Podcast Episode 89: OSS vs Commercial Licensing
In today's episode we chat about strategies for finding technical support for integrated libraries and more complex solutions. Do you go with a commercial vendor and be at the mercy of their capacity to solve your issues, or do you pick an open source project and put your fate into the hands of the community. We also chat about security and longevity implications of such choices, and how, realistically, the quality cannot be directly correlated to the open-source-ness or commercial-ness (for lack of a better term) origin of any particular piece of software.
In the vein of security, we also had a chance to talk about different mindsets developers have and how this affects security. Languages with a package eco-system, e.g. Javascript, Python, etc... incentivise using those packages whether appropriate or not, and also encourages usage for packages for trivialities. In today's news two very popular packages in JS ecosystem were Supply-Chain-Attacked by a crypto-skimmer malware, for instance.
https://www.youtube.com/watch?v=x5OZrTd2QCI
My daughter was finally born, and I will be attending to the more pressing matters, so the podcast might have a less regular schedule for some time. But it will continue.