3 ms·
In short: author of Moq adds the dependency SponsorLink, which is an obfuscated closed source library that collects and uploads data from the developer's machin
by rvdginste 3y ago
In short: author of Moq adds the dependency SponsorLink, which is an obfuscated closed source library that collects and uploads data from the developer's machine when the developer builds a project that includes a dependency on Moq. The collected data happens to be the hash of the globally configured git email address of the user at this point in time.
I simply cannot understand why someone, especially the author, would think this is a good idea. How can you not predict this will create a backlash and push users away?
- theshrike79 3y agoBut he asked his friends and they thought it was a good idea: https://www.cazzulino.com/sponsorlink.html https://www.cazzulino.com/sponsorlink.html > I discussed this approach with fellow developers and it sounded unanimously reasonable. Who would think that entering a GDPR/CCPA hellhole of PII collection is "reasonable"?
- kjs3 3y ago"I asked this one guy who's just as ignorant as me and he thought it was totally cool, so no way you should have a problem with it".
- tinus_hn 3y agoThe reason is the same reason developers include Bonzi Buddy and similar malware with their software: Because it earns money. Money talks and bs walks.