Boltzmann
Boltzmann is a package registry for any kind of software that has textual source files. It also contains all the primitives required to support federation. It has other design choices that make it interesting that I'll discuss at release.
It is not yet released, but it will be dual-licensed under Apache-2.0 and MIT when it is released. To get a sense of current project status: it's about 57K meaningful lines of Rust at the moment, and nearly functional.
It is a solo project of ceejbot, who has been working on it for some time.
Security reports
This is not yet meaningful because I have not yet shared the source, but I will state it in advance.
Please send all security commentary to TBD. Humans get priority over LLMs. I do not mind if LLMs found the problem so long as a human communicates with me about it. Security researchers with reputations I can research and track records I can verify get priority over unknown people. This is not personal; it's because people are terrible in general.
Please report all other bugs on the github repo. (Not yet.)
AI policy
Again, this is not yet meaningful because I have not yet shared the source, but I will state it in advance.
Please do not give me gigantic LLM-generated PRs. Also please do not give me gigantic human-written PRs. If you give me an excellent small PR and I can't tell who wrote it because of its excellence, both of us will be happy. The project has strict Rust standards and testing requirements for obvious reasons.