#reproducible — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #reproducible, aggregated by home.social.
-
📢 Next up at R-Ladies Rome!
Typst for Efficient Typesetting with Derek Sollberger (@Princeton)
Discover how Typst + Quarto, publication-quality PDFs—without the complexity of LaTeX.
📅 Registration: https://luma.com/k9bw4g7e
#RLadiesRome #RStats #Typst #Quarto #Reproducible -
📢 Next up at R-Ladies Rome!
Typst for Efficient Typesetting with Derek Sollberger (@Princeton)
Discover how Typst + Quarto, publication-quality PDFs—without the complexity of LaTeX.
📅 Registration: https://luma.com/k9bw4g7e
#RLadiesRome #RStats #Typst #Quarto #Reproducible -
What's in the box:
QKD Engine - BB84, CV-QKD, and DI-QKD ready. Physical-layer key distribution that detects eavesdroppers in real-time via QBER monitoring. Eavesdrop? We measure it.
Hardened Debian - Minimal attack surface. Kernel locked. Audit-ready. Runs on secure enclave with measured boot.
10G Fiber NIC - Low-latency quantum-safe key exchange at wire speed. Plug into existing dark fiber or dedicated QKD links.
QRNG Core - Hardware quantum random number generator feeding /dev/random. Real entropy from vacuum fluctuations. No pseudo-random guesswork.
REST & gRPC APIs - Expose QRNG streams and QKD key material to your apps. Consume fresh quantum keys via simple GET requests. Integrate in minutes.
Port Knocking + SPA - Single Packet Authorization with port knocking closes all public ports until a cryptographically signed knock sequence unlocks access. Invisible unless you know the knock.
Post-Quantum Crypto Stack - liboqs, OpenSSL 3.x with QKD engine, hybrid PQC+QKD modes. Future-proofed.
Small business? Enterprise edge?
Deploy one. Deploy a mesh. The Black Box auto-discovers peers, negotiates QKD sessions, and delivers fresh symmetric keys for IPsec, TLS, or your own crypto.Compliance-ready. Information-theoretic security. No backdoors. No math to factor. Just physics.
Random Oracle not included—but with this box, you generate your own.
$2499. Debian's first quantum edge. Deploy today. Secure forever.
#reproducible builds #rolling keys #bb84 #shor #dh..qdh? #device independent #pki #oqc ready #compliance #hybrid PQC key exchange #qssh -
What's in the box:
QKD Engine - BB84, CV-QKD, and DI-QKD ready. Physical-layer key distribution that detects eavesdroppers in real-time via QBER monitoring. Eavesdrop? We measure it.
Hardened Debian - Minimal attack surface. Kernel locked. Audit-ready. Runs on secure enclave with measured boot.
10G Fiber NIC - Low-latency quantum-safe key exchange at wire speed. Plug into existing dark fiber or dedicated QKD links.
QRNG Core - Hardware quantum random number generator feeding /dev/random. Real entropy from vacuum fluctuations. No pseudo-random guesswork.
REST & gRPC APIs - Expose QRNG streams and QKD key material to your apps. Consume fresh quantum keys via simple GET requests. Integrate in minutes.
Port Knocking + SPA - Single Packet Authorization with port knocking closes all public ports until a cryptographically signed knock sequence unlocks access. Invisible unless you know the knock.
Post-Quantum Crypto Stack - liboqs, OpenSSL 3.x with QKD engine, hybrid PQC+QKD modes. Future-proofed.
Small business? Enterprise edge?
Deploy one. Deploy a mesh. The Black Box auto-discovers peers, negotiates QKD sessions, and delivers fresh symmetric keys for IPsec, TLS, or your own crypto.Compliance-ready. Information-theoretic security. No backdoors. No math to factor. Just physics.
Random Oracle not included—but with this box, you generate your own.
$2499. Debian's first quantum edge. Deploy today. Secure forever.
#reproducible builds #rolling keys #bb84 #shor #dh..qdh? #device independent #pki #oqc ready #compliance #hybrid PQC key exchange #qssh -
i may build with forky #reproducible builds #debian 14 #triskadecaphobia
-
i may build with forky #reproducible builds #debian 14 #triskadecaphobia
-
Just finished listening to the first episode of @Felienne and Hanna Schraffenberger’s #podcast CS off course:
https://rss.com/podcasts/computer-science-off-course/2968986/
What stuck most: how tools for building #software are designed to build but not to keep track of the thought process.
This would also be a way to make CS output truly #reproducible. I love the idea of having an atlas type annotation tool. Testing would be more involved, metrics for #reproducibility of #researchsoftware are still illdefined. -
Just finished listening to the first episode of @Felienne and Hanna Schraffenberger’s #podcast CS off course:
https://rss.com/podcasts/computer-science-off-course/2968986/
What stuck most: how tools for building #software are designed to build but not to keep track of the thought process.
This would also be a way to make CS output truly #reproducible. I love the idea of having an atlas type annotation tool. Testing would be more involved, metrics for #reproducibility of #researchsoftware are still illdefined. -
Bugs were squashed and #reproducible (?) pizza was baked in Darmstadt at the #NixOS 26.05 bug squashing party. Doesn't that look delicious?
-
Bugs were squashed and #reproducible (?) pizza was baked in Darmstadt at the #NixOS 26.05 bug squashing party. Doesn't that look delicious?
-
I've just updated the Reproducible project template repo based on a few small #reproducible research websites I've needed to create. This workflow is now my default for doing talks and workshops, quicker than PowerPoint with many benefits! Details: http://robinlovelace.net/reproducible-project-template/
-
I've just updated the Reproducible project template repo based on a few small #reproducible research websites I've needed to create. This workflow is now my default for doing talks and workshops, quicker than PowerPoint with many benefits! Details: http://robinlovelace.net/reproducible-project-template/
-
Listening to Bernhard M. Wiedemann talking at #oSC26 about:
What happened with #reproducible #builds in @opensuse and #SLES
https://events.opensuse.org/conferences/oSC26/program/proposals/5089
Once upon a time the syslog-ng project also did a couple of changes to allow reproducible builds (no timestamp or git hash).
-
Listening to Bernhard M. Wiedemann talking at #oSC26 about:
What happened with #reproducible #builds in @opensuse and #SLES
https://events.opensuse.org/conferences/oSC26/program/proposals/5089
Once upon a time the syslog-ng project also did a couple of changes to allow reproducible builds (no timestamp or git hash).
-
📣 The Turing Way’s June Community Forum!
Join our second Community Forum of 2026:
🗓 25th June 2026
⏰ 5:00 PM (UK), 6:00 PM (Central Europe), 12:00 PM (Eastern US), 9:00 AM (Western US)🔍 What to expect:
- Insights from our working groups and projects
- Highlights from our steering committee
- A focused discussion on our work with JupyterHub👉 Register here: https://forms.gle/GapNn9Vx8aMz8o6A7
Let’s come together to share, learn, and shape what’s next 🚀
-
📣 The Turing Way’s June Community Forum!
Join our second Community Forum of 2026:
🗓 25th June 2026
⏰ 5:00 PM (UK), 6:00 PM (Central Europe), 12:00 PM (Eastern US), 9:00 AM (Western US)🔍 What to expect:
- Insights from our working groups and projects
- Highlights from our steering committee
- A focused discussion on our work with JupyterHub👉 Register here: https://forms.gle/GapNn9Vx8aMz8o6A7
Let’s come together to share, learn, and shape what’s next 🚀
-
Great to be in #Estonia again! I'm here for the #MobileTartu conference and will be teaching Data Science for Transport Planning. For anyone unable to make it in person but interested in the topic, you can follow the #openaccess materials here: https://tdscience.github.io/tartu26/ #reproducible #datascience
-
Great to be in #Estonia again! I'm here for the #MobileTartu conference and will be teaching Data Science for Transport Planning. For anyone unable to make it in person but interested in the topic, you can follow the #openaccess materials here: https://tdscience.github.io/tartu26/ #reproducible #datascience
-
Learn how to use Go Modules for effective dependency management, version control, and reproducible builds in Go projects. Master best practices for initializing, managing, and securing Go modules in modern development workflows.
