GitHub user sends notification to 400k users
github.com
github.com
"Thank you everyone for contributing to our shared mission. When you are done with your work today, please delete all the data from your machines. Hope we see each other again soon!"
Slack gave me a dire warning that my message would send notifications to so many people across so many time zones. This didn't surprise me because attendees came from various countries for the event. So I dismissed it.
But I had accidentally sent it to my company's Slack organization instead of the hackathon-specific one. I didn't realize it until a co-worker sent me a private message asking why I had just tried to fire everyone at our company.
I try to not mix work and personal content on the same laptop, I’ve seen too many glitches (although usually not quite that embarrassing). Slack has been my one exception (although only on my phone). Thanks for the valuable reminder.
It's kind of jaw dropping to me at how this is still not the norm and how people gratuitously mix personal and work content on the same devices, both mobile and desktop.
There was a teensy-weensy little caveat: Google IT could wipe your personal device at any time!
No thanks.
Everyone has their own level of comfort, of course. I've worked for two employers now whom I've given the power to erase my personal iPhone in exchange for the convenience of not needing to lug around a second phone.
Disclosure: I work at Google; opinions are my own.
Apparently you would also be surprised by how common it is to use a home printer, a home wifi access point, etc. and have IoT devices in the network. Corporate firewalls and scanners only protect against unauthorised connections and known threats; zero-day exploits can still be much more effective from a local network.
When I have a company issued laptop I use two machines. When I don't, then I use two accounts on the same machine. Most Linux distros even allow fast account switching in different virtual consoles. I use a different background and panel color for the personal and work environments. It's not a perfect solution, but neither is separate devices.
My work and hobby life is completely entwined. I have one powerful machine and micromanage my time by switching between windows of work and leisure.
Add the fact that I do coding as work and video editing as a hobby which both need powerful machines, and it would be very stupid, unmanageable, and inconvenient to buy two MacBooks.
That's just impossible.
I also do a lot of 4K video editing both as a hobby and occasionaly for work.
I also switch between tasks a lot daily.
I am mobile.
Yeah it would be perfectly economic, riskless, convenient, and definitely manageable to carry two fully specced MacBook Pros in my bag.
Not even jumping into the software licensing territory.
I have a set of different organizations in Slack, but I used to keep getting them mixed up (embarrassing).
What I did, was assign a different color theme to each org (on Mac. Doesn’t work on iOS). Helps me to differentiate quickly.
Keep personal stuff on personal devices, and never use personal devices for work either.
But yes, we’ve seen from a number of US politicians how bad of an idea it is to mix personal and work on one device/account. Usually email.
It is annoying having two phones if work isn’t paying.
That said ... employment is at-will, so there are no real rules here. It's not that different from if you sign up to be an Uber driver you're expected to have a car and a phone that you are willing to use for work, or you can't take the job. Nobody says it has to be the same device as the one you use for your personal email, it's just that you are expected to have a device for the job. So nothing legally prevents them from requiring you to have a device with the company apps on it, in return for you accepting some hopefully big enough salary.
For software engineering, if the salary is on the low end of market I expect work to buy me a work phone, if they require me to install any apps. If salary is on the high end, then I wouldn't fuss about it too much, I could just buy myself a separate personal phone for work with the pile of extra cash, but them buying me one would still be a nice, appreciated gesture.
One for work, the other one for side projects, personal browser, courses, learning, etc.
As long as you're not doing anything illegal and are running on a non Administrator account, I think it is a good compromise vs having to carry a second laptop.
No, they don't. At my company we buy our own laptops, and we expense them. There is no VPN and no company owned software installed. And most of what we do is Open Source anyway.
> specifically allow you to in some sort of legal contract that says something along the lines of them not owning everything you do on that account
Not a problem, my side projects are just for learning purposes. They're open source, and most of them end up abandoned. I'm not running a side business on a company laptop, so they can own everything if they want, I'm fine with that.
