Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
mbleigh
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
15 ms
·
61.
▲
by
mbleigh
12y ago
Static Apps also encompass statically compiled web apps (e.g. Jekyll sites), so it's not just SPA. I've also always hated the term Single-Page App, it's like "horseless carriage." I prefer the term "Web Client.
62.
▲
by
mbleigh
12y ago
Completely depends on the company. Don't go jeans and t-shirt, but for most startup/tech companies suit and tie is too far the other direction. Long-sleeve button-down and slacks probably works in most cases, but again for startup
63.
▲
Show HN: Password-less Authentication as a Service (Open Source)
(authmail.co)
2 points
by
mbleigh
12y ago
|
0 comments
64.
▲
by
mbleigh
12y ago
After my blood cooled off a little, I feel a bit bad about posting such a harsh response. I stand behind all the points I raised, but should have made them in a more constructive way. We build RESTful APIs using HTTP verbs and current conve
65.
▲
by
mbleigh
12y ago
I have a humanized version of my API. It's called the web interface for my application. This is a tremendously ill-considered idea that throws away decades of hard-learned lessons in API design under the auspices of "human friendl
66.
▲
by
mbleigh
12y ago
Isn't this pitched idea basically exactly http://nitrous.io/ -- especially with their recently launched "Hack on Nitrous.io" button for GitHub?
67.
▲
by
mbleigh
13y ago
Oops! We had the "user" scope set on our GitHub authentication thinking that's what was needed to be able to read user info. We only actually needed the user:email scope. This should be fixed now.
68.
▲
by
mbleigh
13y ago
I wasn't referring to intranet vs. internet apps, but rather apps that generate public content that can be viewed without authentication (e.g. Twitter) vs. apps whose information is entirely restricted to authenticated users (e.g. GMai
69.
▲
by
mbleigh
13y ago
You can use CORS and withCredentials to use simple cookie-based browser sessions for authentication. It's still hard against CSRF because as long as you properly origin-check the request you don't have to worry about form forgery.
70.
▲
by
mbleigh
13y ago
This largely depends on application structure. If your application relies heavily on being "linked into" i.e. a user is likely to follow a link to a single resource within the app and is unlikely to continue browsing or accessing
71.
▲
by
mbleigh
13y ago
We're trying to market to people who want to use static architecture, regardless of experience. It's a bit of an education issue as people are familiar with e.g. Angular and Ember but don't necessarily know what it means to d
72.
▲
by
mbleigh
13y ago
Actually, we built our static hosting service because we were already developing with a static web architecture and couldn't find an existing acceptable option for hosting. I'm building the platform because I believe in the techno
73.
▲
by
mbleigh
13y ago
CSRF is more or less impossible in a static site architecture. Since everything is just static HTML there are generally no form submission endpoints to attack. XSS can be very dangerous, as can session hijacking, but CSRF is pretty much moo
74.
▲
by
mbleigh
13y ago
Your derision comes with a dearth of actual reasoning as to why "complex" applications don't work from a static architecture perspective or how you define complexity.
75.
▲
by
mbleigh
13y ago
Redirects don't maintain URL state. If I make a redirect rule that points everything to /index.html, once I get to /index.html the browser doesn't keep the old URL in the location bar.
76.
▲
by
mbleigh
13y ago
If you're running a mostly-public content site that depends largely on search engine traffic, static is probably not the way to go (yet). If your application lives mostly inside of a login, there's little reason to force yourself
77.
▲
by
mbleigh
13y ago
Authentication and Authorization are handled via JS calls to back-end services that know. Did you read http://www.staticapps.org/articles/authentication-and-author... -- if so, what doesn't make sense from that pe
78.
▲
by
mbleigh
13y ago
Search friendliness is probably the biggest problem yet to be completely solved for static apps. There are workarounds, but they are admittedly less than perfect. However, given the general web development trends towards JS-driven interface
79.
▲
by
mbleigh
13y ago
The great thing about a static app architecture is that for things like administrative functions you can usually easily build an entirely separate interface and application utilizing the same back-end resources. Security through obscurity i
80.
▲
by
mbleigh
13y ago
Because it's describing two different (but related) things. Jekyll blogs are static sites, but not Single-Page Apps, as an example.
81.
▲
by
mbleigh
13y ago
The real shift is thinking about the user interface as just another service, and one best provided by a static web application that talks to your API server and other services via CORS. As long as you completely split the front-end and back
82.
▲
by
mbleigh
13y ago
Yup, you got it. Sorry it took me a bit to see this post.
83.
▲
by
mbleigh
13y ago
We're building http://www.divshot.io/ to be exactly this. Currently in private beta and will be launching soon (in fact, anyone who sees this just shoot us an email and we'll let you in). CDN-accelerated, automati
84.
▲
Drag and Drop Bootstrap 3 with Divshot
(divshot.com)
3 points
by
mbleigh
13y ago
|
0 comments
85.
▲
by
mbleigh
13y ago
C'mon Cory, you know us better than that :) We're still experimenting with the pricing signup flow, if it makes a large percentage of people feel there's no free plan then we'll change it (it's easy enough to do in
86.
▲
by
mbleigh
13y ago
Divshot works great as a prototyping tool for Rails projects (and if you're using something like Angular for templating, you can do much much more with it). We built http://revision.io/ for the Rails Rumble last year (
87.
▲
by
mbleigh
13y ago
I would say some of the biggest differences are our multi-framework architecture and our focus on being a viable full-fledged development platform. Divshot supports Bootstrap, Foundation, and Ratchet (at present) and our new project structu
88.
▲
Divshot 1.0: Visual Front-End Development for Bootstrap and Beyond
(blog.divshot.com)
82 points
by
mbleigh
13y ago
|
17 comments
89.
▲
by
mbleigh
14y ago
Divshot ( http://divshot.com/ ) Los Angeles, CA (or remote) We're building tools to make web development fitter, happier, and more productive and we're looking to hire full-stack and front-end web engineers. If you love working with bleedin
90.
▲
Netflix is now listing fictional Arrested Development shows (e.g. Boyfights)
(movies.netflix.com)
2 points
by
mbleigh
14y ago
|
0 comments
More ›