Behind the Commit

Behind the Commit

by Mia Bajić
Is Your Vacuum Cleaner Spying on You? Kushal Das on Privacy and Digital Rights
In this episode, I'm chatting with Kushal Das — public interest technologist, core team member at the Tor Project, core developer of CPython, and director at the Python Software Foundation. He is also the founder of dgplug and a maintainer of SecureDrop — the platform journalists use to communicate securely with whistleblowers. We talk about why privacy is increasingly hard to protect, the hidden cameras in your robot vacuum cleaner, what happens to data once it leaves your hands, and what any developer can do right now to build more privacy-respecting software. Outline 0:00 Episode highlights 0:17 Introduction 0:38 "Privacy is a human right" — is it? 1:22 What turned Kushal from technologist to privacy advocate 2:57 SecureDrop: what it is and who it protects 3:33 How SecureDrop works in practice 5:36 Biggest technical challenges building SecureDrop 6:35 Helping people living under authoritarian regimes 10:38 Vacuum cleaner cameras and the toilet photo incident 11:44 The year hackers took over vacuum cleaners and shouted at owners 13:44 Why Kushal removed Alexa from his home 16:08 Social media as a surveillance tool 18:24 Stalkerware: when someone close to you is tracking your every move 19:31 Cambridge Analytica, the Great Hack, and election manipulation 21:43 Are governments fast enough to regulate technology? 22:55 Once you upload something to the internet, it never comes back 25:20 AI tools and what happens to the data you share with them 35:15 "If you break encryption, it will be broken for everyone" 37:36 How to fight for privacy 40:04 EFF, Tor Project, and where to get involved Episode links – Tor Project: https://www.torproject.org – SecureDrop: https://securedrop.org – EFF: https://www.eff.org – Stop Stalkerware: https://stopstalkerware.org – dgplug: https://dgplug.org – Kushal's blog: https://kushaldas.in
Trailer – Is Your Vacuum Cleaner Spying on You? Kushal Das on Privacy and Digital Rights
Trailer
In this upcoming episode, I chat with Kushal Das — core team member at the Tor Project, core developer of CPython, and director at the Python Software Foundation. We talk about the hidden cameras inside your robot vacuum cleaner, why encryption is non-negotiable, and what it actually takes to protect people's privacy online.
The Best of Two Languages: Connecting C++ & Python with Cristián Maureira-Fredes
Have you ever wondered what astrophysics has in common with the software running in your car, your coffee machine, and NASA's internal tools? In this episode, I sit down with Cristian Maureira-Fredes, a PhD in Astrophysics who decided to leave academia to join the software industry. Today, he is a Research and Development Principal Manager at The Qt Company, where he leads the team behind Qt for Python (PySide6) and the Qt Core team. Outline: 00:00 The persistence of C++ in industry 00:14 Introducing Kristian: From Astrophysics to Qt 01:13 The history and Open Source roots of Qt 02:58 Why we can’t just "rewrite" C++ in Rust 03:52 How PySide (Qt for Python) bindings work 05:07 The challenge of finding new C++ contributors 06:17 Impact of LLMs on understanding complex code 07:34 Qt in the real world: NASA, cars, and coffee machines 08:50 Why Qt uses Gerrit instead of GitHub 10:36 Where does the name "Qt" come from? 11:15 Conclusion
Trailer – The Best of Two Languages: Connecting C++ & Python with Cristián Maureira-Fredes
Trailer
What does a PhD in Astrophysics have in common with the software running in your car, your coffee machine, and NASA’s internal tools? In this episode I sit down with Cristian Maureira-Fredes, a Research and Development Principal Manager at The Qt Company. Cristian leads the team behind Qt for Python (PySide6) and the Qt Core team.
Inside PyPI: Maria Ashna on Supporting Python's Package Index
In this episode, I'm chatting with Maria Ashna — PyPI support specialist at the Python Software Foundation and founder of Magic Lightbulb, a tech and product consulting firm. PyPI serves nearly a million developers and is the backbone of Python's entire package ecosystem — maintained by a team of just four people. Maria shares what her role actually looks like day to day, how she cleared a backlog that was delayed by over a year, what happens when a package maintainer passes away, and what's coming next for PyPI organizations. Outline 0:00 Episode highlights 0:45 Introduction to Maria Ashna 1:11 What does a PyPI support specialist actually do? 2:07 The history of PyPI — born in 2003, formerly "the cheese shop" 2:47 How many people work on PyPI? 3:27 Most common support issues: account recovery and 2FA 3:48 2FA is now 100% mandatory on PyPI 4:10 Clearing a 500+ ticket backlog delayed by over a year 6:14 What is PEP 541? 7:01 What happens when users don't respond? 8:07 The edge case nobody thinks about: users who have passed away 8:30 How to open a ticket with the PyPI team 10:43 PyPI Organizations: what are they and who are they for? 13:17 Is PyPI going commercial? (No) 15:01 Nearly 1 million users, team of 4 15:38 How do you actually pronounce PyPI? 16:13 Where to find Maria online Episode links – PyPI: https://pypi.org – PEP 541: https://peps.python.org/pep-0541/ – Maria on GitHub: https://github.com/despy-brain – Contact Maria: maria@python.org
Trailer – Inside PyPI: Maria Ashna on Supporting Python's Package Index
Trailer
In this upcoming episode, I chat with Maria Ashna, PyPI support specialist at the Python Software Foundation. We discuss what it's actually like to support nearly a million Python developers with a team of four, the edge cases nobody thinks about, and what PyPI was called before it was PyPI. Full episode coming out soon!
