Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
thayne
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
271.
▲
by
thayne
5mo ago
You could also redirect to the url with the query string dropped.
272.
▲
by
thayne
5mo ago
I think either 400 or 404 would be fine. 400 because the request isn't in the expected format, 404 because a resource with that query string doesn't exist.
273.
▲
by
thayne
5mo ago
1. Having a way for some users to show their appreciation by paying you a few bucks doesn't make it not a hobby 2. The expected income is way less than the developer fee, much less the expensive hardware required.
274.
▲
by
thayne
5mo ago
They want to have a way for users to pay them. Itch.io has that, homebrew doesn't.
275.
▲
by
thayne
5mo ago
It is much harder to write quality stuff in c/c++ that doesn't have memory bugs (use after free, out of bounds access, use of unitialized memory, double free, memory races, etc.). I wouldn't say it isn't feasible to buil
276.
▲
by
thayne
5mo ago
> or even invisible ones reCaptcha is "invisible" by default. Although if you use a non-cheomium browser and/or block tracking, you are more likely to trigger a non-invisible prompt. Annoying as that is for people like me
277.
▲
by
thayne
5mo ago
I was involved in evaluating captcha solutions. The only recaptcha alternative that met the requirements that we were able to find has hcaptcha, but it wasn't any cheaper (for us), and would require going through the vendor approval pr
278.
▲
by
thayne
5mo ago
IIUC, They are blocking it on windows, unless you have an android or iOS device you can use to complete the "captcha"
279.
▲
by
thayne
5mo ago
How would the attacker cause one of these modules to get loaded without already having root?
280.
▲
by
thayne
5mo ago
And that's a problem. The best case scenario is it biases published results for things that benefit the sponsors. But there is certainly some amount of fraud including fabricated data, misinterpreted or exaggerated conclusions, suppres
281.
▲
by
thayne
5mo ago
I wonder if a surplus of these server ram components would lead to consumer hardware designed to make use of them though.
282.
▲
by
thayne
5mo ago
> It is a general-purpose serialization format Yes. My point is that in practice it hasn't really been used for much outside of cryptography. > there's no good reason to choose it instead of protobufs Well, the reason it is
283.
▲
by
thayne
5mo ago
FedRAMP requires it, although like many requirements, you may be able to get out of it if you have a good reason and/or your sponsoring agency doesn't care about it. There are also some large businesses that require, or strongly p
284.
▲
by
thayne
5mo ago
Maybe a bit pedantic, but it would actually be the more general JOSE which includes tokens (JWT), signatures (JWS), and key transmission (JWK). And there is a related binary format that uses CBOR (COSE) as well.
285.
▲
by
thayne
5mo ago
The problem with ASN.1 is that it is big and complicated, and you only need a fraction of it for cryptography, and it isn't really used for anything outside of pki anymore. It wouldn't be as bad if asn.1 had cought on more as a ge
286.
▲
by
thayne
5mo ago
Probably the most common reason to use DNSSEC is to check a box on a list of compliance rules. And I don't think this will change anything for people who need DNSSEC for compliance.
287.
▲
by
thayne
5mo ago
When I first heard that bun was written in zig, I thought that was an odd choice for such a large project, mostly because the language is "unstable" and is still making significant breaking changes. I would guess dealing with brea
288.
▲
by
thayne
5mo ago
> The best bet should be a core with the domain with a UI shell. And then you swap the shell according to the platform. I've rarely seen that turn out very well. Typically it works ok on whatever desktop main developers use, and not
289.
▲
by
thayne
5mo ago
If only keyboard makers would just always put escape there.
290.
▲
by
thayne
5mo ago
I don't think it is lack of investment necessarily, so much as not building the right thing. What we need is a framework that is easy to use, cross platform, open source, and ideally can be used from your programming language of choic
291.
▲
by
thayne
5mo ago
> don't block the first connection of the day from a given IP. The bots come from a huge number of IP addresses, that won't really help that much. And it doesn't solve the UX problem either, because most pages require mult
292.
▲
by
thayne
5mo ago
> I assume then, that the only way a bot could even find my site is to do what the indexers do: brute force try every single possible ipv4 address hoping to hear something back, as my domain should not be known If your site uses https, t
293.
▲
by
thayne
5mo ago
You can have ads without tracking.
294.
▲
by
thayne
5mo ago
The RFC for dhcp was published in 1997, two years after the first RFC for IPv6, and three years after work on IPv6 started.
295.
▲
by
thayne
5mo ago
When ipv6 was first created DHCP and NAT were new and not widely deployed. They weren't trying to "fix" them, they solved the same problems independently. And if you need NAT or DHCP, there isn't any reason you can'
296.
▲
by
thayne
5mo ago
There isn't any reason you can't set up a NAT like that with ipv6.
297.
▲
by
thayne
5mo ago
And it added those 16 bits in a way that causes a lot of problems
298.
▲
by
thayne
5mo ago
> But in an ipv42 type setup, you would have determnistic embedding so that every ipv4 address is represented inside the larger address space IPv6 supports that, but it ended up not getting used very much. See https://en.wikip
299.
▲
by
thayne
5mo ago
> None of that ever worked properly, consistently, at google. My experience is it worked pretty well on Google for a while, but then it got progressively worse.
300.
▲
by
thayne
5mo ago
Is there anything in here for something like a "slice" or dynamically sized array that carries its length along with it?
More ›