This week I’m joined by Peer Richelsen, co-founder of Cal.com. What if nearly all of open supply repositories are already compromised and we simply don’t understand it but? That’s the speculation Peer brings to the desk this week. We dig into how AI has flattened the data graph to the purpose {that a} 16-year-old can vibe hack an influence station simply as simply as their mother can vibe code an iOS app, why the reporting tradition that has stored open supply secure all these years is collapsing below AI generated noise, Cal.com’s transfer to fork its personal codebase and take the delicate elements personal, and the attention opening actuality that delivery “$1 of AI tokens for pennies on the greenback” is now a typical startup enterprise mannequin.
Changelog++ members save 10 minutes on this episode as a result of they made the adverts disappear. Be part of right this moment!
Sponsors:
- Coder.com – Safe environments the place devs and brokers work in parallel. Open by design. Safe by default.
- Buildkite – You deserve higher CI. Buildkite is engineered for frontier scale and trusted by the groups setting the tempo.
- WorkOS – Auth for CLI with AuthKit from WorkOS — Deliver safe browser-based login to your terminal apps utilizing the OAuth Machine Stream, with the identical polished AuthKit expertise plus SSO, MFA, and passkeys. Study extra at WorkOS.com and AuthKit.com
- Fly.io – The house of Changelog.com — Deploy your apps near your customers — international Anycast load-balancing, zero-configuration personal networking, {hardware} isolation, and on the spot WireGuard VPN connections. Push-button deployments that scale to 1000’s of cases. Take a look at the speedrun to get began in minutes.
That includes:
- Peer Richelsen – Web site, GitHub, LinkedIn, X
- Adam Stacoviak – Web site, GitHub, LinkedIn, Mastodon, X
Present Notes:
Editorial disclosure: Adam states within the episode that he’s a small seed investor in Cal.com.
Cal.com and Cal.diy
- Cal.com goes closed supply — right here’s why
- Shifting to closed-source: the technical modifications
- Cal.diy on GitHub
- Cal.diy contributing information
- Cal.com
Open supply, brokers, and contribution workflows
- Swamp Membership
- OpenClaw
- Mitchell Hashimoto: Vibing a Non-Trivial Ghostty Function
- GitHub Agentic Workflows
- GitHub issue-intent, rationale, confidence, and approvals
AI-assisted safety
- Mozilla: Hardening Firefox with Anthropic’s Purple Group
- Mozilla: The zero-days are numbered
- Anthropic and Mozilla’s Firefox safety collaboration
- Subsequent.js safety advisories
- LiteLLM situation: malicious package deal and credential stealer
One thing lacking or damaged? PRs welcome!

