Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
kevincox
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
61.
▲
by
kevincox
3mo ago
Because the web browser can't make arbitrary network connections. Even if it was implemented intercepting at the HTTP layer (which would probably be much more difficult than just intercepting the low level socket operations) you wouldn
62.
▲
by
kevincox
3mo ago
Yes, I especially see this in code comments. You will get a PR where the comments reference an approach that wasn't the previous state and isn't the state of the PR. You can basically hear the dev telling Claude to take a new appr
63.
▲
by
kevincox
3mo ago
It reminds me of https://silverspaceship.com/static/
64.
▲
by
kevincox
3mo ago
In practice you don't convince Rust that everything is right. You let it prove that most of the code is right and you promise it (via unsafe) that the rest is. Ideally these unsafe blocks would be carefully documented, reviewed and ide
65.
▲
by
kevincox
3mo ago
I would say that Rust has a good story here. The simple form of this wouldn't compile. So you are generally presented two options: 1. Slap a reference count on it. 2. Use `unsafe` to promise the compiler that your code is right. I woul
66.
▲
by
kevincox
3mo ago
It is quite possible that Linux is the bigger target so it gets more focus. Vulnerabilities there are generally considered more valuable and notable. It would be very difficult to use these numbers to get a meaningful "more secure"
67.
▲
by
kevincox
3mo ago
For me it is a mix. I mostly get my content from feeds. But I also aggressively prune my subscriptions so that I catch up, I don't have so much that I fall behind. When I do catch up in happy to burn a bit of time on Hacker News, Lobst
68.
▲
by
kevincox
3mo ago
The problem in my experience is that while nil is a perfectly reasonable default 9/10 times that 1/10 happens often enough and causes major problems that it is worth taking the extra few seconds to write it explicitly in the code
69.
▲
Developer Verification – LineageOS
(lineageos.org)
2 points
by
kevincox
3mo ago
|
1 comments
70.
▲
by
kevincox
3mo ago
Or even better, just let the website return a set of flags (like age_rating=18) in a header and let the user agent decide if it wants to show it, block it, ask for approval, ... Then the policy lives on the user agent.
71.
▲
Pact: Anonymous Credentials for the Web
(hacks.mozilla.org)
66 points
by
kevincox
4mo ago
|
9 comments
72.
▲
by
kevincox
4mo ago
I imagine that this is primarily for preorders and will be dropped as soon as there is sufficient stock.
73.
▲
by
kevincox
4mo ago
We do it. We give the user the option to export debugging information and send it to us.
74.
▲
by
kevincox
4mo ago
But the streamlined manufacturing is still more expensive than no heated seats. So someone needs to pay for it. There are two reasonable options 1. charge everyone a bit more by including it as a standard feature 2. charge only some people
75.
▲
by
kevincox
4mo ago
The global/user wide exclude is a feature that should be more widely known. I frequently have people submitting changes to add their IDE/OS/AI/... files to every project's .gitignore. They are almost always pleasant
76.
▲
Jami – Feature Drop: Shared Services
(jami.net)
1 points
by
kevincox
4mo ago
|
0 comments
77.
▲
by
kevincox
4mo ago
> There is some rework needed to "bootstrap" the agent each time it has to descend back into Narnia Makes me wonder if it would be best to have some sort of "fork" operation to start the new agent. Rather than startin
78.
▲
by
kevincox
4mo ago
I think the question is it a per-feed rate limit or an all-feeda rate limit. If the former then yeah, a complete non-issue. But if it is a global limit than for people following a decent number of feeds it can definitely be an issue.
79.
▲
by
kevincox
4mo ago
Is it that unfortunate? Tasks that don't require high-quality translation now don't need human labor. We should be celebrating. The sad part is that we haven't figured out how to distribute our resources fairly to these peopl
80.
▲
by
kevincox
4mo ago
I agree. I much prefer OpenCode (with the web UI). My idea combo would be Claude models with opencode but of course that is far more expensive because Anthropic wants to lock you in.
81.
▲
by
kevincox
4mo ago
Teslas also can't drive themselves so I doubt Waymo is worried much about them.
82.
▲
by
kevincox
4mo ago
"Kill everyone in the area" is probably the least harmful for the reason described. It is much more dangerous when they start to be selective. Then people start trusting the selection capabilities and use them in cases where they
83.
▲
by
kevincox
4mo ago
It adds another provider that you have to trust with your data. Previously the assumption is that AWS was securely handling your data and you may have the data on AWS to start with anyways. Now you have two providers handling your data whic
84.
▲
by
kevincox
4mo ago
I think playing something when I hit the play button makes a lot of sense. (The headphones auto-play is a bit less obvious than the keyboard key, I would probably want that to do nothing in this case.) The issue IMHO is that this is not con
85.
▲
by
kevincox
4mo ago
This is true but some sites handle it well. My browser auto-fills the email and password properly even though they are on separate "steps". Other sites the email field doesn't auto-complete in any way (but the password later
86.
▲
by
kevincox
4mo ago
I can only assume that every time I back out of these sites because I don't want to check the box or just don't want to wait a few seconds that is marketed to the site owner as a GREAT VICTORY as I am clearly a EVIL BOT that they
87.
▲
by
kevincox
5mo ago
I think the attack looks more like this: 1. I log into service X with account A1 via Mullvad from country C1. 2. I log into service X with account A2 via Mullvad from country C2. If the service wanted they can calculate how likely it is tha
88.
▲
by
kevincox
5mo ago
The logic is quite simple. Management thinks that AI can improve productivity, but knows that there will be some resistance and some learning curve. So they force people to use it so that people can 1. develop their skills and workflow and
89.
▲
by
kevincox
5mo ago
The fundamental problem is that the kernel is just too huge of an attack surface. It is probably always going to have exploitable bugs. A VM (especially hardware assisted) is a relatively tiny attack surface and it shows in the amount of bu
90.
▲
by
kevincox
5mo ago
It doesn't. All third-party contributions must assign copyright to Bitwarden. https://contributing.bitwarden.com/contributing/ https://cla-assistant.io/bitwarden/clients
More ›