As more context, I do remember thinking, "that X number seems higher than I would expect, but maybe we had a lot of folks who signed up for the event that didn't show." I worked at a small company so the size of the company was on the same order of magnitude as the number of invitees to the event (~100). I explained away the Y time zones because I knew some people traveled internationally. I was also operating on very little sleep, so that probably didn't help.
I can live with the random message that has nothing to do with me, but having to delete an endless stream of messages because so many people felt the need to reply already knowing that it would go out to everyone is really annoying
https://techcommunity.microsoft.com/t5/exchange-team-blog/re...
The graduate office had some sort of mailing list which included all PhD students (or maybe even graduate students). There was maybe one mail a year to this list.
At some point someone replied to the list (don't ask why the allowed everyone to post), they want to be unsubscribe, trigger a torrent of emails of people wanting to unsubscribe, people telling people to use the link on the email, people asking why they get this email, others telling everyone to stop replying (the irony). It was a study of human psychology.
The whole thing lasted a week, I think in the end somebody was competent enough to restrict who could write to the list or maybe they just nuked the list.
https://techcommunity.microsoft.com/t5/exchange-team-blog/me...
The casual vandalism of hundreds of thousands of people’s time and attention is absolutely mind-boggling to me. I saw similar things at large (50k+ employees) companies when some reply-all chain got started — people who clearly knew better, replying just for the lulz.
If it were up to me, I would have fired them immediately. Nobody has the right to conscript other people into their personal sense of humor.
It's annoying to get useless email, but 95% of the non-spam email I receive everyday is useless crap: T&C changes, some company newsletter that somehow I never unsubscribed to, other notifications deemed so important I cannot unsubscribe to, a GitHub thread I subscribed to years ago and now has a very active discussion.
It's not like every single person received 400k emails in one go, it's 400k people receiving those 10 or 20 messages from the same thread over an hour. Annoying, waste of time, but not unheard of.
I’d also fire someone who “trolled” the company by spraying graffiti on the side of the building. Trivial to remove or even ignore, yes, but the unprofessional and juvenile mindset, taking pleasure in annoying everyone else, is enraging all by itself even if no practical harm was done.
This is random people on the Internet that probably didn't even know they were part of that notification group, as explained elsewhere in this thread, and then joked around a little longer than they should have. It might not been immediately clear to some that each of their responses was to be sent to all 400k.
Not at all the same crime as you paint it to be. In any case, there is no one that's fireable here, so no need to try looking for some kind of righteous justice here.
>the unprofessional and juvenile mindset, taking pleasure in annoying everyone else, is enraging all by itself even if no practical harm was done.
Working at your company sounds hellish.
That sounds a bit harsh. As a user of FOSS mailing lists I don't even think it is strange to send a mail to everyone.
It is a process issue where mailing lists are used for one way coms but still are writable for all.
Edit: What great timing—someone just opened a new issue with the same tag. This needs to be fixed on GitHub’s end.
I’d just fire everyone with a sense of humor, that’ll show them.
I’ve heard some people spend whole minutes setting up a joke for the punchline. How many billions of dollars does that cost the economy each year one has to wonder.
Outright theft of wages if you ask me!
[1] https://arstechnica.com/information-technology/2016/11/nhs-e...
Oh and one has even posted a "goatse" image there ...
I never commented, but I received an email for every comment in that issue. The email queue was so backed up that I was receiving emails for quite some time after the issue was closed.
And then the news broke out and that drove even more than 1% to check out the drama. Maybe even had some people sign up for Epic just to check it out.
I doubt it. If you look at the PR, it does not add any value at all, but introduces a mistake ("for our repositories"), plus the commit message is kind of strange.
Unfortunately the entire interview process is why I usually try to hire former co-workers.
As someone who works with a lot of junior devs in India, I know the competition for early career roles in tech is immense, and so folks look at "open source contribution" as a "brownie point" to add in your resume. Having a "contributed to Unreal Engine" sounds great on paper and 3/5 companies would just take it at face-value and move this guy's resume higher up the stack.
