Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
devrand
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
91.
▲
by
devrand
4y ago
FWIW they do support DTS (but not DTS-HD) now.
92.
▲
by
devrand
4y ago
What you're expressing was the mistake of overloading the meaning of a certificate and incorrectly teaching people that the lock meant trusted. None of this was the fault of Let's Encrypt. They just exposed the mistakes that were
93.
▲
by
devrand
4y ago
There is the new Privacy ICAO Address (PIA) program [1] from the FAA that somewhat adds a layer of privacy. It's not perfect by any means, and you can piece together the data to figure out the actual identity if you're so inclined
94.
▲
by
devrand
5y ago
Will Github verify a commit associated with a GH account via an unverified e-mail address? If so then it's probably fine since you would have to demonstrate ownership of an e-mail address that was contained in the signed payload, or yo
95.
▲
by
devrand
5y ago
It's three months to become aware of the problem, and maybe migrate. If you cannot complete the migration in the window you can opt into the deprecation trial and you'll have until around August.
96.
▲
by
devrand
5y ago
It's three months from notification until it's disabled by default. You can opt into the deprecation trial and you'll have until early August to migrate.
97.
▲
by
devrand
5y ago
If you're using the U2F API you've been getting a warning about it since November. I can't imagine developers that are using it are still unaware at this point, particularly when it's a user-facing warning and not just b
98.
▲
by
devrand
5y ago
They do not. Also as the industry has moved toward Precision Scheduled Railroading (PSR) which allows for running trains that are much much longer than they used to be (up to 2 miles+) with much less staffing. So even if there was someone t
99.
▲
by
devrand
5y ago
There's an exterior door for it on the front fender.
100.
▲
by
devrand
5y ago
I think a project like this is extremely difficult to maintain due to the nature of being essentially being a web scraper. They support a ton of sites that each may make changes that suddenly break the tool, completely out-of-band. Maintain
101.
▲
by
devrand
5y ago
Do you even need to press F12? Is looking at the HTML is the problem? What if I just download the page? I now have leaked SSNs saved to my computer. Is that criminal under in governor's mind?
102.
▲
by
devrand
5y ago
Haha yeah I'm fairly used to seeing HTML escaping in my name. The weirdest case I've had with that is the Six Flags mobile app. To add a season pass you need to provide your card number and last name. For the life of me I couldn&#
103.
▲
by
devrand
5y ago
> Tell them Google is playing evil games with their empire and it's impacting hardware you purchased. Suggest a breakup of Google and YouTube. Why would a breakup make a difference here? AFAICT the entire deal is limited to YouTube.
104.
▲
by
devrand
5y ago
My last name has an apostrophe in it which Apple apparently loves to embed directly into their JavaScript unescaped. For a long time neither I nor Apple could look up AppleCare status on my stuff as they were all linked to my Apple ID. The
105.
▲
by
devrand
5y ago
How else would you even word it? They accurately described the situation. If people are leaping to "I know it wasn't us" then that's their own misinterpretation.
106.
▲
by
devrand
5y ago
I don't see the conflict with those statement. They're saying "we don't know where the information came from and we haven't found any evidence that it came from Coinbase itself". It's difficult to prove a
107.
▲
by
devrand
5y ago
uBlock Origin is already degraded on Chrome as it cannot perform CNAME uncloaking like Firefox can.
108.
▲
by
devrand
5y ago
> Why was Ozy trying to mislead Goldman about its relationship with YouTube? > We were not. WHAT!? Even if I were to accept the mental health claim, that's only going to cover the lapse in judgement. I don't think it's
109.
▲
by
devrand
5y ago
I haven't used it but Stripe Identity recently came out: https://stripe.com/identity
110.
▲
by
devrand
5y ago
I'm not sure that last part is true. The building hasn't been delivered yet. Google did announce the lease a couple years ago, but I doubt that lease has commenced as the building is still under construction. That being said, Goog
111.
▲
by
devrand
5y ago
The only practical benefit I can imagine is that it puts a deadline on the damage from a root compromise. Not sure how much that's actually worth though. If you're designing a device that cannot be updated (or won't be), you
112.
▲
by
devrand
5y ago
According to the video you linked, AdSense and in-video ads are basically tied for income (26 and 27% respectively). Both of those are significant sources of income!
113.
▲
by
devrand
5y ago
Having contributed to youtube-dl in the past, long turnaround times from the maintainers was pretty normal. I've had (and still have some) open PRs that have been ready to merge for going on a year. The two months is really not that bi
114.
▲
by
devrand
5y ago
The problem is that the industry is ripe with fraud, even from what were legitimate customers. I listed some examples elsewhere, but I'll repeat: * Money laundering by people making anonymous accounts with stolen credit cards and then
115.
▲
by
devrand
5y ago
True, but I think there's obvious legs to it. Some common reasons for fraud are: * Laundering money (buy accounts with stolen cards, sell them using crypto to people who don't want to be associated with the accounts). * People fal
116.
▲
by
devrand
5y ago
While that might help them accept payments, they'll likely then have troubling converting that back to USD and doing normal business banking. While crypto could fix those issues as well, it's just layers and layers of segments tha
117.
▲
by
devrand
5y ago
There was a thread on this a year ago [1]. The leading theories seem to be that they use Stripe for SFW content and others (ex. CCBill) for NSFW content. [1]: https://news.ycombinator.com/item?id=24291790
118.
▲
by
devrand
5y ago
My understanding is that this industry has way higher than average chargeback/fraud rates, which is really what discourages payment processors/banks from wanting to support them.
119.
▲
by
devrand
5y ago
I think that GamerPay might be in the clear, but they require Web API keys from users. The terms [1] of those keys don't seem to allow for sharing API keys with third parties like this: > 2. License to Steam Web API & Steam Dat
120.
▲
by
devrand
5y ago
The fact that you need to hand over a Steam API key is really worrisome, and the FAQ entry for it isn't all that reassuring [1]. You're basically just saying "no it's cool trust us". Are you encrypting these API key
More ›