Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
anderspitman
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
14 ms
·
31.
▲
by
anderspitman
3y ago
Your initial intent was clear. I was simply trying to move this towards something productive. Clearly I failed
32.
▲
by
anderspitman
3y ago
Are you sure you understand what my position is? Care to strongman it? Fwiw I think you're actually right that HN tends to spend way too much time on semantics, and I'm certainly guilty of that myself sometimes
33.
▲
by
anderspitman
3y ago
> Or the third to to illustrate the argument in another context. This is still case 1. I actually agree with you that some people with bad security habits will never change their behavior, but do you really feel that someone using passwo
34.
▲
by
anderspitman
3y ago
> For one thing, I now have to be logged in on my mail on the device I am using, and that means if the device is unsafe, I am exposing far more of a risk that way What's preventing you from getting the email code from another device
35.
▲
by
anderspitman
3y ago
I agree social SSO is the gold standard in terms of UX, but it's also a privacy disaster. What we really need is for someone to make a Let's Encrypt for login. A nonprofit that provides SSO in a privacy respecting manner.
36.
▲
by
anderspitman
3y ago
This made me chuckle, and it honestly might be true.
37.
▲
by
anderspitman
3y ago
Other than the chance the email is delayed, and the generally subpar UX, what are your concerns with emailed codes? This is an honest question, as this is the primary login method I settled on for all my services after spending a good chunk
38.
▲
by
anderspitman
3y ago
I find there are generally two reasons people use analogies. The first is to make a concept easier to understand. The second is to subtly change what is being argued in order to make their position seem stronger. I did the second for years
39.
▲
by
anderspitman
3y ago
This is interesting. I'm not sure how I feel about it from the perspective of the user understanding what they're consenting to, but it's secure and the flow is simple. I don't support passwords on any of my services. Em
40.
▲
by
anderspitman
3y ago
I read OP's mention of third party cookies as an example of browsers supposedly moving in a more privacy focused direction, not as being related to authentication.
41.
▲
by
anderspitman
3y ago
Is the cost of getting phished really lower than the cost of learning a password manager for your dad?
42.
▲
by
anderspitman
3y ago
> you have to fork the entire web That's exactly what we need to do. More specifically, we need to decouple the app web from the document web. Most of the value of the web to society lies in text, images, and video, in that order. W
43.
▲
Why Turborepo is migrating from Go to Rust
(vercel.com)
5 points
by
anderspitman
3y ago
|
0 comments
44.
▲
Statically Compiling Go Programs (2020)
(arp242.net)
1 points
by
anderspitman
3y ago
|
0 comments
45.
▲
by
anderspitman
3y ago
My recommendation would be using an old laptop you have laying around, or picking up a used Lenovo T series laptop for 300-400USD on ebay. Try to find a CPU with 10000+ score on cpubenchmark.net, and 16GB+ memory. Plug in whatever storage y
46.
▲
by
anderspitman
3y ago
The aforementioned user namespaces and accompanying complexity come into play here, and you're going to take a performance hit using FUSE for fs and slirp for networking. I'm not saying these are bad tools, just that we need somet
47.
▲
by
anderspitman
3y ago
> Because nobody outside of HN is going to install software on an old phone or laptop. But they'll buy a $30 Box. How do you figure? Also you may be interested in checking out https://kubesail.com/homepage and http
48.
▲
by
anderspitman
3y ago
That's fair. Personally I'd like to see (and am working on) more solutions that make it realistic for everyone to run their own single user instances. Selfhosting shouldn't be any more difficult less secure than running an ap
49.
▲
by
anderspitman
3y ago
With the caveat that your VPS provider can access all your data should they choose to.
50.
▲
by
anderspitman
3y ago
Is there anyone in your family that you really want to have access to all your photos? Not even referring to just NSFW stuff. If your answer is "as the admin I'm the only one that can access everything" then consider the qu
51.
▲
by
anderspitman
3y ago
Why does it need to be a new separate physical device, instead of just software installed on an old phone or laptop?
52.
▲
by
anderspitman
3y ago
I used to feel like docker wasn't worth the complexity but I've come around. It strikes a pretty dang good balance. Is kubernetes worth learning if you don't use microservices at work?
53.
▲
by
anderspitman
3y ago
While there's some truth to this, it's more of an incidental problem with DNS than an intrinsic one. There's nothing preventing registrars from simplifying their UX to target average customers, including multi-year registrati
54.
▲
Bluesky Business Plan
(blueskyweb.xyz)
5 points
by
anderspitman
3y ago
|
0 comments
55.
▲
by
anderspitman
3y ago
See here: https://blueskyweb.xyz/blog/4-28-2023-domain-handle-tutorial
56.
▲
by
anderspitman
3y ago
I agree this might confuse users initially, but we need to normalize owning and using domains. We also need to make it much easier and this is an important step.
57.
▲
by
anderspitman
3y ago
https://apitman.com Main claim to fame is that you can read my blog with curl: curl https://apitman.com/txt/feed Or netcat: nc apitman.com 2052 <<< /txt/feed
58.
▲
by
anderspitman
3y ago
Lot of negative comments here but IMO this is huge. The best way to keep anything commercial good in the long term is competition, and the only way to have competition with web services is if users can go somewhere else, which requires a po
59.
▲
by
anderspitman
3y ago
Your browser is probably blocking it for not using HTTPS /s https://web.archive.org/web/20230704151648/http://this.how/g...
60.
▲
by
anderspitman
3y ago
While I do think this is an important conversation to have, and part of an even more important conversation about how much control Google/Chrome has over the web, I grudgingly disagree. I think signed data is table stakes for any commu
More ›