And we have enough seasoned devs who try to be helpful to these junior folks and point out that the easiest way to get started in OSS is to provide/fix documentation for OSS since it's usually low barrier to entry + usually lacking in most OSS repos (The people praising the rr documentation is a great anecdote). But looks like the "quality" bit is lost in translation somewhere.
And Hacktoberfest, before those incidents, was something for real OSS contributors. Not for spammers wanting a free T-shirt.
Blame the channels on Youtube that are teaching people to make inane contributions to game the system, the people spreading lies like "you need OSS contributions to get a job" and finally the people doing it. This is the reason we can't have nice things.
The better action would be to report the user as spam
it’s just plain neediness
Fun fact, Gmail caps threads at 100 messages. So I had a full page of 100 email long threads in gmail on my phone.
I needed to set up a one-to-one Teams meeting with a colleague, so I hit the 'Schedule meeting' button, added my colleague as an attendee, filled in the meeting name, date and time.
I saw that Teams was asking me to select a channel. I didn't realise this was an optional field, so I just selected the General channel in my department's Teams channel. It seemed the most appropriate. And so I sent out the meeting invite, thinking it would only go to one colleague (the only one I had selected as a participant).
I realised something was wrong a few moments later when I started receiving out-of-office responses from people I didn't recognise. I checked the meeting invite in my sent folder and realised it had gone out to the entire department. Hundreds of people, including all the senior managers and even the CTO!
Turns out that when you specify a channel when creating a meeting in Teams, it also sends the meeting invite to everybody who has access to that channel which, in this case, was the entire department. There was no indication that this would happen, however.
Still, I learnt my lesson. Now I know not to select a channel when creating a Teams meeting.
if they labeled this as “Invite members of channels” this would have been avoided
It's trolling and childish trolling at that.
I have no idea why the user is even being mentioned in this headline. I haven't used GitHub in a while, and am unfamiliar with orgs and subgroups, but tagging a developer subgroup on a PR seems...a reasonable thing for a new contributor to do? How is it their fault that the developer subgroup has been hijacked by this organization to mean "Anyone who has ever signed the Terms of Service To View Our Code"?
The correct thing for Epic Games to do here would be to rename the group to `@EpicGames/terms-of-service-signatories`, and restrict `@EpicGames/developers` to people who have requested access to open a PR. Assuming that people should magically know not to mention `@EpicGames/developers` in their PRs because Epic is doing some ToS shenanigans is preposterous.
I guess I'll be looking carefully at mentions the next time I have to use this social network [2] masquerading poorly as a code review tool to submit a pull request.
----------------------------------------
[1] https://github.com/EpicGames/Signup/pull/24#issuecomment-114...
[2] Looking at the profile of the contributor making the PR tells me that GitHub has apparently decided to let their users independently rediscover the experience of SuperWall on Facebook circa 2007.
There should be no way to send any non-premoderated information to 400k people (from the system that has some trust and is unlikely to be filtered) - “spam” is the most innocent thing that might happen. It's just a fly you should ignore.
Political, religious, and radical extremist groups could use it for a much more dangerous impact. If it so incredibly easy to send a message to 400k users, malicious actors could find some more sophisticated ways to get an audience of millions of users for their needs.
Also, I'm sure Github has spam filters itself, so obvious attempts at ads may not even make it to the PR discussion.
Now the dude who posted goatse and ruined the whole thing should be completely banned from Github. I guess I see why image uploads were restricted for so long there.
I was wondering why on earth epic has 400k github accouns. This explains it.
Oh, but hijacking developer subgroups for almost anything is totally kosher in Github. They do it themselves. That's how you get into some of their private betas.
At mentioning all admins and developers in general on a PR is bad etiquette. Look at the title of the PR here as well. "Merge ASAP"? What kind of attitude is that? Github should have some controls on notifications as should Epic games in how they manage their groups, but this highlights bad etiquette.
I'm not trying to be argumentative, but why even is this? If you're trying to perform a pull request, is it not logical to ping the people who approve those requests?
Also, can you give an example of how one would perform a PR and follow this unwritten etiquette? I have only made a total of something like to PRs in GitHub, but I would like to stay on peoples good sides, if I can help it. I had no idea this was seen as some kind of obscenity.
