Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
grincho
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
grincho
9y ago
That's what I've always liked about Sphinx: you can get reference docs extracted from source code, but you can also surround them with more in-depth introduction or explanation. For example, these are the reference docs to a packa
32.
▲
by
grincho
9y ago
Author here. I just learned about esdoc this morning; thanks for mentioning it! But it doesn't appear to be much of an improvement over JSDoc for my purposes, as you still get little control over the organization of your content. It is
33.
▲
by
grincho
9y ago
You might prefer the more technical introduction at https://mozilla.github.io/fathom/intro.html#specific-areas-w... . It talks about Fathom in terms of declarativeness. > "on a selection of" One has to star
34.
▲
by
grincho
9y ago
> Fathom surely has uses beyond those the OP mentioned. (Author here.) In fact, Fathom isn't particularly coupled to the DOM, apart from the dom() call that acts as the initial source of data and some of its optional utility procedu
35.
▲
Fathom: a framework for understanding web pages
(hacks.mozilla.org)
5 points
by
grincho
9y ago
|
0 comments
36.
▲
by
grincho
10y ago
Pretty much. You use OpenVPN Connect ( https://itunes.apple.com/us/app/openvpn-connect/id590379981?... ) and set up openvpn on a VPS somewhere. The only exceptions are a few things like Facetime and Apple'
37.
▲
by
grincho
10y ago
There is one setting, underdocumented, which makes a big difference these days. spamc has a default ceiling of 10K, messages larger than which it passes unchecked. Spammers have started routinely including images just over that threshold to
38.
▲
by
grincho
10y ago
No, it really isn't. Download a copy of SpamAssassin, train it on 400 hand-picked spams from your own mailbox, train it on 400 arbitrary hams as well, and you will have very accurate spam filtering. I was shocked how well it worked; I
39.
▲
by
grincho
10y ago
Don't forget that pip 8 and above have hash verification built-in if that's all you need: https://pip.readthedocs.io/en/stable/reference/pip_install/#... . A hash-happy `pip freeze` equivalent i
40.
▲
by
grincho
10y ago
I've been doing this (with a different util) as my primary way of navigating for 20 years. It makes screen clutter irrelevant. Without physical function keys, I can't think of a way to maintain this with the same convenience, bein
41.
▲
by
grincho
10y ago
For about 15 years, I've bound each of my commonly used applications to a function key. This lets me work on a laptop-sized display without constant, furious alt-tabbing or hunting around with the mouse. Add an external keyboard with p
42.
▲
by
grincho
10y ago
I admire the compactness and power of Smalltalk. What advice would you give language designers looking to keep the cognitive load of a new language low? What was your design process like, and would you do it that way again?
43.
▲
by
grincho
11y ago
SHA1 collisions are affordable for large actors now and getting cheaper all the time, so git, with its SHA1 assumptions hard-coded, unfortunately doesn't protect you anymore. But the local hash approach is a good one, proven in pip 8 (
44.
▲
by
grincho
11y ago
CFL ballasts can overheat if you do that.
45.
▲
by
grincho
11y ago
A little off-topic: since 10.10 or so, FileMerge has started opening the bottom, free-editing pane by default—and at a random height, at that. Has anyone figured out how to disable that? It's driving me into the arms of a different, ot
46.
▲
by
grincho
11y ago
Hi, Mozilla developer here, speaking for only myself. I'm not sure why we don't make this clearer on the wiki page, but I think the reason there's no override is that any malware installation routine would simply activate it
47.
▲
by
grincho
11y ago
I'll just leave this here: https://pypi.python.org/pypi/peep/ . (It verifies Python package downloads against local hashes.)
48.
▲
by
grincho
12y ago
Mozilla employee here, speaking for myself but pretty close to the info source. That's actually what we're looking at doing: the sandbox would be in there, harmless, by default, but the actual crypto module (the "CDM") w
49.
▲
Peep 1.0: a "pip install" that is cryptographically repeatable
(pypi.python.org)
3 points
by
grincho
13y ago
|
0 comments
50.
▲
by
grincho
13y ago
Use of peep is based on a chain of trust. How do you trust your source code in the first place? That's how you trust your requirements file. As for how you arrange that trust, comparison of git hashes with a test-passing build on your
51.
▲
by
grincho
13y ago
That's the long-term plan, but it's hung up in bikeshedding for now: https://github.com/pypa/pip/issues/1175 . My faith in our ability to do it soon is evidenced by my release of a new feature releas
52.
▲
by
grincho
13y ago
I also found something comparable for npm this afternoon, after much searching: https://github.com/mozilla/npm-lockdown .
53.
▲
Peep: A "pip install" that is cryptographically guaranteed repeatable
(pypi.python.org)
9 points
by
grincho
13y ago
|
6 comments
54.
▲
Stakeholderism–The Wrong Road For Internet
(cavebear.com)
3 points
by
grincho
13y ago
|
0 comments