Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
arianvanp
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
31.
▲
by
arianvanp
6mo ago
Just a heads up: I know it's cool to generate ASCII art with Claude code these Days but for some reason checks the output? Non of the diagrams in the article look correct to me. They all have spacing issues?
32.
▲
by
arianvanp
6mo ago
I've been running into _a lot_ of issues with Hyper/Tonic. Like literal H2 spec violations. Try hosting a tonic server behind nginx or ALB. It will literally just not work as it can't handle GOAWAY retries in a H2 spec-compli
33.
▲
by
arianvanp
6mo ago
I feel like this is false. These companies mostly seem to monitor social media and security mailing lists with an army of LLMs and then republish someone else's free labor as an LLM slop summary as fast as possible whilst using dodgy S
34.
▲
by
arianvanp
6mo ago
You can disable the auto staging of new files since recently which removed the main grype for me
35.
▲
by
arianvanp
6mo ago
The problem is nobody checks. All the axios releases had attestations except for the compromised one. npm installed it anyway.
36.
▲
by
arianvanp
6mo ago
If you care about this stuff you need to in-house auditing and do your own audits with people who care. Then get certified by an external auditor for the paper. You can start very lightweight with doing spec driven development with the help
37.
▲
by
arianvanp
6mo ago
Sounds like reachability problem in Petri nets to me?
38.
▲
by
arianvanp
7mo ago
E cigarettes work by shorting the battery releasing a lot of instantenous heat. Their safety controller firmware are often of ... Dubious quality. It can happen quite often that the cigarette doesn't stop shorting the battery and catch
39.
▲
by
arianvanp
7mo ago
Arch Linux also has a long history of people writing their own package specs (AUR) and is relatively simple too of course. Let me put it differently. The documentation of NixOS treats package maintainers and users as kind of equal. This has
40.
▲
by
arianvanp
7mo ago
A snapshot of your build folder. Not even the sources. This is my other problem with mainstream Distros. Extending them is completely opaque. NixOS is source based and anything and everything can be updated by the user. Need some patch from
41.
▲
by
arianvanp
7mo ago
I've been trying to get nixd LSP to work with Claude Code but I got stuck as they gatekeep it behind their "plugin" system and you can't just configure it in settings.json to point to a nix store path like mcps :(
42.
▲
by
arianvanp
7mo ago
I think you're confusing gender and sexual orientation. He's calling her a lesbian
43.
▲
by
arianvanp
7mo ago
Also doesn't this mean I have to reconfigure all my tools to use HTTP and then when I forget to enable this it will fall back to getting MITM'd by the Internet? Fails open in the most insecure method ever
44.
▲
by
arianvanp
7mo ago
But it hasn't been built exclusively for that use case. It's literally the same.
45.
▲
by
arianvanp
7mo ago
That and that the built in sandbox in Claude Code is bad (read only access to everything by default) and tightly coupled (cant modify it or swap it out).
46.
▲
by
arianvanp
7mo ago
That is also Linux VM on MacOS. They're not MacOS containers.. So it's completely pointless / useless for MacOS or iOS development
47.
▲
by
arianvanp
7mo ago
I opened an issue about this on day 1 of the release: https://github.com/anthropic-experimental/sandbox-runtime/is... I ended up making my own sandbox wrapper instead https://GitHub.com/arianvp
48.
▲
by
arianvanp
7mo ago
Doesn't post-receive block the push operation and get cancelled when you cancel the push?
49.
▲
by
arianvanp
7mo ago
Closing Tabs in Safari till takes more than a second though. And if you hold Cmd-W to close all of them it just completely locks up and crashes. Still not fixed since the release of Safari 26. Literally unusable
50.
▲
by
arianvanp
7mo ago
Literally every email client on the planet has supported `mailto:` URIs since basically the existence of the world wide web. Just generate a mailto Uri with the body set to the draft.
51.
▲
by
arianvanp
8mo ago
At this point your steps are so simple id skip GitHub actions security tyre fire altogether. Just run the go commands whilst listening on GitHub webhooks and updating checks with the GitHub checks API. GitHub actions is the biggest security
52.
▲
by
arianvanp
8mo ago
Say you want to have a custom button element. You cant give it a `type=submit` whilst you can set that on <input> and <button> Also if you have a face that wraps a button of type submit. The submit doesn't propagate due to
53.
▲
by
arianvanp
8mo ago
I tried Web Components to create a `<passkey>` element to allow Passkey support in forms without having to write javascript as an end-user. I ran into https://github.com/WICG/webcomponents/issues/814 As
54.
▲
by
arianvanp
8mo ago
> I gather that you think the boot images are distributed as OCI image Yes? That's literally the sales pitch on the website. Am I missing something? Quote from https://bootc-dev.github.io/ tells me that bootc is usi
55.
▲
by
arianvanp
8mo ago
Are we really bringing OCI to freaking OS builds? Nothing about OCI is pleasant. A list of Tarballs is the most backwards boot format I can think of. Terrible for reproducibility. Terrible for security. Boot images should be Dm-verity prote
56.
▲
by
arianvanp
8mo ago
Munich court is terrible. A disgrace to democracy. They also allow terrorizing of citizens for "copyright infringement" through siding with Movie industry. All ISPs just hand over your personal data to these copyright trolls no qu
57.
▲
by
arianvanp
8mo ago
They didn't migrate yet.
58.
▲
by
arianvanp
8mo ago
Claude sandbox practically useless IMO. It gives read access to everything by default so its not deny-default.
59.
▲
by
arianvanp
8mo ago
The point of jj is that it supports lockless concurrent writes to the same repo out of the box. It is what makes it a lot more suitable than git for agent workflows
60.
▲
by
arianvanp
9mo ago
Apple uses Blind Signatures for attestation. It's how they avoid captchas at CloudFlare and Fastly in their Private Relay product https://educatedguesswork.org/posts/private-access-tokens/
More ›