Now imagine, everyone at Netflix made PRs the same way this author did. How do we make sure there is not a lot of noise? How do we collaborate well together?
I don't think you are being argumentative. I definitely think Epic games is at fault here, and that this points to issues in how they've setup teams and lack of guard rails on Github's part in terms of spam protection. But separate to this, the author's behaviour is not what I would want at a workplace I am at.
I think this is highly dependent on your org. Usually you should look at previously merged PRs and follow what they were doing, if they mention admins/developers then it should be fine to do so.
I agree that with the admins ping and "merge ASAP" it seems that this particular PR is kind of terrible from an etiquette and usefulness perspective, but PRs with little usefulness and bad etiquette don't make it to the top of HN every day.
I am merely saying that the "sending notifications to 400k" people is a side effect that is entirely Epic Games' fault, not the author's.
The kid is barely 18. The emotion and stress resulting from mistakenly sending a notification to 400,000 is likely overwhelming. Now his real name is going to stay at the center of the internet for a while thanks to being 1st on HN. I would definitely not have coped well with that much internet attention at his age. Some Github replies are more immature than the initial action and I hope he does not receive any threat.
I hope the Epic developers reach out to him nicely with constructive feedback and maybe a thanks for his well-meaning PR.
You should ask Sumit Bhatia about that. ;)
https://www.reddit.com/r/uwaterloo/comments/qstmls/sumit_bha...
I see you're not familiar with Indian-English. What he said sounds quite "reasonable" (if not a bit unnecessarily, but understandably urgent) to someone like me (am Indian).
Understandable is in the Indian context. Generally a lot of things in India are slow/delayed so it's pretty common for people to want everything "fast" (which is probably "regular speed" in the US etc). I agree the content is hardly urgent, but for an Indian everything is urgent.
Huh? I don't think it's "the kid"'s fault that some random organization is using GitHub orgs as a proxy to get people to sign their Terms of Service. If the org or group is on GitHub, it's only a matter of time before someone is going to mention it.
The emotion and stress should be on the org admins who thought that asking every user who signs their ToS to a group called `developers` would be a good idea.
Bold of you to assume that he can even comprehend this.
But tagging half a million people was clearly an accident that should be better protected against.
Look at the actual contents of the PR. This wasn't an attempt to contribute anything remotely meaningful. It's not quite vandalism yet either, but only because it didn't do any harm.
I got the email. And about 20+ responses to that email.
Every person who replies to that issue triggers another 400k emails. Personally, my email client is crashing.
EpicGames, as a GitHub org is an outlier, it's basically an SSO for Unreal Engine. I forgot I was even a member of it.
[1] https://web.mit.edu/~simsong/www/ugh.pdf page 85
To: soandso@domain.tld Subject: blah Action: block
the real issue here is shitty projects from shitty companies.
When you send at the volume someone like GitHub sends, you will always see peaks and valleys in your sending patterns that are much larger than 400k. It might cause an issue if they were already under peak load, but even then it would just take a bit longer.
I love me a good bedlam drama. One of the commenters on the PR had the best take: “I just wasted 2 minutes of my life I'll never get back.” The ones with the scorched earth PUNISH HIM attitude need to chill the hell out.
Doesn't that just add to the comedy?
Yeah, being drama queens.
> Every person who replies to that issue triggers another 400k emails. Personally, my email client is crashing.
Your email client only received 20 messages; why is it crashing? The very long To: header?
That would be a massive privacy breach, and people here would be making a lot more noise about such a large email database being leaked.
This already happened with github & epic & unreal when it first did this organisation setup. So, given no solution appeared after exact same incident, I wouldn't hold my breath
Throw that thing in the bin. A human printing emails and placing them on your desk could handle that workload.
Best thing I've read today only after the email story.
What everyone didn't know was that when you were granted access to this entrance, you were also added to the "bike storage mailing list". Long story short, at some point someone accidentally sent a message to the entire mailing list of ~100k people, which kicked off a long string off people reply-all'ing asking to be taken off said mailing list ("I don't even own a bike why am I on this mailing list"), which caused even more people to reply ("stop reply-all'ing for the love of god!"). I think there were 500 emails in my inbox from that by the end of the day.
