• frayedpickles@lemmy.cafe
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    9 hours ago

    Did you read the source or do you know anyone who has? Do you have statistics on vulnerabilities found?

    If not, it is the same, you just trust gorhill more than honey without evidence to back it up. So do I. But it’s important to remember this is just a lie most people are telling themselves, not backed up by anything other than faith.

    • ERROR: Earth.exe has crashed@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      9 hours ago

      Trusting strangers isnt a good thing, bur trusting that out of the many users out there, someone would’ve found out malware, is much better trusting one entity’s proprietary code.

      But practically, you can’t expect everyone to be auditing code. The average person isn’t that knowledged, myself included. But “Use Open Souce Software” is still a very good advice, even to an average person (like myself) who couldn’t possibly verify the code by themselves.

      Firefox itself is also based on trust on its developers, but Firefox is still better than Chrome.

      We live in a society, there’s no way to conpletely avoid trust.

      We have to trust our food souce isn’t poisoned.

      The farmers

      the people picking up the crops

      or if its meat, the butchers

      the druck drivers

      the people packing and unpacking

      the grocery store workers

      I mean, we cant possibly have everyone auditing the entire food supply chain.

      That’s why we have government to audit it.

      Preferrably a transparent government with many workers in the departments, and also overseen by a democratically elected government, who can pass laws to regulate the process, and the citizen to hold the government accountable. That would be very close to open source. A fully open source system would be having CCTV footage of the entire food supply chain publically available. But even then, not everyone is gonna have the time to check all the cameras, but the point is we just trust that someone out there is gonna be watching it.

      In contrast, a close source system is essentially one single corporation doing all the audits, with no transparency, and no government/citizen oversight.

    • drosophila@lemmy.blahaj.zone
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      6 hours ago

      How do you know Ohio is real? Have you been there yourself? Have you seen it with your own two eyes? Or do you just trust all the people who claim to live there?

      You see, believing in the existence of Ohio is exactly the same as believing that my dad works for Nintendo and I got the play their next game early. It was awesome btw.

      • frayedpickles@lemmy.cafe
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        37 minutes ago

        Yes I’ve been to Ohio. It’s as terrible as people say.

        However the correct analogy is this: “I distrust alliant credit union, but I trust a random internet stranger that in theory is doing their work in public”. That’s the right number of employees and the right scale.

        Your analogy is basically accepting my point. In this case, I’m trusting a random internet stranger not to lie to me, and you’ve very clearly illustrated why that doesn’t work. Believing Ohio isn’t real would require a large conspiracy. Ublock introducing something naughty would require one man. I trust that one man, but there’s no reason to. If you think that’s absurd do some research about recent software package changes that introduced backdoors.