This is amazing:
https://www.bleepingcomputer.com/news/security/dev-corrupts-npm-libs-colors-and-faker-breaking-thousands-of-apps/
tl;dr:
1. a developer of a bunch of popular #npm packages publishes new, intentionally broken versions of them as he doesn't want to support for-profit companies with his free work;
2. NPM *reverts* the packages to older versions against developer's wishes;
3. GitHub *blocks* the developer for acting "irresponsibly".
That story again: developer blocked by #Microsoft #GitHub for making changes to his own code.
This is why #AGPL and @forgefriends are so important!
@Courgette the "faker" package now contains an Aaron Swartz related message:
https://www.npmjs.com/package/faker
@rysiek Yes I see that, but what let people think that his action is linked to a lack of remuneration in open source? I mean, they use a message from 2020 to justify that. But the dev seems to only speak about Aaron.