The question is - why doesn't the platform warn you that you're going to send notifications to a large number of people in the same way that many email clients do?
> This program posts news to thousands of machines throughout the entire civilized world. Your message will cost the net hundreds if not thousands of dollars to send everywhere. Please be sure you know what you are doing.
Also the poster is essentially a kid. I would hold my judgement before flaming him fwiw.
Not to mention it's just a notification, who really cares unless it happens all the time which is just more of an argument to fix the platform behaviour. Some people are so high and mighty.
Don't blame the individual for an innocent mistake (we don't know if he knew that it would trigger 400k notifications). He is young and might be inexperienced, so we should be forgiving.
Think about why the system is set up in a way that an untrusted contributor can trigger so many notifications with a PR that is of little value.
That is a much harder problem to solve, so that is why some people go to the easy solution ("ban him, he is an evil bad person, gross social misconduct").
The real question is why is it allowed to send at all? Depending on human judgment to stop spamming is a poor decision because bad actors don't care. I discovered this and GitHub s hilariously terrible setup a week ago when another large repository became a spam source and GitHub offered no easy way to unsubscribe.
Github just needs to rethink how tagging all users works and a way to prevent this.
The idea is that nobody is going to get a million dollars in revenue from a game without being visible enough that Epic's receivables department can bill you. So they can ignore the 99.99% who download it and never get a hit.
I'm amazed that 400,000 people have downloaded Unreal Engine, though. It's really complicated, hard to use, takes hours to compile, and is only worth the trouble if you're making an elaborate 3D game. Not that many people do that.
I suspect the "real" reason for the current rigamarole is to get your details for their marketing team.
https://docs.unrealengine.com/4.27/en-US/SharingAndReleasing...
It’s different from “source available” - open source should let you fork and reuse it.
For example there is microsoft shared code license, that’s “here is the code, but copyright is still ours, you can’t do anything with it but look”.
I have no idea what kind of license (if any) is unreal engine.
If you write your own licence (not recommended, but some developers and especially corporations do) it could be even fully compliant, but not approved.
Both of them are pretty poor descriptors. "open source" doesn't convey the legal freedom you are granted (as you have just found out), and "free software" makes it sound like it's just about price.
If someone lets you see source code but doesn't allow you to do anything with that code it's not what people would call "open source", you could probably call it source-available or something. "open source" has a specific legal definition that means code released with a permissive license.
open source implies the right to redistribute source code.
Edit: I doubt the license for this code is an OSI-approved one with this registration business. But I have not checked and I won't check.
I think this is the closest you can come to a "formal definition", short of a law defining the term.
OSI in fact tried to file for a trademark on 'Open Source' in 1999 [1], but failed because the term is 'too descriptive'.
[1] https://opensource.org/pressreleases/certified-open-source.p...
https://github.com/EpicGames/Signup/pulls
https://github.com/EpicGames/Signup/pull/10/files
https://github.com/EpicGames/Signup/pull/18/files
What is going on?
[1] https://www.theregister.com/2020/10/01/digitalocean_hacktobe...
“Contributed quality improvements to Epic Games Unreal Engine”
luckily, GitHub makes it terribly easy to verify how much and what you actually contributed
Although this commit in question isn’t even that sadly.
I'd say we only get them about once every week or so, but then the repo is not anywhere near as high-profile as the Unreal Engine, nor as likely to be on the radar of children.
while(vbucks < Long.MAX_VALUE) {
++vbucks;
Incredible> The maximum value of long is 9,223,372,036,854,775,807
GitHub are in effect operating a spam relay by permitting anyone to email 400k people. I don't know what the solution is - whether it's limiting team sizes, or adding restrictions that only org admins can trigger such notifications when there are so many members. But if the underlying problem is not fixed, this will happen again.
