Artwork

Content provided by Changelog Media. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Changelog Media or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Dependencies are dangerous (Go Time #321)

1:03:37
 
Share
 

Manage episode 427012868 series 1423445
Content provided by Changelog Media. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Changelog Media or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Dependencies! We need them, but how do we use them effectively and safely? In this week’s episode Kris is joined by Ian and Johnny to discuss the polyfill.io supply chain attack, the history of dependency management and usage in Go, and the Go Proverb that “a little copying is better than a little dependency”. Of course, we wrap up the episode with some Unpopular Opinions!

Leave us a comment

Changelog++ members save 5 minutes on this episode because they made the ads disappear. Join today!

Sponsors:

  • SpeakeasyProduction-ready, Enterprise-resilient, best-in-class SDKs crafted in minutes. Speakeasy takes care of the entire SDK workflow to save you significant time, delivering SDKs to your customers in minutes with just a few clicks! Create your first SDK for free!

Featuring:

Show Notes:

Something missing or broken? PRs welcome!

  continue reading

Chapters

1. It's Go Time! (00:00:00)

2. Intro (00:00:44)

3. Polyfill.io (00:01:38)

4. Affecting the Go dev (00:06:03)

5. Sponsor: Speakeasy (00:21:33)

6. Updating dependencies (00:25:13)

7. Red teaming (00:27:51)

8. Unpopular Opinions! (00:41:34)

9. Johnny's unpop (00:41:56)

10. Ian's unpop (00:52:46)

11. Kris' unpop (00:55:58)

12. Outro (01:02:21)

2070 episodes

Artwork
iconShare
 
Manage episode 427012868 series 1423445
Content provided by Changelog Media. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Changelog Media or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Dependencies! We need them, but how do we use them effectively and safely? In this week’s episode Kris is joined by Ian and Johnny to discuss the polyfill.io supply chain attack, the history of dependency management and usage in Go, and the Go Proverb that “a little copying is better than a little dependency”. Of course, we wrap up the episode with some Unpopular Opinions!

Leave us a comment

Changelog++ members save 5 minutes on this episode because they made the ads disappear. Join today!

Sponsors:

  • SpeakeasyProduction-ready, Enterprise-resilient, best-in-class SDKs crafted in minutes. Speakeasy takes care of the entire SDK workflow to save you significant time, delivering SDKs to your customers in minutes with just a few clicks! Create your first SDK for free!

Featuring:

Show Notes:

Something missing or broken? PRs welcome!

  continue reading

Chapters

1. It's Go Time! (00:00:00)

2. Intro (00:00:44)

3. Polyfill.io (00:01:38)

4. Affecting the Go dev (00:06:03)

5. Sponsor: Speakeasy (00:21:33)

6. Updating dependencies (00:25:13)

7. Red teaming (00:27:51)

8. Unpopular Opinions! (00:41:34)

9. Johnny's unpop (00:41:56)

10. Ian's unpop (00:52:46)

11. Kris' unpop (00:55:58)

12. Outro (01:02:21)

2070 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide