







The trusted directory and reference library for Ethereum public goods funding. Discover funding mechanisms, platforms, and learn what works.

A method for giving credit to organizations that contribute code to Open Source
By tracking organizational contributions in Git commits, we can give organizations more tangible reasons to fund open source and help sustain it over time.
gitwallet.co
Find information, resources and relevant links for gitwallet.co. This domain may be for sale.
gitwallet.co
Find information, resources and relevant links for gitwallet.co. This domain may be for sale.
BackYourStack: Discover the Open Source projects you are using and need financial support.
BackYourStack has been re-imagined as Ecosystem Funds. Find out more at funds.ecosyste.ms.

Keytrace — One identity, many proofs.
Link your GitHub, domain, and other accounts to your internet handle. Cryptographically signed, user-owned, and portable.
GitHub - hickford/git-credential-oauth: A Git credential helper that securely authenticates to GitHub, GitLab and BitBucket using OAuth.
A Git credential helper that securely authenticates to GitHub, GitLab and BitBucket using OAuth. - hickford/git-credential-oauth
Inside GitHub's Fake Star Economy
Six million fake stars, $0.06 per click, and a VC funding pipeline that treats GitHub popularity as proof of traction. We ran our own analysis on 20 repos and found the fingerprints.


GitHub
GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub
GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub MCP Exploited: Accessing private repositories via MCP
We showcase a critical vulnerability with the official GitHub MCP server, allowing attackers to access private repository data. The vulnerability is among the first discovered by Invariant's security analyzer for detecting toxic agent flows.

Investigating unauthorized access to GitHub-owned repositories
If any impact is discovered, customers will be notified via established incident response and notification channels.

Open source is sometimes played within the magic circle. When money enters, it becomes a different game. When switching from one game to another, participants often feel betrayed. So, know which one you want to play and be clear about the rules! blog.zaratan.world/p/the-magic-circle
The Magic Circle
blog.zaratan.worldGitHub says individuals and orgs have invested $100M+ in open source maintainers and projects via GitHub Sponsors since 2019, with $10M in the past five months (Stephanie Lincoln/The GitHub Blog) github.blog/open-source/maintainers/100-m… | techmeme.com/260721/p3#a260721p3
Playing with the idea of ATProto as a marketplace for compute github.com/publicdomainrelay/compute-con…
Compute Contracts - Blog
john.leaflet.pubJohn
Got a little reverse proxy over ssh auth'd via ATmosphere account going: fedproxy.com