> Lock it. Lock it now. This is the friendliest message I'm going to send, while I look for ways to get OP banned from Github for gross social misconduct. I imagine that "owner of bots universe" might be enough to get that account tagged as a bot, who knows how many communities across however many repositories that person just bothered across all of Github.
Wasn't the message send as in innocent mistake? Why is this man adding fuel to the fire (sharpening his pitchfork?). Did I miss something about this?
I suspect there's some psychological phenomenon that convinces people that norms expected of them have somehow been broken because of the chaos.
> Perfect for gorgeous looks, can push asap @EpicGames/artv2-admin @EpicGames/developers @EpicTeamAdmin
The entire diff of the PR is:
diff --git a/README.md b/README.md
index b0b4f5d..61b95bb 100644
--- a/README.md
+++ b/README.md
@@ -1,12 +1,18 @@
# Epic Games
+<div align="center">
+ <img src="https://cdn2.unrealengine.com/Epic+Games+Node%2Fxlarge_whitetext_blackback_epiclogo_504x512_1529964470588-503x512-ac795e81c54b27aaa2e196456dd307bfe4ca3ca4.jpg" width="20%" min-width="100px" />
+</div>
+
Unreal Engine is now [free](https://www.unrealengine.com/blog/ue4-is-free)!
-To access our repositories, sign up for a free account at [UnrealEngine.com](https://www.unrealengine.com) and register your GitHub ID using [these instructions](https://www.unrealengine.com/ue4-on-github).
+To gain access for our repositories, sign up a free account on [UnrealEngine.com](https://www.unrealengine.com) and register your GitHub ID using [these instructions](https://www.unrealengine.com/ue4-on-github).
-After that, you can find our repositories here:
+After that, you may able to find our repositories here:
* [Unreal Engine](https://github.com/EpicGames/UnrealEngine)
* [Unreal Tournament](https://github.com/EpicGames/UnrealTournament)
(Note that you must be signed into GitHub for these links to work.)
+
+Have Fun !!However I still suspect the notification was unintended.
The situation doesn't need any more escalation beyond fixing the underlying vector for spam.
Is, according to their github page, a nary 18 years old.
One cannot say in good faith that they were a beacon of perfect judgement at 18. Anyone who says so is either looking to buy or sell a bridge in New York.
Being 18 means being given the benefit of the doubt that your actions are at least an attempt at good faith.
Stop posting this like an average 18 year old is supposed to be an idiot like OP. This is the age people get drafted, can start drinking alcohol, marry and start being adults.
To this day, people @everyone in 10,000 person discord servers because they forget the scale of what that means.
a bit further down he actually proclaims being born 11/11/2004, making him just 17. No idea why he has 18 y/o in his user description, not that it'd make a difference tho.
Yes it is expected behavior but its the scale and particular nature here that has turned expected behavior in to a dangerous tool.
Amazing GH even made this possible. Not sure if there's also a data leak, I notice my email was CCed, not BCCed. Now they've managed to email nearly half a million people, this could go on for ages as idiots keep responding to the original chains.
Wonder if EpicGames should temporarily mark their account as private till this gets sorted out. Glad I'm not the guy at the end of the phone trying to sort this car crash out.
[1] https://files.littlebird.com.au/Shared-Image-2022-06-05-12-1...
Would have totally avoided this situation.
In addition, there are lots of actually malicious skids you can’t stop by asking nicely.
From what it looks like it's a brand new coder. I hope he sticks with it, because this will be one hell of a story he can tell...
Getting real flashbacks to that from the snarky / annoyed comments on this :)
The only thing more amusing than all of the people replying asking to be taken off the list is all the people who reply to tell everyone else to stop replying, as if that would solve the problem instead of making it worse.
There's a very good chance that those replies are reducing the flood, assuming they're nowhere near a majority.
After the CEO sent the first all-staff email on the new platform, we had at least three highly regrettable replies copied to the whole organisation, including one disclosing very confidential information intended only for the CEO.
This quickly started a similar deluge of mails until someone high up the chain of command all-caps yelled "NO MORE REPLYING ON THIS MAIL, OR IT WILL BE AN HR VISIT FOR YOU"
Good times
Am I missing something?
