• wiki_me@lemmy.ml
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 hours ago

    i look up reviews and rating on alternativeto.net , search it on openhub and sometimes add projects i might be interested it (openhub reports development activity). i sometimes search for reddit for what people say about it.

    There are a bunch of websites for user reviews, but honestly i haven’t used them really iirc.

  • grue@lemmy.world
    link
    fedilink
    arrow-up
    4
    ·
    4 hours ago

    Honestly, popularity. If lots of other people use it, chance are somebody did that sort of check already.

  • toothbrush@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    3
    ·
    5 hours ago

    To add to what the other commenters are saying, I also sometimes look at whos responsible for the software. Is it a repo from a big company? Is it a gnu project? Is it just from somebody with a username consisting entirely of numbers? Is it hosted on codeberg or forgejo or some other friendlier server? That stuff also says alot, even if there are few recent commits, if its from reputable people you may still get well maintained software.

  • sobchak@programming.dev
    link
    fedilink
    arrow-up
    17
    ·
    9 hours ago

    As a heuristic, I look at the commit dates to see if it’s still being maintained. And lately I look at the commits themselves for evidence of AI use. Then I’ll maybe do a web search for discussions to see what other people/the community has to say about it.

    Gnuhealth looks like it may be dead (or at least the repo I found hasn’t had a commit in many years). (Nvm, they moved to codeberg which is a positive signal, IMO).

    • BuckFutter@timeyak.com
      link
      fedilink
      arrow-up
      1
      ·
      6 hours ago

      Yah I follow a similar approach in addition to doing a simple search for well known malicious commands like rm -rf / and some others as well.

  • hatingfedizen@lemmy.dbzer0.com
    link
    fedilink
    arrow-up
    3
    ·
    8 hours ago

    Just to add what others are saying. Commit dates, see how many maintainers/contributors it has, recent PR, recent open issues, how developers respond to them, visiting their discussion forums. Checking their social media accounts can also be useful, might tell you how they interact with the rest of the community.

  • im_fine_sandy@nord.pub
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    1
    ·
    5 hours ago

    Revenue model. If they have enterprise & community, then how good are the docs for community.