Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
farfatched
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
61.
▲
by
farfatched
4mo ago
> If you can catch 50% of user errors with some complex regex, but the other 50% such errors are uncaught, is that of any benefit during sofware design? No, because you still have to solve that problem, probably with email validation by
62.
▲
by
farfatched
4mo ago
> but enterprise/government people are surprisingly demanding about this stuff working because they have extremely weird requirements for routing mail to and through legacy systems. So I bet this still works at the mailer level and
63.
▲
by
farfatched
4mo ago
Could they have consciously chosen to remove that functionality? E.g. to simplify code, or if they wanted all mails to have a domain (if, for example, they wanted to integrate with reputation systems that were domain oriented)?
64.
▲
by
farfatched
4mo ago
> It’s likely that more people out there are being filtered by badly-implemented form validation than there are being filtered by their own need of hand-holding. I wish this was asserted with evidence. The author might suggest this becau
65.
▲
by
farfatched
4mo ago
> The vulnerability could have been exploited to undetectably create an unlimited amount of counterfeit ZEC within Orchard. Wow. This is pretty damning. > the vulnerability had evaded years of scrutiny by many of the world’s best cryp
66.
▲
by
farfatched
4mo ago
Ah, I see the M5 AtomS3 Lite has a grove, which is probably robust enough for me. Great!
67.
▲
by
farfatched
4mo ago
Great! I'd like to use as a serial-over-wifi adapter, for remote management of my SBCs. Can anyone suggest a decent device for this, that relies on no soldering or 3d printing? Ideally the device would expose a serial-over-USB port, so
68.
▲
by
farfatched
4mo ago
The title of the post suggests the issue is allowing that syntax in URLs. Is there an equivalent syntax for IPv4 addresses?
69.
▲
by
farfatched
4mo ago
> building software and running medium/large test suites on it would be far too slow I'd figured remote development was the only viable workflow for these devices anyway?
70.
▲
by
farfatched
4mo ago
> A small community driven team could manage all that fine. Are there any examples of small community driven teams responsible for managing $200 million revenue?
71.
▲
by
farfatched
4mo ago
The first draft of https://en.wikipedia.org/wiki/Great_Barrington_Declaration was very biased, but over time it has been neutered. I see this as a win for Wikipedia. Though arguably it being biased during the time of i
72.
▲
by
farfatched
4mo ago
They were a transitional technology.
73.
▲
by
farfatched
5mo ago
Kind of sucks to have to sleep with a white noise machine?
74.
▲
by
farfatched
5mo ago
> There's this adage about consuming whatever newspaper reporting, everything seems fine and dandy, until one day they report on something in your field. Say, chemistry, and you're a chemist, and... it's all wrong. Even th
75.
▲
by
farfatched
5mo ago
There was interesting commentary on https://lobste.rs/s/z0ozbb/caddy_cert_expired_because_system...
76.
▲
by
farfatched
5mo ago
Fair point. I had figured the cost would decrease in time as deterministic builds became the norm (i.e. build tools stop including build timestamps). I agree that it might not have positive POI. Bit tricky for me to judge.
77.
▲
by
farfatched
5mo ago
For sure. This has been the status quo in Debian for a while now. You can build, and use diffoscope to audit the differences. It's a stronger security property to have bit-for-bit reproducibilty, and it looks like Debian are ready to c
78.
▲
by
farfatched
5mo ago
I've been 100% on NixOS on many years, but it's Debian that really drove this project. They're still a pragmatic choice for many usecases.
79.
▲
by
farfatched
5mo ago
Yes, making sure build timestamps are reproducible isn't a security win. What is a win is that two independent parties can run the same build, and get the same binaries. This is important because it removes trust from builders: anyone
80.
▲
by
farfatched
5mo ago
It's not that simple. The marginal gains are inevitably diminishing (since you pick the lucrative options). There's a practical rate at which work can be done, limited by all sorts of things like organisation friction, how fast cu
81.
▲
by
farfatched
5mo ago
What is an intern in this context? When I hear "intern" I think of a summer internship. Are there other types for software developers?
82.
▲
by
farfatched
5mo ago
Do they always miss it, or is it that they are aware, but disagree on the cost-benefit of hiring experienced engineers? This is contextual on a number of factors. It seems difficult to establish in the general case.
83.
▲
by
farfatched
5mo ago
Ouch, I wasn't aware they were discounting so much. There goes my subscription escape plan.
84.
▲
by
farfatched
5mo ago
If this logic applied, then there would be no purpose in them having the 5 hourly limit.
85.
▲
by
farfatched
5mo ago
Same, though I'm reconsidering, in light of the recent bugs (which can happen to any provider) and the increased limits. I guess that's at least 3x more Opus for my usecase.
86.
▲
by
farfatched
5mo ago
DNSSEC operations feels like one of those problems that should be tackled with formal methods, like how some subway controllers are. But I expect it's treated like "very serious and scary ops", which isn't wrong, but isn
87.
▲
by
farfatched
5mo ago
That's a fair point. I hadn't considered that societies rightfully impose standards on these things. I consider it too early to judge the cost-benefit, but it's fair that others might have already evaluated that. I rescind my
88.
▲
by
farfatched
5mo ago
Yes, it's a crappy outcome, but endpoints can still choose to enforce this. Further, it's not a persuasive argument against more DNSSEC usage, since if there was more DNSSEC usage then resolvers would be more reluctant to disable
89.
▲
by
farfatched
5mo ago
If only Chrome had deferred implementing delta updates back in 2009 (?), they could have introduced it along with this to make it a net zero change!
90.
▲
by
farfatched
5mo ago
If it's emissions they worry about, then it's anything emitting. Are they against washing machines too? Or are they just grandfathered in?
More ›