What's so perfect, is the PR is complete horse shite.
Trying to get something on the resume.
So guinness issued an apology (and hopefully didn't fire the person). And we got the certificates - as far as i remember - just for shipping and handling. Yay.
Years later, people on the list still write to "all" - its a weird group, with secret giving in common but nothing else. I wonder if anyone from this list is lurking here ...
Actually if one is never supposed to send notification to a large group, what's the point of creating such a group? I assume that maybe there is some admin value but then again the admin will trigger a notification storm, no?
[0] https://docs.github.com/en/get-started/writing-on-github/get...
I made the mistake a few months back of saying something like "and if you use our @corp.com email address the internal filter does X", and the stupid "chat" program proceeded to ignore the .com part and notify the entire company of a small tech discussion on my team.
Cute.
I think the top commenter on this thread (Rob) may not realize his comment is the one that is triggering the first wave of notifications, based on his choice of sound effect.
After searching about it a bit more found a post from 2016 where Unreal is giving their Users instructions how to configure Github for receiving less spam from their gigantic group https://forums.unrealengine.com/t/github-notification-spam-a...
Followed by the Reply-all "Please unsubscribe me" crowd.
Followed by the Reply-all "Out of office reply" infinite loop as out of office replies respond to the out of office replies.
there are lots of real travesties in this world, this is not one of them.
That sounds like a "those people" problem. We don't hold people who use door knobs to account for the sake of a small number of people who like to lick door knobs and then get sick.
> I imagine it also cost a small fortune for Github to send this many emails.
That sounds like a problem for Github for not implementing any kind of checks and balances on their perfectly open feature if for some reason sending emails is expensive for them.
https://github.com/EpicGames/Signup/pull/26#issue-1260958786
Anyone will be afraid if they see a warning like “This message will notify 400k people. Are you sure?”
Come to think of it, I don't recall any reply-all responses, so they must have effectively bcc'd everyone at least. Thank goodness! I can't even imagine ...
Edit: Of course if dozens or even hundreds of replies "Why am I on this list?", "Please (do what I say not what do) stop replying" go to 400k again then it gets "interesting". Could not see from the submission or discussion whether that happened. I think it should not happen by default or what kind of Reply-To: those messages have?
It seems like teams of 400k people aren’t quite within the spirit of the intended feature!
What if you just want to host open source code without any of the noise from the social network?
I think "mirror" repositories don't let you open PRs though.
Pretty sure this is going to provoke a response.
Here's hoping there's a postmortem at GitHub about this.
I don't think anyone sits down and thinks the intentional behaviour should be "we should make it easy for someone to send a notification email to 400,000 people". That would clearly be annoying.
I think the behaviour is accidental, arising from "notifying all people in a team is useful".
What about requiring people to join a specific team to access the source for no apparent reason? In other words, how are the conditions which led to the creation of this inflated team not antisocial as well?
it isn't for no apparent reason - it's to accept the terms of the agreement for access to the unreal source code.
Alright. So if Epic Games are abusing Github Teams, why should the poster not be able to also?
Once they accidentally sent a rubbish message with a bunch of non alphanumeric characters and a curse word right in the middle of it.
Kid probably was creating a PR to brag tomorrow in school!
Even if it sent push notifications to everyone's browser and phone that doesn't seem much better. When you type an @ it gives you are description of a group and the description makes it clear that it's not the people related to reviewing his PR. He was just trying to send as many notifications as possible to try and get people to look at what he did.
Are we looking at the same pull request?
https://github.com/EpicGames/Signup/pull/24/commits/4e531d5c...
That's ... a super crap PR, hovering near trollish behavior territory.
I'd call those minor (valid, of course) changes, not low quality changes like what led to this post.
You attract the wrong users
Core users end up moving away from you, that's what i did when they added the stories shit
meow meow meow meooow
Wow, what an overreaction.
Has nobody at github/microsoft experienced a Reply All email chain yet?
- GitHub user sends notification to 400000 users
- How to stop USPS junk mail