Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
mdavidn
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
61.
▲
by
mdavidn
2y ago
This works in Java too. Wire up classes yourself and eschew the IoC framework.
62.
▲
by
mdavidn
2y ago
ASML, a Dutch firm, sells photolithography equipment to TSMC.
63.
▲
by
mdavidn
2y ago
If you need an LLM on your home server, sure. If not, there are much more sensible home server options based on Intel’s N100 or Microsoft’s SQ3 chipsets.
64.
▲
by
mdavidn
2y ago
Could this be an artifact of how we measure cancer? My own grandfather probably had cancer when he died, but so much else wasn’t working that I think the docs just didn’t bother testing for cancer or diagnosing it. Treatment would not impro
65.
▲
by
mdavidn
2y ago
I assumed this was to make GPUs more affordable for users with gaming use cases in mind.
66.
▲
by
mdavidn
2y ago
I think you can presign PutObject calls that validate a particular SHA-256 checksum. An API endpoint, e.g. in a Lambda, can effectively enforce this rule. It unfortunately won’t work on multipart uploads except on individual parts.
67.
▲
by
mdavidn
2y ago
While that is true on iOS, macOS has no such restriction on Firefox or Chrome.
68.
▲
by
mdavidn
2y ago
Is that not the human experience? I have no “agency” over the next thought to pop into my head. I “feel” like I can choose where to focus attention, but that too is a predictable outcome arising from the integration of my embryology, memori
69.
▲
by
mdavidn
2y ago
Note that this suit is a patent claim, not the trademark or copyright claim one might expect from visual similarity.
70.
▲
by
mdavidn
2y ago
I understand 60 Hz being “a deal breaker” for gaming and VR applications, but on a battery-constrained mobile phone that I carry everywhere? No thanks. I’d rather have more battery life or less weight in my pocket. 60 Hz is more than adequa
71.
▲
by
mdavidn
2y ago
All docking ports at ISS are occupied, and the two additional astronauts need to eat. The crew will need supplies before next year.
72.
▲
by
mdavidn
2y ago
You can now have the best of both worlds using something like HTMX or Hotwire Turbo. SPA-like navigation with fast page loads, partial updates, streaming updates, but also HTML on the wire and minimal (client-side) JavaScript.
73.
▲
by
mdavidn
2y ago
Every modern file system works like this too. Then there’s copy-on-write snapshotting and SSD wear leveling to worry about. Data isn’t actually destroyed until the space is reused to store something else at an indeterminate point in the fut
74.
▲
by
mdavidn
2y ago
This is my primary use case for Siri too. I use my watch or a HomePod to start named timers in parallel. Voice is also great for adding items to a grocery list, one shared by the entire family in Apple's Reminders app. e.g. When I noti
75.
▲
by
mdavidn
2y ago
By default, File.read does block, yes. As it crosses into libc, it releases Ruby's interpreter lock, allowing another Ruby thread to execute while it blocks. Ruby 1.9 added Fibers. These are coroutines with their own call stack that yi
76.
▲
by
mdavidn
2y ago
Reading the user's profile information _is_ the delegated action. OAuth providers were already doing this prior to OIDC but in incompatible ways. OIDC standardized how that information is requested and returned.
77.
▲
by
mdavidn
2y ago
That consistency is built on assumptions about the filesystem that may not hold true of a copy made concurrently by a backup tool. e.g. The database might append to write-ahead logs in a different order than the order in which the backup to
78.
▲
by
mdavidn
2y ago
The "OIDC way" would be an endpoint on the service provider ("relying party" in the spec) that immediately redirects into authentication. The spec does have a section describing this. https://openid.net/s
79.
▲
by
mdavidn
2y ago
In addition to reasons shared by other commenters, my main concern is XML Signature Wrapping. XMLDSig APIs are not well designed. They check whether signatures in a document are valid, but signatures are not required to cover the entire doc
80.
▲
by
mdavidn
2y ago
This sounds like a complaint with Google's implementation, not with OAuth in general. The correct scopes should limit information sharing to the user's profile. All of the security and privacy concerns that necessitate an explicit
81.
▲
by
mdavidn
2y ago
If given the option, go with OpenID Connect instead. Both the OIDC and SAML standards are overly complex and designed to accommodate more use cases and enterprise configurations than they should. That said, OIDC is based on OAuth 2 and does
82.
▲
by
mdavidn
2y ago
Maybe. Have you tried? 30 year old games often did not implement delta timing, so they advance ridiculously fast on modern processors. Or the games required a memory mode not supported by modern Windows (see real mode, expanded memory, prot
83.
▲
by
mdavidn
2y ago
This is true, but there is a mitigation available: The site can require the resource to match a specified cryptographic hash before running. This did not work with polyfill.io because that CDN would dynamically return different resources ba
84.
▲
by
mdavidn
2y ago
A CDN delivering something like jQuery will not receive cookies nor query parameters and will return a very generous max-age, allowing the browser to reuse the resource for any number of pages or sites without contacting the CDN again. The
85.
▲
by
mdavidn
2y ago
My first big employer in the aughts had my SSN encoded in a bar code on the back of my company ID, which they expected us to display at the office.
86.
▲
by
mdavidn
2y ago
You're looking for "server side includes." Most HTTP web servers provide such a feature, as do many CDNs. Here's the Nginx module's documentation: https://nginx.org/en/docs/http/ngx_ht
87.
▲
by
mdavidn
2y ago
The same fate befell the moa, a large flightless bird native to New Zealand.
88.
▲
by
mdavidn
2y ago
I agree. The text jumping around and making me lose my place every 60 seconds just might motivate me to install an ad blocker.
89.
▲
by
mdavidn
2y ago
Whether training a model on text constitutes copyright infringement is an unresolved legal question. The closest precedent would be search engines using automated processes to build an index and links, which is generally not seen as infring
90.
▲
by
mdavidn
2y ago
Would those countries not have similar concerns about US maintainers? The larger issue is successful projects with too few active maintainers.
More ›