Techlore Surveillance Report

Q&A: How Do We Know We Can Trust FOSS?

8 snips
Jul 3, 2024
Discussions on trusting and not trusting FOSS, thoughts on biohacking, futureproofing threat models, and ISP data collection in the latest Surveillance Report podcast.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Vet Projects By Team, Track Record, And Updates

  • Check a project's public team, track record, community oversight, and update cadence before trusting it.
  • Prefer projects that share clear privacy commitments and consistent security updates.
ADVICE

Use Project Size And Third-Party Audits

  • Rely on project size, community scrutiny, and feedback from trusted experts when you can't audit code yourself.
  • Prefer projects with public audits (e.g., Cure53, Trail of Bits) and responsive maintainers.
ADVICE

Choose Vendor Support For Critical Services

  • Match software choices to the support needs of the task; choose vendor-backed options for critical business services.
  • Avoid self-hosting key functions like business email if you need guaranteed support and reliability.
Get the Snipd Podcast app to discover more snips from this episode
Get the app