Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
marumari
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
marumari
2y ago
Safari is a lot more strict about cookies than Chromium or Firefox, it will straight up drop or ignore (or, occasionally, truncate) cookies that the other two will happily accept. I had hoped when writing this article that Google would look
2.
▲
by
marumari
2y ago
Thanks for pointing that out -- I've updated the article and given you credit down at the bottom. Let me know if you'd prefer something other than "kibwen."
3.
▲
by
marumari
3y ago
An unspecified "implementation detail" is essentially another way of saying that it doesn't work. I've ported my account on ActivityPub a couple time, and it's a horrendous experience -- not only do I lose all my po
4.
▲
by
marumari
4y ago
Platform keys are only required to be v2, as far as my understanding goes.
5.
▲
by
marumari
4y ago
this is a terrible time of year for interviewing, most places won’t be adding headcount until january.
6.
▲
by
marumari
6y ago
I guess we just have different definitions of what "broken" means, since disconnecting Gecko sounds fairly broken to me. :)
7.
▲
by
marumari
6y ago
Because huge chunks of are broken in the new browser engine, and could leave your browser in an unrecoverable state.
8.
▲
by
marumari
7y ago
X25519 is the mechanism for using Curve25519. Software that uses OpenSSL all uses “X25519” and so it would be needlessly confusing to use other verbiage despite being more technically correct.
9.
▲
by
marumari
9y ago
Both uBlock Origin and Tree Style Tabs (as well as Tab Center Redux, which I prefer) are already compatible with Firefox 57.
10.
▲
by
marumari
9y ago
You can do the same in Firefox. It's under Tools -> Web Developer -> Browser Toolbox.
11.
▲
by
marumari
9y ago
Connections to the Mozilla Telemetry server are done over HTTPS, so all an interceptor would know is that you are sending Telemetry and not what that Telemetry is.
12.
▲
by
marumari
10y ago
> If AV was so vulnerable, we'd see nothing but exploits in the wild going after AV. Yet we aren't seeing that anywhere. That's because the Linux kernel, Chrome, Firefox, etc. are installed on hundred of millions or billio
13.
▲
by
marumari
10y ago
On the plus side, there are sites doing really well, like GitHub (A+), HackerOne (A+), and Twitter (A). Even Facebook is doing pretty well, with a B. Hopefully sites like the Observatory help sites do better. We're working really hard
14.
▲
by
marumari
10y ago
The nice thing is that most of the security measures -- aside from Subresource Integrity -- can be done without changing any of the actual content.
15.
▲
by
marumari
10y ago
It also has an invalid website certificate. Kind of a shame that it's so neglected, but it's a pretty good example of what happens to sites when they're allowed to sit for too long.
16.
▲
by
marumari
10y ago
I'm the primary developer of the scanner and website, and would be happy to answer anybody's questions, should they have any. :)