• brucethemoose@lemmy.world
    link
    fedilink
    arrow-up
    32
    ·
    edit-2
    23 days ago

    Also, all this reminds me of drama in the Skyrim and Minecraft modding scenes, when devs publish stuff under Apache or MIT or whatever.

    Then the devs find out they don’t like what others are doing with their code. Drama ensues.


    …That’s kinda the deal with permissive licenses. Or posting publicly, like here on Lemmy. People will do things you don’t like with your code or content.

    • Toga77@lemmy.world
      link
      fedilink
      arrow-up
      15
      arrow-down
      1
      ·
      23 days ago

      Nah if you’re a massive AI company and you scrape without contribution, you’re a huge piece of shit.

      It’s just stealing plain and simple like anything else.

      They’re not a small user getting open source software, they’re scraping what is already done to try and make you obsolete.

    • unknownuserunknownlocation@kbin.earth
      link
      fedilink
      arrow-up
      7
      ·
      23 days ago

      There are permissive licenses, and then there are copyleft licenses. Permissive licenses go in the direction of “do whatever the fuck you want”. Copyleft licenses are more like “use it for whatever the fuck you want but if you change it give it back to everyone else with the same conditions”. The people who have projects with copyleft licenses are the ones who are (rightfully) pissed about their projects being used to train AI.

      • brucethemoose@lemmy.world
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        23 days ago

        Huggingface isn’t violating copyleft licenses here, I don’t think. And research projects that use it, with citations and documentation, wouldn’t either.

        Now, if some business comes along and tries to make proprietary code derived from the dataset, that’s where things get hairy. But the people doing that are responsible for the potential violation.

    • amio@lemmy.world
      link
      fedilink
      arrow-up
      7
      ·
      edit-2
      23 days ago

      On the other hand, totally did not see this particular shit coming. I wonder if we’ll see a rash of “permissive, except LLMs can fuck right off” licenses.

    • MonkeMischief@lemmy.today
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      23 days ago

      “Look, I wrote this neat highly advanced machine vision thing to help people with accessibility needs communicate with loved ones! ❤️. MIT licensed I guess! Let’s make the world better!”

      Raytheon, Northropp, Boeing, three-letter-agencies suddenly fork it as a base for their own “projects.”

      😐

  • brucethemoose@lemmy.world
    link
    fedilink
    arrow-up
    17
    arrow-down
    2
    ·
    edit-2
    23 days ago

    Well… I’d rather the dataset be public and there, with an ostensible centralized opt-out, instead of every AI startup frantically rescraping the same things their predecessors did.

    • qaz@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      7
      ·
      23 days ago

      True, I understand why this is better than all those companies scraping it individually (for both ability to opt out and site load), but the way they handled opt out is still quite silly.

    • undefinedTruth@lemmy.zip
      link
      fedilink
      arrow-up
      3
      arrow-down
      1
      ·
      23 days ago

      Second that. After all all my open repositories are all either licenced under GPL or MIT, so complaining would be a kind of hypocritical.

      • gnutrino@programming.dev
        link
        fedilink
        English
        arrow-up
        4
        ·
        edit-2
        23 days ago

        GPL is dodgy to be included in training data for AIs that are then used to generate non-openaource code tbh. Even MIT loses the attribution it’s supposed to have once laundered through AI…

        Speaking as someone that’s been into FOSS for a long time, it does piss me off how quickly copyright got thrown under the bus the moment it became inconvenient for people with money.

        • undefinedTruth@lemmy.zip
          link
          fedilink
          arrow-up
          4
          ·
          edit-2
          23 days ago

          Yes, but what HuggingFace is doing here is the distribution of a data set. And so long the data set itself is open that doesn’t conflict with GPL. HuggingFace is not responsible about how others use that data set.

          Whether LLMs themselves violate copyright for being trained on MIT or GPL code is an entirely different discussion.

    • undefinedTruth@lemmy.zip
      link
      fedilink
      arrow-up
      2
      ·
      23 days ago

      If they only include repositories that come with a proper open source license technically they don’t even need to provide an opt-out option. So, good thing that at least it exists.

