The question posed is not "how hard" but "how many times and how hard". You can't cook a chicken in one hit because that amount of heat requires a large amount of force which then obliterates the chicken. There's a video on youtube that tries to answer this question.
what's lame about it? I read the comments specifically for alternative tools. Often times, commenters provide links to other tools and nobody has ever complained...until you came along
You're purposefully being disingenuous. README me says "If you're having issues with v2 outputs use the latest v1". That's a big "If". How about If it's not ready for production use, say so explicitly in the README - not maybe use it but maybe don't use it.
Socket.dev states "Since at least March 2023". RubyGems says "Our team first detected this activity on July 20th". This attack has ran for almost 5 months undetected. I wouldn't feel reassured at all.
You're right. Neither of these things are proof of honesty but to be clear, I would never work on a project that collects or misuses user data. This isn’t really a matter of “taking my word for it,” either. If anything like that were happening, it would be visible in the codebase, which anyone can look through (and many have). The app simply can’t transmit data without explicit instructions in the code.
Audacity does not store any personal information of any kind, and never did.
It's not quite that simple. While the codebase is open source, the website could provide binaries that were not built from the open source code (e.g by patching to add tracking). So it is necessary to trust Muse Group if you're installing from the recommended source (which the vast majority of users will be doing).
Even if there is no tracking at the moment, there is always the worry that Muse Group will "go bad" and start adding tracking, or make the later versions closed-source, etc. One could argue that it's still better than a fully closed source company - sure - but what happens to Audacity/MuseScore then?
Reliance on a single company developing code has huge benefits: as discussed in this video, the centralisation really helped with vision and planning; but it does make me slightly uncomfortable. The development is no longer "open", in the sense of community driven. The application now has a different goal (to make money for Muse Group), not necessarily aligned with what users want/need. It cuts to the core of what we actually want from free software - lack of profit motive? transparency? Of what exactly?
It cuts to the core of what we actually want from free software
Mostly people want free as in beer and actual users of Audacity use Audacity because they want to process audio.
it does make me slightly uncomfortable
Then you have a choice to make. There are many other audio software packages with a variety of tradeoffs to choose from because everything is not for everyone.
make money for Muse Group
To me the strategy appears to be that strengthening the two open source projects (MuseScore and Audacity) enhances their many commercial offerings…for example a stronger MuseScore is better for Hal Leonard Publishing particularly in light of the demise of Finale and a better Audacity code base is a good way to develop the audio code that other Muse Group products need anyway.
And for what my pure speculation is worth, the purchase of the trademarks for Audacity and MuseScore could rationally contain conditions underwhich Muse Group would have to sell those trademarks back to the original owners.
But even absent such conditions of sale, the original trademark owners likely trusted Muse Group to do the right thing (and if the sale was just about money, then the original trademark owners were already mercenary themselves and so whatever trust you previously had was already misplaced).
While the codebase is open source, the website could provide binaries that were not built from the open source code (e.g by patching to add tracking).
yeah I think audacity just got dinged by its association with musescore, but its probably a good idea to watch out who you associate with. I like audacity but I try to stick with the earliest version that still runs, my current version is like 5 years old or something and it does what I need.
He's probably aware of all the issues then, it'd thus be ok to just hide my comment, I don't mind. I will say that everytime I read about the musescore/audacity/guitar-whatever-it-is stuff it makes me want to find an earlier version of audacity, I might run out of versions at some point haha
Costs go up on paper because now they need to charge people more while pretending they are starving. Costs in all other industries go down with mergers.
reply