#Go Modules #dependency management #semantic versioning #Go 1.22 #reproducible builds
https://dasroot.net/posts/2026/02/go-modules-managing-dependencies/
-
Learn how to use Go Modules for effective dependency management, version control, and reproducible builds in Go projects. Master best practices for initializing, managing, and securing Go modules in modern development workflows.
#Go Modules #dependency management #semantic versioning #Go 1.22 #reproducible builds
https://dasroot.net/posts/2026/02/go-modules-managing-dependencies/
-
Dear opensource developers,
I added an "adoption" list to the repro-env README, if you publish pre-compiled binaries and you successfully adopted it to allow anyone to reproduce them from source code to prove the absense of a build server compromise, you are very welcome to add yourself to the list. 😺
https://github.com/kpcyrd/repro-env#adoption
#reproducible #reproduciblebuilds #supplychainsecurity #rust
-
Dear opensource developers,
I added an "adoption" list to the repro-env README, if you publish pre-compiled binaries and you successfully adopted it to allow anyone to reproduce them from source code to prove the absense of a build server compromise, you are very welcome to add yourself to the list. 😺
https://github.com/kpcyrd/repro-env#adoption
#reproducible #reproduciblebuilds #supplychainsecurity #rust
-
Debian 下一版 (forky) 將會強制要求 reproducible packaging
#build #chain #debian #integrity #linux #package #packaging #reproducible #security #software #trust
-
Debian 下一版 (forky) 將會強制要求 reproducible packaging
#build #chain #debian #integrity #linux #package #packaging #reproducible #security #software #trust
-
Debian 14 will only contain reproducible packages
Reproducible builds are a set of rules that apply to software development, including applications and libraries, to create a verifiable path from the source code to the binary code. It allows you to build the library or the application bit-for-bit. Reproducible builds tend to have great features, including, but not limited to:
- Security and trust: Allows third-parties to make sure that the software hasn’t been altered or tampered with.
- Transparency in development: Makes sure that developers’ code always works the same way.
- Resilience against attacks: Allows third-parties to verify the developers’ software to prevent your projects from being compromised.
Half way through the development cycle of the upcoming Debian release expected in 2027, Debian 14 Forky, the Debian release team has made a decision regarding the reproducible builds effort. Over the years with the Reproducible Builds effort that makes sure that packages get built consistently bit-for-bit, the Debian release team has decided that reproducible builds must be satisfied for the Debian packages to be approved.
A new mandate for Debian 14 Forky states that the reproducible packages, which are packages that build consistently and with confidence bit-for-bit, must be shipped. The migration software will reject the package addition or update if said package no longer becomes reproducible.
The Debian release team has also provided a link that allows you to check the package reproducibility status for the upcoming version of Debian via https://reproduce.debian.net/.
Via: Phoronix
#Debian #Debian14 #Debian14Forky #DebianForky #news #Reproducible #ReproducibleBuilds #ReproduciblePackages #Tech #Technology #update -
Debian 14 will only contain reproducible packages
Reproducible builds are a set of rules that apply to software development, including applications and libraries, to create a verifiable path from the source code to the binary code. It allows you to build the library or the application bit-for-bit. Reproducible builds tend to have great features, including, but not limited to:
- Security and trust: Allows third-parties to make sure that the software hasn’t been altered or tampered with.
- Transparency in development: Makes sure that developers’ code always works the same way.
- Resilience against attacks: Allows third-parties to verify the developers’ software to prevent your projects from being compromised.
