Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jamiesonbecker
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
61.
▲
by
jamiesonbecker
6y ago
A monolith does not necessarily mean a single binary.
62.
▲
by
jamiesonbecker
6y ago
> Systemd is a replacement for Unix... I suppose that in 10 years a linux kernel + systemd could be a complete system, with little need for other userland. 'Doing many things, none of them well' is actually the opposite of UNIX
63.
▲
by
jamiesonbecker
6y ago
Then.. why does it exist? More importantly, why is it enabled by default? Does systemd want to be an init system? A logging system? a dnsmasq replacement?
64.
▲
by
jamiesonbecker
6y ago
> The firmware does not support ACPI S3 suspend. ... I am so over modern Thinkpads.
65.
▲
by
jamiesonbecker
6y ago
What's wrong with bluetooth in general? Essentially, it's an under-specified security nightmare. Of course, it's also pretty important for certain classes of devices.
66.
▲
by
jamiesonbecker
6y ago
Don't forget "crazy" and "nuts". Bonus points if you can fit all of them in a single comment.
67.
▲
by
jamiesonbecker
6y ago
> There's no value in a flame war, regardless of which side is the majority. Extremely heated subjects do not lead to positive results here or anywhere. The only way to win as a person is not to play the game despite the very strong
68.
▲
by
jamiesonbecker
6y ago
Instead of an instance, you could just rent a dedicated server with some mirrored TB of drives. For example, https://www.server4you.com/dedicated-server has 2x 2TB for $25/mo in St. Louis, MO and unmetered bandwidth. O
69.
▲
by
jamiesonbecker
6y ago
Also, "unofficial bash strict mode" is terrific, especially if you intend to distribute a script: http://redsymbol.net/articles/unofficial-bash-strict-mode/ set -euo pipefail IFS=$'\n\t&#x
70.
▲
by
jamiesonbecker
6y ago
> I'd have flagged it already but "voting machines" is vaguely tech related and it's still here. Agreed. > It appears you only care what a sizable portion of HN wants up to a point as they are the one's upvoti
71.
▲
by
jamiesonbecker
6y ago
> You can collapse threads you no longer intend to read. True, but only if there's more than one thread on the page.
72.
▲
by
jamiesonbecker
6y ago
Not to put too fine a point on it, but this entire posting is literally a discussion of politics/general news. The tone of "I see no reason.. limited value" seems a bit condescending to what appears to be a sizable portion of
73.
▲
by
jamiesonbecker
6y ago
Fundamental changes shouldn't have been papered over by calling the new language Python, as it was a fundamentally different language at that point.
74.
▲
by
jamiesonbecker
6y ago
> Most Linux software is written by Red Hat.. even a major contributor to the kernel itself. Oh! I didn't realize Red Hat had hired RMS. :-/ Setting aside the controversial nature of those three specific projects (and the fac
75.
▲
by
jamiesonbecker
6y ago
> You can shop around for a consultancy or engineer and pay them to try to debug the issue, but they’re always going to be coming in as a 3rd party Except for software that was written in-house or the packaging itself, RH or Canonical wo
76.
▲
by
jamiesonbecker
6y ago
Here's Zapier's docs on that: https://zapier.com/help/doc/how-get-started-stripe It looks like this documentation might predate Stripe's auto-generated API keys, which generates a separate API key
77.
▲
by
jamiesonbecker
6y ago
I must be missing something! What does this give me as opposed to just using Stripe's API / checkout process directly? > Apart from a few exceptions, this library mirror Stripe's API. You can use Stripe's Docs or our
78.
▲
by
jamiesonbecker
6y ago
Stripe has dedicated application API keys for precisely this purpose. You are likely doing it wrong.
79.
▲
by
jamiesonbecker
6y ago
> Isn’t PCI compliance handled by Stripe? Not if you handle the card numbers outside of Stripe (through a backend) instead of letting them pass through Stripe's iframe. It's unclear to me if that's happening here. Stripe C
80.
▲
by
jamiesonbecker
6y ago
Almost certainly not PCI Compliant. The fact that they don't mention that on main page makes me wonder if they even know what it is. Use extreme caution.
81.
▲
by
jamiesonbecker
6y ago
Exactly, that set of standard questions and responses (ie controls) is exactly what a VSA is. However, SOC2 takes it a step further and requires an formalized audit from a AICPA certified security auditing firm[0]. Therefore, a security que
82.
▲
by
jamiesonbecker
6y ago
Agreed! IMO, ask for the company's SOC-2 once you've demonstrated that you are a legitimate prospective customer with a budget and not a competitor or social engineer. That should address most concerns, or at least make the questi
83.
▲
by
jamiesonbecker
6y ago
You can use the QR codes to enroll new devices. (But then so can anyone who finds your QRs, so if you do this, keep them safe)
84.
▲
by
jamiesonbecker
6y ago
I've seen this happen with provider- or phone- default messaging apps on Android. Yet another reason to go with (at least) an unlocked phone.
85.
▲
by
jamiesonbecker
6y ago
If you have S3 bucket logging turned on, the cost will continue to grow forever, because it's literally generating its own transaction charges and then snowballing the storage. It's like an evil genius's perpetual motion mach
86.
▲
by
jamiesonbecker
6y ago
Explicit is better than implicit, and you can't get much more explicit than that.
87.
▲
by
jamiesonbecker
6y ago
Only if it's used. Not being facetious -- if you operate entirely within RAM (as if you had disabled swap), then it won't really be used much.
88.
▲
by
jamiesonbecker
6y ago
> side channel attacks.. gain access to privileged data/etc. through unprivileged processes True, but tbh that's not the first thing I'd reach for. if someone already has pwned your single function or a control plane, then
89.
▲
by
jamiesonbecker
6y ago
> There is a value to just human responses, answering someone's questions can help you look inwards to your service/product as well. We do respond to every single email, and hopefully fairly intelligently most of the time ;), e
90.
▲
by
jamiesonbecker
6y ago
> OK, I should have added in qualifiers 'highly competent and respected'. More bodies doesn't necessarily equal better product, for sure. Agreed. > They can devote teams of researchers and engineers to topics like CPU s
More ›