home.social

#bubblewrap — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #bubblewrap, aggregated by home.social.

fetched live
  1. I've #Finished: #HittingThingsWithHammers for #Today...

    #Tangentially; you might #Find the #Following as much #Help as #BubbleWrap... As much as #WeLoveBubbleWrap...

    #HaveABiscuit, maybe...?

    🧙:fediverse:🤖:wolfparty:🤖:fediverse:🧙 | ☕️️🍪🍫🦄🍫🍪☕️

    "Internet criticism will never be ethical.

    The inevitability of being attacked for simply existing online is leading us down a path of nihilism and apathy."

    i-d.co/article/internet-critic

    #EuropeanServer #BeingEuropean #SomewhereInEurope #ContainsZeroPercentMastodonSocial #TheCheesecakeRule #KnowTheRules #NoAgeVerificationRequired

  2. Telegram Mini App для PWA-приложения: как я перешёл с TWA для RuStore и что выяснил по дороге

    Я разрабатываю PWA для голосовой практики английского. Несколько раз пытался опубликовать его в RuStore через Trusted Web Activity (TWA) — Google-обёртку, которая упаковывает PWA в подписанный Android AAB. После четырёх отказов модерации я понял, что для моего класса приложений TWA в RuStore не работает, и за день переключился на Telegram Mini App. Эта статья — не история стартапа, а разбор технических решений:

    habr.com/ru/articles/1029400/

    #telegram_mini_app #twa #trusted_web_activity #rustore #bubblewrap #pwa #android #hmac #авторизация

  3. Telegram Mini App для PWA-приложения: как я перешёл с TWA для RuStore и что выяснил по дороге

    Я разрабатываю PWA для голосовой практики английского. Несколько раз пытался опубликовать его в RuStore через Trusted Web Activity (TWA) — Google-обёртку, которая упаковывает PWA в подписанный Android AAB. После четырёх отказов модерации я понял, что для моего класса приложений TWA в RuStore не работает, и за день переключился на Telegram Mini App. Эта статья — не история стартапа, а разбор технических решений:

    habr.com/ru/articles/1029400/

    #telegram_mini_app #twa #trusted_web_activity #rustore #bubblewrap #pwa #android #hmac #авторизация

  4. Telegram Mini App для PWA-приложения: как я перешёл с TWA для RuStore и что выяснил по дороге

    Я разрабатываю PWA для голосовой практики английского. Несколько раз пытался опубликовать его в RuStore через Trusted Web Activity (TWA) — Google-обёртку, которая упаковывает PWA в подписанный Android AAB. После четырёх отказов модерации я понял, что для моего класса приложений TWA в RuStore не работает, и за день переключился на Telegram Mini App. Эта статья — не история стартапа, а разбор технических решений:

    habr.com/ru/articles/1029400/

    #telegram_mini_app #twa #trusted_web_activity #rustore #bubblewrap #pwa #android #hmac #авторизация

  5. Wrote a silly script to showcase how to use unshare + chroot/pivot_root in order to manually enter a #linux #chroot / #container without needing #root privileges:

    gist.github.com/mid-kid/9293f4

    I rarely see anyone mention how this can be done without needing to reach for #bubblewrap or systemd-nspawn, and I think it's important to see how you can leverage the primitives that drive container technology.

    The script can be simplified, but not without sacrificing correctness. I hope the comments help.

  6. Wrote a silly script to showcase how to use unshare + chroot/pivot_root in order to manually enter a / without needing privileges:

    gist.github.com/mid-kid/9293f4

    I rarely see anyone mention how this can be done without needing to reach for or systemd-nspawn, and I think it's important to see how you can leverage the primitives that drive container technology.

    The script can be simplified, but not without sacrificing correctness. I hope the comments help.

  7. Wrote a silly script to showcase how to use unshare + chroot/pivot_root in order to manually enter a #linux #chroot / #container without needing #root privileges:

    gist.github.com/mid-kid/9293f4

    I rarely see anyone mention how this can be done without needing to reach for #bubblewrap or systemd-nspawn, and I think it's important to see how you can leverage the primitives that drive container technology.

    The script can be simplified, but not without sacrificing correctness. I hope the comments help.

  8. Wrote a silly script to showcase how to use unshare + chroot/pivot_root in order to manually enter a #linux #chroot / #container without needing #root privileges:

    gist.github.com/mid-kid/9293f4

    I rarely see anyone mention how this can be done without needing to reach for #bubblewrap or systemd-nspawn, and I think it's important to see how you can leverage the primitives that drive container technology.

    The script can be simplified, but not without sacrificing correctness. I hope the comments help.

  9. Wrote a silly script to showcase how to use unshare + chroot/pivot_root in order to manually enter a #linux #chroot / #container without needing #root privileges:

    gist.github.com/mid-kid/9293f4

    I rarely see anyone mention how this can be done without needing to reach for #bubblewrap or systemd-nspawn, and I think it's important to see how you can leverage the primitives that drive container technology.

    The script can be simplified, but not without sacrificing correctness. I hope the comments help.

  10. Now I'm thinking about a new strategy:

    - stop service
    - make #btrfs snapshot (seconds at max)
    - restart service
    - run #borgBackup from snapshot, but via #bubbleWrap so it sees it as the original path and inodes for consistency&performance!
    - run as many borg backups as desired to any remote, even in parallel, as the service is running again

    Thoughs?

    #nixos

  11. Now I'm thinking about a new strategy:

    - stop service
    - make snapshot (seconds at max)
    - restart service
    - run from snapshot, but via so it sees it as the original path and inodes for consistency&performance!
    - run as many borg backups as desired to any remote, even in parallel, as the service is running again

    Thoughs?

