Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ashekhawat
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
1.
▲
Show HN: HyperAgent: open-source Browser Automation with LLMs
(github.com)
4 points
by
ashekhawat
1y ago
|
0 comments
2.
▲
by
ashekhawat
2y ago
We use a new browser for each session you create! We don't share the browsers between different customers.
3.
▲
by
ashekhawat
2y ago
Sorry for the confusion, yes we do! https://docs.hyperbrowser.ai/guides/connect-with-puppeteer Happy to help with anything :)
4.
▲
by
ashekhawat
2y ago
We will definitely look into it! As we are adding more users scalability is our primary concern right now though
5.
▲
by
ashekhawat
2y ago
Of course, would love for you to take a look! I mentioned in another comment but we are working on lower cost/faster scraping focused endpoints, It's coming next week
6.
▲
by
ashekhawat
2y ago
We keep "prewarmed" browsers ready for new sessions. Looking into firecracker though!
7.
▲
by
ashekhawat
2y ago
We don't have that yet, but you could definitely do it in your own scripts right now using our browser. We'll try to think of ways to make it easier though :)
8.
▲
by
ashekhawat
2y ago
Thank you! We do make sure we are using legitimate proxy providers. Also happy to manually set it to the provider of your choice if you are interested in doing that :)
9.
▲
by
ashekhawat
2y ago
Hey! Completely hear you on that, right now we just have endpoints for headless browsers, this is a instance running chrome with dedicated resources that you have full access to. This comes with proxy services and captcha solving. This co
10.
▲
by
ashekhawat
2y ago
We actually keep a pool of browsers ready so when a request comes we just assign it to an already running browser. This way in most situations there is no actual waiting for chrome to startup!
11.
▲
by
ashekhawat
2y ago
Just docker containers in GCP and AWS. We do all the instance management ourselves. It seems like you are working on infra for this from your bio! Send me an email would love to chat :)
12.
▲
by
ashekhawat
2y ago
Hey! So we have to use a different proxy service for some sites (LinkedIn included). Just ask in the app support and we can do that. We are also making custom endpoints for LinkedIn as well that should be ready soon, Ill shoot you an email
13.
▲
by
ashekhawat
2y ago
Hey, 100 max on our paid plan but I can enable 1k concurrently if you want!
14.
▲
Show HN: Hyperbrowser – Scalable Browser Infrastructure for AI Apps
(hyperbrowser.ai)
57 points
by
ashekhawat
2y ago
|
45 comments
15.
▲
Open Source CSP Report Listener
(github.com)
5 points
by
ashekhawat
3y ago
|
0 comments
16.
▲
Writing a Node Library in Rust
(blog.metlo.com)
9 points
by
ashekhawat
3y ago
|
0 comments
17.
▲
Automatically Testing for Auth Vulns at Scale
(blog.metlo.com)
2 points
by
ashekhawat
4y ago
|
0 comments
18.
▲
by
ashekhawat
4y ago
Hey! Yes tests can automatically be created based on the API traffic Metlo captures. Thats also the main difference between Metlo and Nuclei… we autogenerate tests based on the API schemas discovered for common vulns. You can also customize
19.
▲
Show HN: Quickly Create Security Tests for All Your APIs (YC S21)
15 points
by
ashekhawat
4y ago
|
3 comments
20.
▲
by
ashekhawat
4y ago
Hey! For GQL we currently count each distinct query string your service receives as an endpoint. We understand that may not be ideal for some use cases (i.e. if you have customers sending arbitrary queries to your backend). We're still
21.
▲
by
ashekhawat
4y ago
Hey! Yes, false positives are are a problem that we’re hyper aware of, and a big challenge with most security tools. We have less of a problem with this than other tools for a few reasons :) 1) We're a bit different from a standard fuz
22.
▲
by
ashekhawat
4y ago
Here you go! https://backend.metlo.com/deploy/aws?region=us-east-2
23.
▲
by
ashekhawat
4y ago
Currently we only have AMI's in US Regions, although Metlo should work anywhere... Let me know which region you want to deploy in and I can make an AMI there right away :)
24.
▲
by
ashekhawat
4y ago
That makes sense... Since we generate specifications for an API automatically, it would be much more efficient (and accurate) than other fuzzing tools :) We'll definitely look into doing that, thank you for the advice!
25.
▲
by
ashekhawat
4y ago
Yup, there is a button to download at the top right of the spec: https://demo.metlo.com/endpoint/2be9f63e-a436-4ffc-b85a-e421...
26.
▲
by
ashekhawat
4y ago
Hey @freeqaz! We analyze trace data that we capture from production traffic to generate what the Open API Spec could be. Here is an example of an auto generated spec: https://demo.metlo.com/endpoint/2be9f63e-a436-4ffc-b
27.
▲
Show HN: Metlo (YC S21) – An Open Source API Security Tool
(github.com)
34 points
by
ashekhawat
4y ago
|
6 comments