Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ashishb
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
91.
▲
by
ashishb
8mo ago
I would configure mailman with permanent write access to the mailbox area That's what I with my sandbox right now
92.
▲
by
ashishb
8mo ago
Some tools do require Internet access. Further, I don't even want to take the risk of running 'npm install markdownlint' anymore on my machine.
93.
▲
by
ashishb
8mo ago
So you have to install npm package markdownlint on your machine and let it run it's potentially dangerous postinstall step?
94.
▲
by
ashishb
8mo ago
It also has persistent permissions. Think about it from a real world perspective. I knock on your door. You invite me to sit with you in your living room. I can't easily sneak into your bed room. Further, your temporary access ends a
95.
▲
by
ashishb
8mo ago
> but in reality the system is thoroughly backdoored on every level from the CPU on up, and everyone knows it. Indeed. Why lock your car door as anyone can unlock and steal it by learning lock-picking?
96.
▲
by
ashishb
8mo ago
Tell me a better alternative that allows me to run, say, 'markdown lint', an npm package, on the current directory without giving access to the full system on Mac OS?
97.
▲
by
ashishb
8mo ago
Try https://github.com/ashishb/amazing-sandbox
98.
▲
by
ashishb
8mo ago
I ended up writing my own sandbox so that it works on Mac OS as well and can be used for other tools (but just AI agents) as well https://github.com/ashishb/amazing-sandbox
99.
▲
by
ashishb
8mo ago
I am running a lot of tools inside sandbox now for exactly this reason. The damage is confined to the directory I'm running that tool in. There is no reason for a tool to implicitly access my mounted cloud drive directory and browser c
100.
▲
by
ashishb
8mo ago
GitHub Stars are not a selection mechanism. They are filtering mechanism for most people. Imagine someone is choosing between three FOSS projects - one has 90K stars, one has 30K and the thirdone has 1K. In your meeting, the engineer will s
101.
▲
by
ashishb
8mo ago
> Any company seriously looking to replace GitHub should pay some attention the social network aspect of it. Indeed. And I would say it is not just social signals but even non-social authority signals. E.g. how many other projects depend
102.
▲
by
ashishb
8mo ago
The hacker News crowd has always these elitist takes - I don't look at GitHub Stars - I don't use Facebook - I am never persuaded by advertisement - I can build Dropbox over a weekend Even if these are true, it is irr
103.
▲
by
ashishb
8mo ago
The real lock-in is stars, not reliability [1]. They can have weekly outages, and the FOSS products would still be forced to be on GitHub. 1 - https://ashishb.net/tech/github-stars/
104.
▲
by
ashishb
8mo ago
Very few people understand the depth of what you just said. $2K or even $20K is meaningless for a parent making $100K or more. Kids have a negative value to a professional class member. If you engage in agriculture or some similar activity,
105.
▲
by
ashishb
9mo ago
Fair point. I should have said broadly.
106.
▲
by
ashishb
9mo ago
Good for you. I meant as a general rule of thumb.
107.
▲
by
ashishb
9mo ago
In the short-term it can work. Over time maintenance becomes hard New iOS and Android features, sometimes backward-incompatible are introduced. And now, you need your dependencies to implement them. Which might or might not happen. At best,
108.
▲
by
ashishb
9mo ago
There have been several iterations to have a unified way to build Android and iOS apps. - using HTML - using JavaScript - using JS+React - using Dart - using Kotlin - using Swift This fundamentally does not work for anyone
109.
▲
by
ashishb
9mo ago
Interesting project. This won't work on Mac, right?
110.
▲
by
ashishb
9mo ago
> This looks awesome! Do you have a mental process you run through to determine what gets run in the sandbox, or is it your default mode for all tools? Here's what I use it for right now - yarn - npm - pnpm - mdl - Ruby-based Markdo
111.
▲
by
ashishb
9mo ago
6 months back I started dockerizing my setup after multiple npm vulnerabilities. Then I wrote a small tool[1] to streamline my sandboxing. Now, I run agents inside it for keeping my non-working-directory files safe. For some tools like mar
112.
▲
by
ashishb
9mo ago
Afaik, code running inside https://github.com/dagger/container-use can still access files outside the current directory.
113.
▲
by
ashishb
9mo ago
> Does the lack of pip confuse Claude, that would seemingly be pretty big It has not been an issue for me. But yeah, one can always enhance and use a custom image with whatever possible tools they want to install.
114.
▲
by
ashishb
9mo ago
That's why I run it inside a sandbox - https://github.com/ashishb/amazing-sandbox
115.
▲
by
ashishb
9mo ago
I run them inside a sandbox. The npm community is too big that one can never discard it for frontend development.
116.
▲
by
ashishb
9mo ago
> It does not recursively install dev-dependencies. So, these ~100 [direct] dev dependencies are installed by anyone who does `npm install react`, right?
117.
▲
by
ashishb
9mo ago
> They won't be installed if you just depend on React. Please correct me if I am wrong, here's my understanding. "npm install installs both dependencies and dev-dependencies unless NODE_ENV is set to production."
118.
▲
by
ashishb
9mo ago
> Many container escapes are also because the security of the underlying host, container runtime, or container itself was poorly or inconsistently implemented. Sure, so running `npm install` inside the container is no worse than `npm ins
119.
▲
by
ashishb
9mo ago
> definitely wouldn't recommend `npm install <actually a random package>`, even in Docker. That's not the main attack vector. The attack vector is some random dependency that is used by a lot of popular packages, which y
120.
▲
by
ashishb
9mo ago
> Larger companies do exactly this. Someone committed malicious code in Amazon Developer Q. AWS published a malicious version of their own extension. https://aws.amazon.com/security/security-bulletins/AWS-2025-.
More ›