Half way through the development cycle of the upcoming Debian release expected in 2027, Debian 14 Forky, the Debian release team has made a decision regarding the reproducible builds effort. Over the years with the Reproducible Builds effort that makes sure that packages get built consistently bit-for-bit, the Debian release team has decided that reproducible builds must be satisfied for the Debian packages to be approved.
A new mandate for Debian 14 Forky states that the reproducible packages, which are packages that build consistently and with confidence bit-for-bit, must be shipped. The migration software will reject the package addition or update if said package no longer becomes reproducible.
The Debian release team has also provided a link that allows you to check the package reproducibility status for the upcoming version of Debian via https://reproduce.debian.net/.
Via: Phoronix
#Debian #Debian14 #Debian14Forky #DebianForky #news #Reproducible #ReproducibleBuilds #ReproduciblePackages #Tech #Technology #update -
💁♂️ Want to know how to make computational research more reusable❓
👍 Join our short course on Supporting the understanding and reuse of #reproducible analysis workflows.📅 Friday, May 8
🕓 8:30-10:15Check out the #NFDI4Earth poster:
From Data Rocks to #FAIR Peaks: With NFDI4Earth’s services towards Harmonized Metadata and User-Centered Tools for Earth System Research.📅 Friday, May 8
🕓 16:15–18:00 -
💁♂️ Want to know how to make computational research more reusable❓
👍 Join our short course on Supporting the understanding and reuse of #reproducible analysis workflows.📅 Friday, May 8
🕓 8:30-10:15Check out the #NFDI4Earth poster:
From Data Rocks to #FAIR Peaks: With NFDI4Earth’s services towards Harmonized Metadata and User-Centered Tools for Earth System Research.📅 Friday, May 8
🕓 16:15–18:00 -
[arch-dev-public] Arch Linux now has a bit-for-bit reproducible Docker image
https://lists.archlinux.org/archives/list/[email protected]/thread/44PW52T547MACXFU5HZ5U7SIPAX3BAXS/
-
[arch-dev-public] Arch Linux now has a bit-for-bit reproducible Docker image
https://lists.archlinux.org/archives/list/[email protected]/thread/44PW52T547MACXFU5HZ5U7SIPAX3BAXS/
-
@nickbearded i think older cheap pc platform is probably better value once prices crash and they will eventually selling the sw but also the hw you know it runs really well on is a key uniter point and then you have the total package, repeat for pihole, open source pineapple, kismet, ssl/tls proxy, squid caching proxy, web server and lamp stack, etc dedicated monitoring and analytics is another, central logging is another #bashcore modules #extensions #plugins #sbom #reproducible builds #ansible playbooks
-
@nickbearded i think older cheap pc platform is probably better value once prices crash and they will eventually selling the sw but also the hw you know it runs really well on is a key uniter point and then you have the total package, repeat for pihole, open source pineapple, kismet, ssl/tls proxy, squid caching proxy, web server and lamp stack, etc dedicated monitoring and analytics is another, central logging is another #bashcore modules #extensions #plugins #sbom #reproducible builds #ansible playbooks
-
@besendorf
> #FDroid is an App Store that does not allow developers to sign their own appsWhy lie though? Developers can always sign their own #FLOSS verified #reproducible built apps, we host almost 1000 of those.
Many developers choose not to submit to #Google, hence no matter if they sign or not, it does not matter if you download via Github, Obtainium or Accrescent, their apps won't be installable anyway.
If the #keepandroidopen site does not make this clear, please say so.
-
@besendorf
> #FDroid is an App Store that does not allow developers to sign their own appsWhy lie though? Developers can always sign their own #FLOSS verified #reproducible built apps, we host almost 1000 of those.
Many developers choose not to submit to #Google, hence no matter if they sign or not, it does not matter if you download via Github, Obtainium or Accrescent, their apps won't be installable anyway.
If the #keepandroidopen site does not make this clear, please say so.
-
Testing Fountain Pen Inks
Question: has anyone done extensive testing on any fountain pen inks?
I don’t mean the standard Mountain of Ink style, sample card, writing sample, etc. visual comparisons. (I’d like to call this subjective measurement, but chromatographic measurements aren’t subjective if done in a controlled manner.)
