Want free VS Code? Build it from source
github.com
github.com
This goes back to the older GNU GPL vs BSD/MIT/Apache and how each group will call the other group permissive/restrictive. The spirit of free software from the 90s/00s, specifically that of the FSF/Linux communities, isn't really reflected anymore today.
Today most open source projects are commercially supported. I wrote a longer article detailing this a while back:
https://penguindreams.org/blog/the-philosophy-of-open-source...
Does it matter? There are binary versions of open source and Free Software programs that send telemetry as well.
Open source only means that the source is available. Free Software only means that that the source must be provided to the user if you distribute a binary of the program. THAT'S IT. There are no other guarantees of privacy or freedoms from telemetry and data gathering. That's not what the licenses are about. People need to stop assuming that the licenses say something more than what they state.
For comparison, look at Chrome vs Chromium. Similar project structure, but the branding and project communication are much better. Everybody (who would care) is readily aware of both versions and the difference between the two, and the fact that Chrome isn't fully open-source.
FUD about "obscured telemetry" isn't worth much here either: They specifically have a telemetry URL in the configuration file, and they not only specify that they set it in the thread, but they instruct you on how you can verify the configuration's contents on the proprietary version. Telemetry exists in VSCode, but the code is open source, and you can inspect it to your heart's content.
Here:
Here's how it works. When you build from the vscode repository, you can configure the resulting tool by customizing the product.json file. This file controls things like the Gallery endpoints, “Send-a-Smile” endpoints, telemetry endpoints, logos, names, and more.
When we build Visual Studio Code, we do exactly this. We clone the vscode repository, we lay down a customized product.json that has Microsoft specific functionality (telemetry, gallery, logo, etc.), and then produce a build that we release under our license.
And:
You can look at the product.json that is installed with the Visual Studio Code product to see what we configure.
Willing to bet if the product.json is easily visible in the compiled version, you can even adjust it to work like the open source version if you'd like, by removing the telemetry URL.
Did they? Was that their intent - to obscure? If Microsoft “worked so hard” then it should be easy to point to evidence.
I'm a career JavaScript developer and I didn't know there was a separate, "truly open source" version.
It kind of seems like because you didn’t know something, it implies that someone is engaging in intentional, malicious behavior.
The point I was trying to make is that I myself am immersed in the target community for this software, yet the messaging was not clear to me. I use React, I've worked with Electron, Atom is my go-to editor. I am VSCode's target user, and I did not remotely get the message. That suggests their messaging was either really bad, or intentionally misleading.
If you download VS Code from https://code.visualstudio.com/, you'll be presented with this license: https://code.visualstudio.com/License/, which reads more like a somewhat permissive license to proprietary software than it does as an open-source license.
If you, instead, clone the git repo at https://github.com/Microsoft/vscode, you'll find that the repo is under an MIT license (https://github.com/Microsoft/vscode/blob/master/LICENSE.txt)
Hence the title: It feels off (I can see why people would call it "deceptive") that code.visualstudio.com offers something for download that is described as Open Source but is not licensed under a standard Open Source license, and it's definitely bewildering that they would do that while simultaneously making the source code available under the MIT license.
Imagine how ridiculous it would be to say RHEL was not Open Source because you can't distribute your binaries how you want - despite all the source being available under OSD licenses. It's the same claim the bug reporter is making.
There's presumably some difference between the Microsoft pre-builds and whatever you get from source. Apparently at the very least, the contents of product.json (https://github.com/Microsoft/vscode/blob/master/product.json...) defining names are different.
edit: binaries are under a restrictive license and code is not. So definitely don't use those binaries, as they are likely riddled with telemetry crap that isn't in the open source version.
The issue has been solved and, currently, Debian has renamed its package back to Firefox.
On top of it, this has probably nothing to do with this topic. (copyrights and branding being very different topics)
For example, sass-loader is/was dependent on node-sass which is a binary install. Lots of file utilities on NPM are similarly reliant on C code that may only compile on your machine correctly if you are lucky.
> The main landing page https://code.visualstudio.com for Visual Studio Code currently does the following:
> it states the offered version is "Free. Open Source." which suggests free software to anyone who knows what the difference of "free" and "open-source" in the common word use is
> Below it immediately offers download buttons for something licensed under https://code.visualstudio.com/License/ which is absolutely not free software in any modern definition of the word.
The telemetry extension is open source too: https://github.com/Microsoft/vscode-extension-telemetry
And you can unpack the source for the distributed electron bundle yourself: https://medium.com/how-to-electron/how-to-get-source-code-of...
Seems fair play to me.
[1] https://github.com/Microsoft/vscode/issues/60#issuecomment-1...
I don't really know how to interpret this file, but the copy in VS Code 1.23.1 for Mac has 644 lines, compared to 23 in the repo.
You'd want to compare a fresh install VSCode vs fresh install self build.
Although, upon looking at the history of the product.json file[1], it seems code to fulfill that requirement was once added to the open source version, and then quickly removed.
0: https://github.com/Microsoft/vscode-wiki/pull/30#issuecommen...
1: https://github.com/Microsoft/vscode/commits/master/product.j...
Edit: should change binaries to MIT license as well
Edit: the binaries have a restrictive license, the code has an MIT license. How stupid.
That would be cleaner, but I'm not sure how much users really care about this in the end. If this were clarified, would they do anything different?
This person obviously just want something to be angry at, which is typical for free software advocates. Instead of complaining that other people do not adhere to what you believe, go create it yourself. You do not own the word and if you're so for freedom, why are you so against others not making the same priorities?
It makes so little sense to me.
Now that they are toying with open source, it's been fun seeing how little power Microsoft has to deal with public outcries on open platforms like GitHub. Alas, we will see if it stays that way now that they have bought the damn platform. Still, it is our responsibility to steer Microsoft in the right direction, and not tolerate anything even slightly bad if we have the power to complain about it now that they care about developer PR (to the tune of $5 billion).
I'm curious what "dealing with it" would entail. From Microsoft's perspective, I might imagine that there doesn't seem to be anything to deal with. There certainly was a notable internet-wide spit take when the news broke. But it's all but died out, and I wouldn't be surprised if there wasn't a measurable effect on numbers.
How does one distinguish that from revenge?