  • mindbleach@sh.itjust.works
    link
    fedilink
    arrow-up
    15
    ·
    22 days ago

    Genuinely surprised it’s even opt-out.

    These companies train on Disney DVDs. Permission is not a factor. Training is transformative use, as much for counting letter frequency as for building a chatbot that can sort of code.

    • WhyJiffie@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      14
      ·
      22 days ago

      no, officer, you misunderstand! I’m not pirating this movie, I’m just training my intelligence on it! it is transformative use, see, I can now write you this summary!

  • onlinepersona@programming.dev
    link
    fedilink
    English
    arrow-up
    10
    arrow-down
    1
    ·
    22 days ago

    Get off of Github if you think this is a problem 🤷 There are alternatives like Forgejo (Codeberg), Gitlab, and Radicle (decentralised).

  • dextro@feddit.org
    link
    fedilink
    arrow-up
    8
    ·
    edit-2
    23 days ago

    I don’t see a problem as long as they stick to AGPL when building a product out of it

    Edit: Oh they also scraped my proprietary code 🧐

  • Bieren@lemmy.today
    link
    fedilink
    arrow-up
    8
    arrow-down
    1
    ·
    22 days ago

    If someone wants to scrap the shitty ass code I have on GitHub, have at it. Talk about poisoning AI

  • Melllvar@startrek.website
    link
    fedilink
    English
    arrow-up
    5
    ·
    23 days ago

    A number of my repos are listed.

    But the weird part is that it also lists a repo I don’t recognize. The repo does actually exist on my github account, but it’s marked as “ignored”, and the description says it was automatically exported from Google Code. The code seems to be a MacOS shareware file encryption tool called “BitClamp”, published circa 2008.

    No idea how it got on my account.

  • Pika@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    4
    ·
    edit-2
    23 days ago

    I have 3 repos in it but I don’t really care, it was all repos I had publically shared and open anyway

  • SirDimples@programming.dev
    link
    fedilink
    arrow-up
    2
    ·
    21 days ago

    Wow, got about 9 repos of mine there and a few from my startup’s, only public ones are scraped so I say fair enough. Happy to have switched to running my own git infra a year ago

  • alcea@feddit.org
    link
    fedilink
    arrow-up
    2
    ·
    22 days ago

    Thats why you write your projects now, download all weights locally and never look back.

    For posterity huggingface is terrible. If you need it. Even codebergs new changes are a disaster in teh making The days of “if its on the internet” are now your own responsibilty.

    Love how things are being rewritten on the fly now… Even better, lets scrape and “selfimprove”… WhatCouldPossiblyGoWrong

  • TeaWithDani@lemmy.world
    link
    fedilink
    arrow-up
    3
    arrow-down
    2
    ·
    edit-2
    23 days ago

    In theory, it’s all supposed to be permissively licenced code and the opt out is more than other models give. I saw Starcoder as one of the more ethical models. I thought the underlying principals to be fair at least.

    I’m interested in this gut hostility to it regardless. Kind of shows how you can’t present LLMs in a positive angle no matter what. They shouldn’t be using anything GPL or similar.

    • Viking_Hippie@lemmy.dbzer0.com
      link
      fedilink
      arrow-up
      8
      arrow-down
      1
      ·
      23 days ago

      Kind of shows how you can’t present LLMs harvesting peoples data without consent or even warning and making it difficult to impossible for people to avoid it in a positive angle no matter what.

      Fixed it for you.

      An LLM built from only consensually provided data would be perfectly fine, as long as it works without environmentally ruinous data centers.

      In fact, that was how EVERY LLM was to begin with, until regulatory capture and corporate impunity reached the current crescendo.

      • TeaWithDani@lemmy.world
        link
        fedilink
        arrow-up
        2
        arrow-down
        2
        ·
        edit-2
        23 days ago

        But if it’s permissively licenced, couldn’t I just copy bits and pieces for my own project without asking?