I am thinking more objective testing: viscosity, density, flow rate @ a given line width, etc.
I was thinking about this type of testing tonight, and it seems to me that there are a lot of factors that would need to be controlled: temperature, air pressure / barometric pressure, nib consistency, friction (aka heat), etc. Given what I was thinking this could be an interesting experiment, if someone wanted to undertake controlling all the variables, and implementing the controls necessary for consistent results.
-
From #ContainerDays London to Barcelona: big thanks to the #DevOps BCN #Meetup for having me!
I revisited my talk on moving beyond imperative #Docker builds toward #Declarative, #Reproducible and #Secure #OCI #Containers with #Nix:
Hermetic, network-isolated builds, clearer dependency graphs, better layer reuse across images, and a stronger supply-chain story (#SBOM + #SLSA provenance).You can find the slides, transcript and more information at my website: https://www.arik-grahl.de/talks/devops-bcn-february-2026
-
What a great first day at #ContainerDays London.
Looking forward to see you tomorrow at 09:40 at my talk "Beyond #Docker Builds: #Declarative, #Reproducible and #Secure #OCI #Containers with #Nix". -
What a great first day at #ContainerDays London.
Looking forward to see you tomorrow at 09:40 at my talk "Beyond #Docker Builds: #Declarative, #Reproducible and #Secure #OCI #Containers with #Nix". -
Flathub now testing for reproducibility and the Reproducibility team helping identify software projects that will fail to build in 2038 when the UNIX Epoch will no longer fit into a signed 32-bit integer are two of several highlights in January's Reproducible Builds report at https://reproducible-builds.org/reports/2026-01/
#reproducible #reproduciblebuilds -
After dithered images my next obsession is 'workflow managers' 🎈Yesterday night I binged some videos from #riffomonas about #reproducible research (CC248 to CC256). He used #snakemake , which looked very nice! Now I also looked up #nextflow It looks fierce!
I am going to learn one of them, and snakemake currently feels more approachable... But what do you think? Any advice? I want to use it in my #bioinformatics #pipeline s; I mainly write in R
#rstats #tidyverse
https://riffomonas.org -
After dithered images my next obsession is 'workflow managers' 🎈Yesterday night I binged some videos from #riffomonas about #reproducible research (CC248 to CC256). He used #snakemake , which looked very nice! Now I also looked up #nextflow It looks fierce!
I am going to learn one of them, and snakemake currently feels more approachable... But what do you think? Any advice? I want to use it in my #bioinformatics #pipeline s; I mainly write in R
#rstats #tidyverse
https://riffomonas.org -
The recording of my #fosdem talk is now available!
https://fosdem.org/2026/schedule/event/RAUUL9-reproducible-xfs-images/
-
The recording of my #fosdem talk is now available!
https://fosdem.org/2026/schedule/event/RAUUL9-reproducible-xfs-images/
-
@momo hi!
Yes you can see what's available as a package locally using the 'guix search' command or the package browser:
https://packages.guix.gnu.org/search/?query=clang
In Guix 'substitutes' is the term we use for #nix precompiled binaries. Most people use them. You can check if a substitute is available like this:
guix weather --substitute-urls=https://ci.guix.gnu.org --system=x86_64-linux [email protected]
The installer asks the user if they want to enable substitutes so it's easy to set-up.
The manual has more
details on ways to enable other channels and substitute servers. It also covers how to check a build against multiple substitute servers for #reproducible software and potentially a #security #supplychain indication. -
Interested in #declarative computing, #linux or #reproducible software? #Guix is going to be at #FOSDEM for lots of goodness on #guile #scheme and the #nix approach to packaging #FreeSoftware - check out the talks various people are giving:
https://guix.gnu.org/blog/2026/meet-guix-at-fosdem-2026/
As usual the Declarative and Minimalist computing track will have lots of interesting #lisp #spritely and #nrepl talks!