Many of the core library and tools are mostly finished and have very little yearly activity. How many maintainers does a project have if the last activity was one or two commits made or maybe just merged by one maintainer 3 years ago, and few more 5 years ago. Does it count as 2 maintainers, 1 maintainer, 0 maintainers? Does the "maintainer" from 5 years ago still have commit permission and how likely are they to get involved if some merge requests show up.
Even for active projects it's very common for 90% of work being done by one main maintainer.
Yeah. The ad-hoc, de-facto "Standard Library" for JavaScript, the "web", and fullstack web apps.
OSS ecosystem is sometimes so very "Down and out in the magic Kingdom" adhocracy like. Shame we haven't got the rest of the Bitchun' society's perks. :) hahaha!
- Lua (programming language): team of 3 - https://www.lua.org/authors.html
- openssl: 15 people - https://github.com/orgs/openssl/people
maybe also: sqlite, vim, nginx, redis
SQLite won't accept contributions from outside the core team; joining the core team is an involved process, as they're taking extreme measures to ensure it will continue to be recognised as a work in public domain in as many jurisdictions as humanly possible. You can still support the project by paying them for their work (or by getting your employer to do so):
TL;DR: they have a company that legally employs every single co-author, to be able to sell you a Warranty of Title, just in case your company/jurisdiction/etc has a problem with public domain.
How many maintainers for the other ones you mentioned?
Redis team consists of 8 people: https://github.com/orgs/redis/people
Did you know tools like uname [1] and cat [2] in GNU coreutils have essentially only had two contributors in the past decade?
[1] http://git.savannah.gnu.org/gitweb/?p=coreutils.git;a=histor... [2] http://git.savannah.gnu.org/gitweb/?p=coreutils.git;a=histor...
"'cat -v' considered harmful" is an ongoing meme, but there's truth to it. http://harmful.cat-v.org/cat-v/
cat(1) concatenates files. Some software should be considered done.
New editions of books have new copyright years, since they’re new books.
Same thing with code
Nevertheless I wouldn’t dare make any claim on this. Even in the presence of the Berne convention (https://en.wikipedia.org/wiki/Berne_Convention) the world is large and diverse.
They discuss it, try to come to a compromise, and if all else fails, fork it.
Maybe it's not ideal, but then again, people seem to have a big problem when you have 'boards' running these projects too, so...
-do their employers recognize their effort and give hours to the side projects?
-they mostly contractors so can arrange their time accordingly?
-donations?
-or is it mostly a hobby done out of passion?
No payment, not a hobby, very little passion, doing it because the public needs it. (And possibly got started because, damn it, somebody had to write it / take over maintenance.)
Further, as a contributor of some now popular projects with one other maintainer, I can say that I mostly do it for fun. My current employer gives zero-fucks about it but if a new employer were to use it to woo me away, I would jump in a heartbeat.
Sure, your vendor will probably fix bugs, but it may take some time until they find someone who has any knowledge of that codebase and survived last week's reshuffle, the re-org in spring and last year's buyout.
I've done it myself.
That one property along is enough if you want longevity, open source is always a safer bet than closed source.
In my case, I guess it extended the projects life by another 20 years.
Per the upstream, https://infozip.sourceforge.net/, "UnZip 6.0 was released on 29 April 2009".
But there are not truly 0 maintainers, because distros maintain their own patchsets, for example: https://git.launchpad.net/ubuntu/+source/unzip/log/
(By the way, unzip is arguably not feature complete. The ZIP spec has been updated multiple times since 2009, with the notable addition of the Zstandard compression method, among other things https://pkware.cachefly.net/webdocs/casestudies/APPNOTE.TXT)
maybe less of a bus factor now with OSH approaching feature/speed parity and having more maintainers https://www.oilshell.org/
> It is stable and in use by distinguished frameworks and tools such as Mockito, Hibernate , Jackson, Google's Bazel build system and many others. Byte Buddy is also used by a large number of commercial products to great result. It is currently downloaded over 75 million times a year.
I found it quite a good read!
https://www.researchgate.net/publication/308894462_What_is_t...
[Orca](https://gitlab.gnome.org/GNOME/orca). Very important for blind Linux desktop users. If you like frameworks more, [ATSPI](https://gitlab.gnome.org/GNOME/at-spi2-core), or [AccessKit](https://accesskit.dev/) may fit you more. Or, if you like contributing others' apps, take a look at how you could make them more accessible, with these [Tips for application developers](https://github.com/GNOME/orca/blob/main/README-APPLICATION-D...).
https://github.com/orgs/videolan/people
As i recollect, GnuPG was also a one man band for some time.
Also Fabrice Bellard of FFMpeg and his projects comes to mind.
I might be wrong too.
The TSC core team stays at ~6 people (I'm one of them)
LibreSSL
Linux-PAM
OpenSSH
re2c
tzdata
zlib
Those are just the ones that came to mind.
Unfortunately I couldn't find any information on how to donate to these projects:
- https://github.com/libexpat/libexpat
- https://github.com/linux-pam/linux-pam
tzdata is actually maintained by IANA:
They maintain the list, but someone has to package it.
https://thephp.foundation/structure/
"Core Developers The PHP Foundation contracts 10 full-time and part-time engineers to maintain and develop the PHP language."
ncurses/xterm: Thomas Dickey
I am working on a project solving for this specific question (and many others), across the open source and open science ecosystems, starting with open source research software but ultimately intends to touch the whole space. Among other things, we want to take continuous measurements of the health of open source projects, the use of open source projects, the perception of open source projects, the "impact of open source projects", and the needs of open source projects. We are combining data collection with stigmergic markers and eventual webs of trust.
It is incubated by NumFOCUS, and includes collaborations from across the academic industry.
Bringing it here for your thoughts.
The project is called "The Map of Open Source Science" (MOSS) and is built on the "Simply Omniscient Layer" (SOL). It is essentially an omniscient open permissionless graph database of the digital knowledge and research ecosystems, as well as a corresponding visualization (eventually people will be able to build their own visualizations interfacing with SOL).
Very recent presentation at PyData Vermont: https://www.youtube.com/watch?v=7c51njj9JPs
Recentish update: https://www.opensource.science/updates/the-map-of-open-sourc...
Landing page for the program: https://opensource.science
From our site:
"MOSS is a comprehensive, composable, interactive map of the digital knowledge and research ecosystems. We identify connections between open source research software projects, research papers, organizations, patents, datasets, funding pathways, AI models and applications, and the people who drive it all.
The MOSS proof of concept so far demonstrates nine use-cases:
Identify relevant tools for your research
Showcase the impact and connections of the people that make and maintain open source research tools
Showcase the impact and connections of the organizations that build, support, and fund development of open source research tools
Showcase the impact and connections of open source research tools
Identify gaps in open source research tooling
Navigate repetition of open source research tool features
Identify, prevent, and reinvigorate abandoned open source research tools
Streamline the grant submission and review process
Navigate security flaw identification - who to contact, what downstream tools are effected, what alternative tools exist"
Now corporations do projects with 5 or more zeroes in budget and a high percentage of the code is free software or open source. And they give 0 back to free or open projects that they parasite.
I wrote an article years ago in my blog (in Spanish, sorry), "Free software has failed": https://tomatesasesinos.com/2019/07/11/el-software-libre-ha-...