Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
inglor
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
26 ms
·
211.
▲
by
inglor
5y ago
Hey luca, I assume you are familiar with Mark’s extensive work on capability based security for ES?
212.
▲
by
inglor
5y ago
Basically by limiting the scope significantly and limiting it to language-level Promises you can create things like zero-cost async stack traces, async-call aware flame graphs and more for analysis and better lint rules and more specific ty
213.
▲
by
inglor
5y ago
`yield` is just syntactic sugar for the two-way generator communication protocol where the consumer calls `.next(value)` which returns a value in turn. This is as expressive and you can build `do` semantics on top of stuff like lists/e
214.
▲
by
inglor
5y ago
Haskell's system (with the io monad + do not all monads or in general) is extremely similar to async/await and most languages with co-routines can simulate do notation in Haskell pretty well syntactically. The advantage of somethi
215.
▲
by
inglor
5y ago
This is true and in general websockets (well, and webtransport/webrtc etc) are the only reliable way to detect navigation from the backend since none of the methods mentioned in the article work if the user simply closed the tab.
216.
▲
by
inglor
5y ago
note: You can use `pnpm import` for converting a lockfile.json to a pnpm-lock.yaml https://pnpm.io/cli/import (This is not an endorsement of or recommendation of pnpm which I personally don't use daily)
217.
▲
by
inglor
5y ago
Some anecdotes: - One time I posted on HN that I am willing to tutor people from Gaza for free (am Israeli). Got contacted by a Nigerian man (over 50+ years) instead. He successfully did FCC and a few other courses and got a job (with minim
218.
▲
by
inglor
5y ago
My wife installed TrueCaller on her phone. She is technical but not a developer. I asked if she knows they steal your contact list and spy on you and her answer was “so? It’s just phone numbers and names and they need to get the data somewh
219.
▲
by
inglor
5y ago
I work in an infra team in a large codebase for Microsoft. We are the people who do the sort of bug-analysis to figure out what technologies work well and what needs improvements. Hooks are a constant area of struggle and people make tons o
220.
▲
by
inglor
5y ago
This is really neat! I see you're using Solid and Vite - how are you enjoying them so far for the UI?
221.
▲
by
inglor
5y ago
If anyone wants to work on this (make web streams faster in Node) it'd be welcome. The main reason web streams are slower in Node is a lot less work has been put into making them fast. They're mostly seen as an interop layer.
222.
▲
by
inglor
5y ago
Deno is betting on edge computing to explode and offers a good offering (Deno Deploy) in that space leveraging how it has a smaller API and faster startup times than Node. It also thinks that edge computing is a good space to leverage the m
223.
▲
by
inglor
5y ago
To be fair we have most web APIs that Deno has in Node with the exception of some we probably don't want to have. Namely: stuff like URL, fetch, AbortSignal, EventTarget, BroadcastChannel and a few others.
224.
▲
by
inglor
5y ago
I've switched a few projects back and forth but I am on the more experienced side (I'm comfortable with both codebases and have 2 digit commit numbers in both projects). My motivation for Node was that Deno's instrumentation&
225.
▲
by
inglor
5y ago
You can already turn on repository interaction limits limiting issues/PRs to collaborators. It needs to be re-enabled every 6 months https://docs.github.com/en/communities/moderating-comments-a...
226.
▲
by
inglor
5y ago
Hi, I work for Microsoft at an engineering role and would like (with your permission) to escalate this internally since this experience sounds awful and nothing like what I experienced or what we aim to deliver. So - while I'm just a l
227.
▲
by
inglor
5y ago
As a non-US person I've refused to tip in the US (well, left an explicit 0.10$ tip so they know I didn't forget) when getting really bad service before. While it was probably considered rude I have never had the wait-staff chase m
228.
▲
by
inglor
5y ago
I have no idea and I don't work on that bit but there are lots of troubleshooting guides on "what to do if Defender is slow in situation X" in our docs - in 99% of cases it's interference (another program scanning) or sp
229.
▲
by
inglor
5y ago
You (unfortunately) did the right thing and this is (unfortunately) still common in several Eastern European countries (and elsewhere for example certain areas in India and LATAM) especially outside the central areas. I actively avoid trips
230.
▲
by
inglor
5y ago
I am not an expert - just a user and an engineer working on this. I'm happy to ask one of our PMs to review it they know and understand the product a lot better than I do. From reading the article everything "sounded right" b
231.
▲
by
inglor
5y ago
Not the opinion of my employer but: no. A state level attacker can likely acquire 0-day exploits that are not patched and bypass defenses. Microsoft's offering does some really cool stuff like: - Automatically detecting anomalous behav
232.
▲
by
inglor
5y ago
The inability to simply "see client data" even if you go through multiple bastions did kind of surprise me. I worked at several startups before Microsoft where just asking the client for permission was considered OK. This certainl
233.
▲
by
inglor
5y ago
Microsoft _does_ provide a bunch of the enterprise security features other vendors provide in its home anti-virus offering. Microsoft is also the biggest vendor of enterprise endpoint security solutions - that is Microsoft Defender and prod
234.
▲
by
inglor
5y ago
Hey, sorry for all the name changes of Microsoft Defender. I work at MSec (Microsoft's security org). We ended up absorbing and acquiring a few companies to provide a better offering and a lot of re-branding happened. For example Secur
235.
▲
by
inglor
5y ago
The Stormlight Archive series contains some of the best worldbuilding, character development and story telling I have ever read. Brandon is also super nice (got to meet him in a few conferences) and down to earth for an author of his magnit
236.
▲
by
inglor
5y ago
500k-2m depending on severity is a good ballpark figure for numbers I’ve heard of
237.
▲
by
inglor
5y ago
A bunch of friends just look for and then sell vulnerabilities (the good ones to bug boundary programs the less ethical ones to governments or companies). The price of a zero day exploit is quite high (for both sides) and I have friends who
238.
▲
by
inglor
5y ago
Pegasus (like all products in that space) is an on-prem product, NSO send you the system limited to a number of usages and certain phone number restrictions and then you use it. To counter: do you really think every country purchasing Pegas
239.
▲
by
inglor
5y ago
This is off by default due to security concerns but can be turned on with a flag. It's mainly in the community feedback phase so if there is anything you want to tell Node (be it "I want this!" or "This is a bad idea&quo
240.
▲
Node.js adds support for direct registry-less HTTPS imports
(github.com)
129 points
by
inglor
5y ago
|
114 comments
More ›