream xz/liblzma leading to SSH server compromise
> Correct. Though we do not appear to be affected, this revert was done out of an abundance of caution.
-
Pyenv – lets you easily switch between multiple versions of Python
> right, but now you know even less about your setup when you some roadblock
This is the same with a binary though. And with homebrew, you can't follow patches or flags used or if they change.
- https://github.com/Homebrew/homebrew-core/blob/c964ad7fa53ad...
- Apple curl security incident 12604
-
Cowsay
definitely be careful about using fortune in a corporate environment or public space if you don't know what dat files you are using or you might just get an extremely unwelcome surprise.
I was practicing a presentation and used to use "fortune" all the time. I forget exactly what it output but I remember being absolutely mortified about what could have happened if that had popped up during an internal company tech talk.
Kudos to brew for keeping unsuspecting people safe
https://github.com/Homebrew/homebrew-core/commit/3fb3c4c3e55...
-
Ask HN: Trouble with a Stargate
I'm sorry to be asking this as I find it a bit silly, but it's blocking my PR [3], so could a few of you star the project on Github [1] to get my PR to run?
[1] https://github.com/laktak/chkbit-py
[2] https://brew.sh
[3] https://github.com/Homebrew/homebrew-core/pull/160018
- Simulate an Ubuntu-like VM inside macOS
- When open source platforms are worse than closed source
- Homebrew Rejects the Idea for Post-Install Notes
- Homebrew team's developer harassment. They won't remove my software?
homebrew-cask-versions
-
Apple Seeds Second Beta of macOS Ventura 13.3 to Developers (build: 22E5230e)
https://github.com/Homebrew/homebrew-cask-versions/blob/master/Casks/safari-technology-preview.rb -> that would brew install safari-technology-preview then, remembered it right.
-
Ask HN: Best Alternative to Homebrew in 2021?
> If I just wanted to install google-chrome, sublime, and skype, I would use the app store.
None of those is available on the Mac App Store. I don’t understand the argument you’re trying to make.
> In contrast to how it used to be, Homebrew now seems designed for people that only want popular bleeding edge packages, and nobody else.
Homebrew Cask—which is what you’re referring to in the reminder of that paragraph—has always been focused on the latest versions of packages. The versions repo[1] is secondary with stricter rules for acceptance.
What are some alternatives?
yt-dlp - A feature-rich command-line audio/video downloader
HomeBrew - 🍺 The missing package manager for macOS (or Linux)
asdf-python - Python plugin for the asdf version manager
nix-config - Mirror of http://chriswarbo.net/git/nix-config
arkade - Open Source Marketplace For Developer Tools
homebrew-php - :beer: Homebrew tap for PHP 5.6 to 8.4. PHP 8.4 is built nightly.
.nixpkgs
osxfuse - FUSE extends macOS by adding support for user space file systems
nix-dotfiles - Dotfiles for my Nix setup
ytmdl - A simple app to get songs from YouTube in mp3 format with artist name, album name etc from sources like iTunes, Spotify, LastFM, Deezer, Gaana etc.
pkgsrc - NetBSD/pkgsrc fork for our binary package repositories