        Like I understand asking is always better and an opt in process for “the stack” or wtv would have been better received. Nevertheless, did they really have a legal obligation, rather than moral obligation, to ask given how this is licensed?

        Taking GPL code would be a different situation right? They would have to also include it in their model creation… which theoretically they just could.

        • mkwt@lemmy.world
          link
          fedilink
          arrow-up
          4
          ·
          22 days ago

          Most of those “permissive” licenses require redistributors to redistribute copies of the license texts in derivative works.

          But I bet these AI models aren’t doing that. And it’s a damn neat certainty that the vibe coders who use the AI model are not attaching a license disclosure containing every permissive licenses in GitHub. Even if their vibe coded app is arguably a derivative work.

          • TeaWithDani@lemmy.world
            link
            fedilink
            arrow-up
            2
            arrow-down
            2
            ·
            edit-2
            23 days ago

            I do not believe a permissive license has any notion of consent. You can’t stop someone from forking your code as long as they follow the rules of the license, like crediting you.

            Even in GPL, you can’t stop someone from using your code, see Gnome’s recent arguements with Mint over their usage of an old version of their Calender app.

            Others in the thread have mentioned we’ll see permissive licenses with exceptions for Ai in the near future. It’s a solution because that door is currently open.

            • AeonFelis@lemmy.world
              link
              fedilink
              arrow-up
              3
              ·
              22 days ago

              I do not believe a permissive license has any notion of consent. You can’t stop someone from forking your code as long as they follow the rules of the license, like crediting you.

              Does the LLM ever credit the original author when it spits out code?

            • Viking_Hippie@lemmy.dbzer0.com
              link
              fedilink
              arrow-up
              3
              ·
              23 days ago

              You can’t stop someone from forking your code as long as they follow the rules of the license, like crediting you

              In that case,though, you’re still respecting the wishes of the person applying that permissive license consensually, though.

              That’s VERY different from mass harvesting all data without permission (or credit) for profit, which would probably be against the terms of even the most permissive licenses.

              • TeaWithDani@lemmy.world
                link
                fedilink
                arrow-up
                0
                arrow-down
                1
                ·
                edit-2
                23 days ago

                Their claim was they followed the licenses and only used code they were implicitly allowed to use. I’d like to see if that was just astroturf and bullshit.

                Honestly, though this is one of the reasons why people prefer copyleft and avoid permissive licenses, because yeah anyone can profit monetarily off your work otherwise.

                • Viking_Hippie@lemmy.dbzer0.com
                  link
                  fedilink
                  arrow-up
                  3
                  ·
                  23 days ago

                  Their claim was they followed the licenses and only used code they were implicitly allowed to use

                  Was likely bullshit. Just like just about everything else people behind for profit LLMs say about their business practices.

                  I’d like to see if that was just astroturf and bullshit.

                  Almost certainly

      • TeaWithDani@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        edit-2
        23 days ago

        Yeah, they aren’t supposed to scrape that stuff. That’s kind of where I’m wondering if they limited their collections.

        • Vorpal@programming.dev
          link
          fedilink
          arrow-up
          3
          ·
          22 days ago

          Well, they included some MPL 2.0 repos of mine at least, but skipped others that use GPL3. Yet another that is a mirror of some otherwise lost firmware files for early 2000s wifi cards (and definitely isn’t free software) is also included.

          So possibly they filter out GPL2/3 specifically, rather than only include known permissive licenses. Which is a pretty bad way of doing it.

    • AlteredEgo@lemmy.ml
      link
      fedilink
      arrow-up
      0
      arrow-down
      2
      ·
      22 days ago

      Machine learning is more than just “transformative use” and is not copying. Currently that is only like 98% true, because memorization does occur in a few cases. Like 0.8-2% and that number is probably less now 2 years later than that study. Ultimately once they fix the memorization issue and “purge” these memories and can no longer reproduce licensed code (which is mostly textbook examples and boilerplate code or very popular code) this will be true transformative learning.

      Then they do not require any more permission to read and learn from a book or from code than a human would. As long as you own a book or have the right to read something, you’re allowed to do whatever you want with the knowledge you gained.