  12. Now I'm thinking about a new strategy:

    - stop service
    - make #btrfs snapshot (seconds at max)
    - restart service
    - run #borgBackup from snapshot, but via #bubbleWrap so it sees it as the original path and inodes for consistency&performance!
    - run as many borg backups as desired to any remote, even in parallel, as the service is running again

    Thoughs?

    #nixos

  13. Now I'm thinking about a new strategy:

    - stop service
    - make #btrfs snapshot (seconds at max)
    - restart service
    - run #borgBackup from snapshot, but via #bubbleWrap so it sees it as the original path and inodes for consistency&performance!
    - run as many borg backups as desired to any remote, even in parallel, as the service is running again

    Thoughs?

    #nixos

  14. Now I'm thinking about a new strategy:

    - stop service
    - make #btrfs snapshot (seconds at max)
    - restart service
    - run #borgBackup from snapshot, but via #bubbleWrap so it sees it as the original path and inodes for consistency&performance!
    - run as many borg backups as desired to any remote, even in parallel, as the service is running again

    Thoughs?

    #nixos

  15. 🔗 UrlRoulette URL of the Day #430! 🌟

    Virtual bubble wrap - burst them all!
    Online bubble wrap popping, a stress-relief satisfying web app. Pop bubbles non-stop.

    This is our URL of the day 👉 urlroulette.net/ui/3m46tG3xrpCW 🚀

    #bubblewrap

  16. 🔗 UrlRoulette URL of the Day #430! 🌟

    Virtual bubble wrap - burst them all!
    Online bubble wrap popping, a stress-relief satisfying web app. Pop bubbles non-stop.

    This is our URL of the day 👉 urlroulette.net/ui/3m46tG3xrpCW 🚀

    #bubblewrap

  17. Good to know.

    #Bubblewrap creates isolated environments using #Linux kernel namespaces. It achieves this by creating a new, completely empty mount namespace where the root is mounted on a tmpfs. When installed, Bubblewrap provides a bwrap CLI tool that can be used to wrap any command (with caveats). Of special interest are coding agents like #OpenCode, Claude Code etc.

    patrickmccanna.net/a-better-wa

  18. Good to know.

    #Bubblewrap creates isolated environments using #Linux kernel namespaces. It achieves this by creating a new, completely empty mount namespace where the root is mounted on a tmpfs. When installed, Bubblewrap provides a bwrap CLI tool that can be used to wrap any command (with caveats). Of special interest are coding agents like #OpenCode, Claude Code etc.

    patrickmccanna.net/a-better-wa

  19. Good to know.

    #Bubblewrap creates isolated environments using #Linux kernel namespaces. It achieves this by creating a new, completely empty mount namespace where the root is mounted on a tmpfs. When installed, Bubblewrap provides a bwrap CLI tool that can be used to wrap any command (with caveats). Of special interest are coding agents like #OpenCode, Claude Code etc.

    patrickmccanna.net/a-better-wa

  20. Good to know.

    #Bubblewrap creates isolated environments using #Linux kernel namespaces. It achieves this by creating a new, completely empty mount namespace where the root is mounted on a tmpfs. When installed, Bubblewrap provides a bwrap CLI tool that can be used to wrap any command (with caveats). Of special interest are coding agents like #OpenCode, Claude Code etc.

    patrickmccanna.net/a-better-wa

  21. Good to know.

    #Bubblewrap creates isolated environments using #Linux kernel namespaces. It achieves this by creating a new, completely empty mount namespace where the root is mounted on a tmpfs. When installed, Bubblewrap provides a bwrap CLI tool that can be used to wrap any command (with caveats). Of special interest are coding agents like #OpenCode, Claude Code etc.

    patrickmccanna.net/a-better-wa

  22. Dự án 'Popcalypse' ra mắt game bóp bong bóng chống sốc trực tuyến, đa người chơi. Mỗi bong bóng được đồng bộ: bóp một cái, nó biến mất với tất cả. Hết là hết mãi mãi! Có cả tấm riêng cho bạn.
    #Popcalypse #Game #BubbleWrap #SideProject #TròChơi #BongBóng

    reddit.com/r/SideProject/comme

  23. what i want to eventually see is a GUI program similar to #bottles, but for managing (#flatpak / #bubblewrap) -based sandboxes on #linux

    let's say i have some proprietary program or game i don't entirely trust, or that depends on libraries not supplied in my distro

    i want to be able to create a sort of container for it, pick one of the Freedesktop runtimes as the basis (maybe with some extras, like the GNOME or KDE libraries added), set which directories and interfaces the programs inside the container have access to, then just be able to copy files and run executables inside it

  24. what i want to eventually see is a GUI program similar to #bottles, but for managing (#flatpak / #bubblewrap) -based sandboxes on #linux

    let's say i have some proprietary program or game i don't entirely trust, or that depends on libraries not supplied in my distro

    i want to be able to create a sort of container for it, pick one of the Freedesktop runtimes as the basis (maybe with some extras, like the GNOME or KDE libraries added), set which directories and interfaces the programs inside the container have access to, then just be able to copy files and run executables inside it

  25. CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

    Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

    You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

    Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 🐳

    #CICD #DevOps #Bubblewrap #Security #Containers

  26. CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

    Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

    You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

    Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 🐳

    #CICD #DevOps #Bubblewrap #Security #Containers

  27. CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

    Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

    You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

    Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 🐳

    #CICD #DevOps #Bubblewrap #Security #Containers

  28. CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

    Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

    You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

    Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 🐳

    #CICD #DevOps #Bubblewrap #Security #Containers

  29. CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

    Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

    You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

    Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 🐳

    #CICD #DevOps #Bubblewrap #Security #Containers