44 karma · joined February 14, 2020
Minor, medium, major change category depending on potential impact with documented guidelines when each apply.
First release of a service always recommend to be major. (They are few vs daily changes and can be redtaped more to get many stakeholders requirements. Functional and non functional) Author of the change and his team decide the category.
- Minor need one more reviewer outside author. Team decide everything.
- Medium need min one more, and usually QA team or other affected team.
- Major change need CAB meeting with all major stakeholders to sign off.
CAB is responsible for the process and high level monitor the program, see if any cheating goes on, performance metrics such as number of changes per category etc. Help support people what could be considered minor vs major changes.
Overall rel flexible and balanced. Pushes people towards making smaller changes with less risk and at the same time increase velocity while still protect reasonable against bad actors, mistakes etc.
It is not perfect, medium changes tends to be more difficult to coordinate, some changes are missclassified etc but that is okey. It is not only about the process, communication matters and ci/cd have to be robust etc.
This balanced approach works for many.
It might not be possible to verify 100% but the more transparency the better i guess. Seeing the 3 way handshake and connection information, the timings, location of the server. Would need to be quite elaborate to fake. Just thought was a fun idea. Have the customer allowed in to production. A lot more difficult then publish privacy page, source code, fake audit reports.
The theme settings is also confusing because of gtk apps, global theme etc. Feels everything around theming could be made nicer.
Prob some more nitpicks but overall it is a really great desktop environment.
Staying on the Internet and be dependent on it in some way financially working as a streamer with all the short form communication and negativity online. Together with cyber bullies etc. A lot of things creating a perfect storm for what seemed to be a sensitive and very nice guy. Easy to say that his family and real life friends should have seen it too and make him change path but in reality it is difficult. Especially since things that make it worse like sitting down and playing chess all day / night and not getting enough sleep, together with cyber bullies is also the things that you love, you earn money on and you have many of your friends there.
It can be complicated but a example. TOTP that is very common used with passwords is regarded as MFA (tho most of the time software based on phone) but have many problems regardless
- many time replayable - can be intercepted - implementations look different - recovery code reuse problems etc.
On the other hand, using only passkeys dont have those problems but with passkeys, many times you cannot decide on what device a user have registrated the passkeys in a enterprise setting. example they could be apple passkeys, chrome passkeys, windows, hardware key(yubikey) etc and all of them behave different when it comes how they ex can be copied/ synced between users devices. So from where they can be used.
So for any authentication flow, you need to look at the full picture. What is the process when credentials are lost? How do user onboard etc.
Is a good entry point to say. We should use MFA or similar but the details matter.
For cards, depends on the bank. I know my bank at-least do send the card abroad to my current home and as long as i keep my digital authenticator ID (bank ID) i am able to access that, renew cards. Do most banking services etc.
I also managed to get a new bank authenticator by going to the embassy and get signed papers etc, however it took about 5 months or so if you don't have any cash that might become a issue. :)
After you installed steam it will probably just work. You might need to go into settings -> steam play and enable proton. that's it.
2. IPS matte good quality display with similar resolution to 2560x1440p, Superb colors and peak brightness.
3. At-least 32GB RAM but pref up-gradable RAM to 64GB
4. Linux full support, preferable AMD
5. Keyboard similar to old thinkpad 7 row style. General going back to retro style with proper keys, Topre switches or why not a mechanical keyboard if possible.
6. Trackpad of high quality. Atleast similar to Apple. Not seen any that have it yet on pc. If not possible, add a trackpoint and remove the trackpad.
7. Ports! Please have many ports. As many as possible.
8. Hardware quality. hinges, case and overall. Make it durable.
9. Battery time, make it last.
10. No spyware or bloatware. Published schematics of the laptop and help the open source community.
11. Good quality parts in chipset for wifi, bluetooth, sound. Latest AMD. Should not be a issue.
12. No intel inside stickers or other stickers on my laptop. If have to put a logo on it, make the logo very small and not in your face.
Okey, so what can i be without to make the above possible and
- No frills or extras. - No touch display. - Medium powered CPU. ( think road warrior not full fledged desktop replacement ) - No discrete GPU needed if it makes my laptop warmer, or make battery go down faster. Integrated GPU is "good enough" - No need for fingerprint sensor, even if convenient. - No magic bars or other innovation someone thought would be good. - Weight and thickness is less important then manufactures seem to think. To a degree. Slim laptops get warmer, rather have it a bit ticket with more room for battery etc.
Do the basics correct. A modern take on the Thinkpad x220. Remove things that don't matter and make a classic awesome laptop for the ages.