Why Python is Slow: Antonio Cuni on SPy and Statically Compiled Python
Antonio Cuni (principal engineer at Anaconda, author of SPy, developer of PyScript and PyPy, co-founder of the HPy project, and creator of PDB++, Fancy Completer, and VMProf) shares why Python is slow and how SPy, a new statically compiled variant of Python, aims to be as fast as C while staying as Pythonic as Python. We discuss the trade-off between dynamic features and performance, how SPy's "red and blue" code model replaces best-effort JIT with predictable errors, why PyPy struggles with C extensions, and what "Pythonic" really means. Outline 00:00 - Episode highlights and introduction 00:40 - Why is Python so slow? 01:31 - Would a static Python be fast? 02:13 - What is SPy? 02:28 - What motivated you to create SPy? (Spoiler: frustration) 03:52 - Which ideas from PyPy and HPy went into SPy? 06:36 - Biggest challenges of building SPy 07:49 - What does "Pythonic" actually mean? 10:39 - Current roadmap and the two-level language idea 12:24 - Walking through the SPy compilation pipeline 13:57 - Red-shifting and the blue/red AST nodes 14:40 - Why blue and red? (No, it's not from The Matrix) 15:52 - PyPy vs SPy: when to use which 19:34 - C extensions and the C API problem 20:04 - How to actually make your Python code faster 23:34 - Memory management and garbage collection in SPy 24:44 - When will SPy be production-ready? 25:44 - How to contribute to SPy 26:26 - Where does the name "SPy" come from? Note: the episode was recorded in July 2025 and some features, such as list type, garbage collector, and documentation, have been implemented in the meantime. In the section below you can find the links to those features. Episode links – SPy on GitHub: https://github.com/spylang/spy – PyPy: https://pypy.org/ – HPy project: https://hpyproject.org/ – PyScript: https://pyscript.net/ – Anaconda: https://www.anaconda.com/ – decorators in SPy: https://github.com/spylang/spy/pull/225 – SPy roadmap: https://github.com/spylang/spy/blob/main/ROADMAP.md – list type in SPy: https://github.com/spylang/spy/blob/main/stdlib/_list.spy – garbage collector in SPy: https://github.com/spylang/spy/pull/390 – SPy documentation: https://spylang.github.io/docs/dev/ – series of blog posts on SPy: https://antocuni.eu/2025/10/29/inside-spy-part-1-motivations-and-goals/
Trailer – Why Python is Slow: Antonio Cuni on SPy and Statically Compiled Python
Trailer
In this upcoming episode, I chat with Antonio Cuni, the creator of SPy and long-time PyPy developer. We discuss why Python is slow, how a statically compiled Python variant can be as fast as C while still feeling Pythonic, and the "red and blue" model behind SPy's compilation pipeline. Full episode coming out soon!
Maintaining 80 OSS Projects: Anthony Sottile on pre-commit and Developer Tooling
In this episode, I'm chatting with Anthony Sottile — creator of pre-commit, primary maintainer of flake8, core contributor to pytest, and maintainer of around 80 open source projects across the Python ecosystem. He's also a GitHub Star and a popular live coding streamer on Twitch under the name "anthonywritescode". We dig into how he actually manages all of it, the origin story of pre-commit, the psychological side of open source maintenance, and how to get started contributing. Outline 00:00 Episode highlights & Intro 0:59 The all-repos tool — distributed refactoring across repos 2:04 Where the idea came from (Yelp's microservices explosion) 2:42 Tools for managing multiple repositories 3:34 How pre-commit got started (a college group project) 4:15 Rewriting pre-commit for Yelp in 2018 4:46 Hardest technical challenge: supporting 13 programming languages 6:07 Surprising bugs found in NPM and Git 7:05 GitHub Stars and open source funding 8:10 How Sentry approaches funding open source 8:43 The psychological challenges of open source maintenance 10:06 What would you tell your past self? 11:32 How to start contributing to open source 13:05 Why Anthony started streaming on Twitch 13:52 What motivates him to keep streaming 14:58 Has community interaction changed how you design code? 15:48 Where to find Anthony online Episode links – pre-commit: https://pre-commit.com – all-repos: https://github.com/asottile/all-repos – Anthony's YouTube: https://www.youtube.com/@anthonywritescode – Anthony's Twitch: https://www.twitch.tv/anthonywritescode
Trailer – Maintaining 80 OSS Projects: Anthony Sottile on pre-commit and Developer Tooling
Trailer
In this upcoming episode, I chat with Anthony Sottile — creator of pre-commit and maintainer of around 80 open source projects. We talk about how he actually manages it all, the surprising bugs he's found in NPM and Git along the way, and the psychological side of open source that nobody talks about.
1 of 2