Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Sephr
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
18 ms
·
211.
▲
by
Sephr
4y ago
E2EE is great, but when are we going to see an email solution that tackles read receipt privacy without a poor UX? If email providers automatically downloaded external resources upon delivery then read receipts would not work and you could
212.
▲
by
Sephr
4y ago
The title is very misleading. Deno is not written in JavaScript and is never referred to as Deno.js in any official sources. Deno is written in Rust.
213.
▲
by
Sephr
4y ago
NPM is a shitshow. At one point you could literally take over people's packages by asking the NPM staff nicely. Source: https://twitter.com/sephr/status/1524080664106086400
214.
▲
by
Sephr
4y ago
While there may be valid privacy concerns, SXG does enable completely new P2P and anti-censorship use cases.
215.
▲
by
Sephr
4y ago
Wow, how did HackerRank end up hiring them? Incompetence all around.
216.
▲
by
Sephr
5y ago
A proper solution to this problem requires a completely new perspective. I made a client side firewall-esque library for Transcend Consent Manager so that site owners can load trackers immediately and locally quarantine tracking events for
217.
▲
by
Sephr
5y ago
Looks like this extension doesn't work for XHTML documents as well. Extensions that want to inject elements should use document.createElementNS with an explicit namespace.
218.
▲
by
Sephr
5y ago
There is a solution which balances site owners' need to track with a respectful consent UX (e.g. no immediate consent prompt): https://transcend.io/blog/defeating-cookie-banners Many sites prompt right away becaus
219.
▲
by
Sephr
5y ago
> SugarCoat replaces these scripts with scripts that have the same properties, minus the privacy-harming features Depending on the scope of these replacement scripts, this may run into API patent & copyright issues. Additionally, the
220.
▲
by
Sephr
5y ago
If you clear site data for a site tracking anonymous consent, you've cleared your consent. No records necessary unless you are linking consent to user accounts stored on your backend.
221.
▲
by
Sephr
5y ago
Indeed. We advise our customers to place our consent management script before any scripts that they wish to regulate due to this inherent limitation.
222.
▲
by
Sephr
5y ago
It's absolutely possible to have JavaScript coexist in a potentially hostile environment. We utilize a secure reference cache for Transcend Consent so that potentially malicious scripts cannot interfere with the operation of our consen
223.
▲
by
Sephr
5y ago
The tech specs page only says 4K 60Hz HDR
224.
▲
by
Sephr
5y ago
Bringing back a dedicated HDMI port is a downgrade. This port can only do 4K 60Hz HDR (implying HDMI 2.0), which is inferior to previously-supported standards in addition to taking up space as a single-purpose port. The Intel MacBook Pro 16
225.
▲
by
Sephr
5y ago
> there are apps that can scan faces and pull personal info including where they live, work etc Note that these services are also powered by scraping public data.
226.
▲
by
Sephr
5y ago
See https://chromium.googlesource.com/chromium/src/+/HEAD/url/#c...
227.
▲
by
Sephr
5y ago
There might not have been a generally accepted standard then, but there is now: https://url.spec.whatwg.org/
228.
▲
by
Sephr
5y ago
> Assume that this regex will be used for a public URL shortener written in PHP, so URLs like http://localhost/ , //foo.bar/, ://foo.bar/, data:text/plain;charset=utf-8,OHAI and tel:+123
229.
▲
F1: A Fast and Programmable Accelerator for Fully Homomorphic Encryption
(arxiv.org)
3 points
by
Sephr
5y ago
|
0 comments
230.
▲
by
Sephr
5y ago
Yes, that use case is supported by our API, although we don't optimize around that. Feel free to submit an issue to the Penumbra repo if you need help using the library!
231.
▲
by
Sephr
5y ago
Transcend Consent Manager currently only supports frontend data flow regulation. Under our current scope, all regulated data originates from the user so there is no cross-border aspect to our product at this time. We do plan to eventually e
232.
▲
by
Sephr
5y ago
Hi Hacker News! I'm Eli, the lead engineer behind this project. I am excited to share Transcend's Consent Manager with you. Consent management platforms handle the task of complying with the various data privacy laws to ensure tha
233.
▲
Show HN: Consent management, reinvented
(transcend.io)
26 points
by
Sephr
5y ago
|
6 comments
234.
▲
by
Sephr
5y ago
A full-fidelity brain scan (done using a giant X-ray free electron laser) will probably vaporize your brain in the process of scanning it. Not vaporizing your brain could imply missed data.
235.
▲
by
Sephr
5y ago
If a 7.8mm sensor counts as "DSLR technology", does that mean our regular cameras are now "spy satellite technology"?
236.
▲
by
Sephr
5y ago
> what is that? A new consent management tool for website owners. We're currently in closed beta. Learn more here: https://transcend.io/blog/defeating-cookie-banners > the idea is to modify those URLs before
237.
▲
by
Sephr
5y ago
Regular expression replaces on content are very fragile. Unfortunately, browsers do not yet provide general request regulation capabilities. Until then, Transcend Consent Manager's API can solve this much more easily with a more robust
238.
▲
by
Sephr
5y ago
You could simply host your network on unlicensed spectrum.
239.
▲
by
Sephr
5y ago
> This is to protect against hostile environments blocking function calls by polluting prototypes? Correct. I go into more detail about into our problem space and use cases here: https://transcend.io/blog/defeating-c
240.
▲
by
Sephr
5y ago
I've had to cache a secure reference to call() in a JS library intended to exist in potentially hostile environments. This call helper is often used to avoid prototype pollution vulnerabilities when patching native prototypes.
More ›