Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
wowohwow
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
wowohwow
10mo ago
FWIW, I think it was a great write up. It's clear to me what the rationale was and had good justification. Based on the people responding to all of my comments, it is clear people didn't actually read it and are opining without ap
2.
▲
by
wowohwow
10mo ago
>We must be precise in our language I am talking about using a shared software repository as a dependency. Which is valid for a microservice. Taking said dependency does not turn a microservice into a monoloth. It may be a build time dep
3.
▲
by
wowohwow
10mo ago
Bingo. Couldn't agree more. The other posters in this comment chain seem to view things from a dogmatic approach vs a pragmatic approach. It's important to do both, but individuals should call out when they are discussing somethin
4.
▲
by
wowohwow
10mo ago
To reference my other comment. This thread is about the nuance of if a dependency on a shared software repository means you are a microservice or not. I'm saying it's immaterial to the definition. A dependency on an external softw
5.
▲
by
wowohwow
10mo ago
Yes we are in agreement. A dependency on an external software repository does not make a microservice no longer a microservice. It's the deployment configuration around said dependency that matters.
6.
▲
by
wowohwow
10mo ago
Yes, the user I'm replying to is suggesting that taking on a dependency of a shared software repository makes the service no longer a microservice. That is fundamentally incorrect. As presented in my other post you can correctly use th
7.
▲
by
wowohwow
10mo ago
Fair enough, which is why I called out my assumption:). I'm referring to the all hands on deck nature of responding to security issues not the best practice. For many, the NPM issue was an all hands on deck.
8.
▲
by
wowohwow
10mo ago
You have not been in the field very long than I presume? There's multiple per year that require all hands on deck depending on your tech stack. Just look at the recent NPM supply chain attacks.
9.
▲
by
wowohwow
10mo ago
This type of elitist mentality is such a problem and such a drain for software development. "Real micro services are incredibly rare". I'll repeat myself from my other post, by this level of logic nothing is a micro service.
10.
▲
by
wowohwow
10mo ago
I disagree. Both can be true at the same time. A good design should not point to library-latest in a production setting, it should point to a stable known good version via direct reference, i.e library-1.0.0-stable. However, the world we li
11.
▲
by
wowohwow
10mo ago
I think your point while valid, it is probably a lot more nuanced. From the post it's more akin to an Amazon shared build and deployment system than "every library update needs to redeploy every time scenario". It's like
12.
▲
Software Supply Chain and Geopolitics: KYM (Know Your Maintainers)
(vulnerability.blog)
1 points
by
wowohwow
1y ago
|
0 comments
13.
▲
by
wowohwow
1y ago
Going solo on https://meldsecurity.com/ I'm putting a bunch of security tools / data feeds together as a service. The goal is to help teams and individuals run scans/analysis/security project management
14.
▲
by
wowohwow
1y ago
History doesn't repeat itself, but it rhymes. Callbacks to the infrastructure laid out during dotcom bubble, i.e Cisco, and all of the networking infrastructure. Likewise, internal memos at Oracle indicate they're losing money on
15.
▲
by
wowohwow
1y ago
Going solo on https://meldsecurity.com/ I'm putting a bunch of security tools / data feeds together as a service. The goal is to help teams and individuals run scans/analysis/security project management
16.
▲
Show HN: MeldSecurity – Run Popular Security Tools in the Browser (Free)
(meldsecurity.com)
3 points
by
wowohwow
1y ago
|
0 comments
17.
▲
by
wowohwow
1y ago
Not stealing thunder! I'm glad you work in the field and agree with my conclusions!
18.
▲
by
wowohwow
1y ago
A very effective TL;DR of my post :) -- with the addition of companies laying off due to lower spending, which leads to more delinquencies, than more layoffs, etc
19.
▲
May 2025 – Housing / Credit Market Analysis, August 2024 Follow Up
(wordsofwill.com)
3 points
by
wowohwow
1y ago
|
4 comments
20.
▲
by
wowohwow
1y ago
I think if you're ok with some markup you should be fine with any. At some point, it becomes so large users will leave the platform. Finding the right balance is not a guarantee
21.
▲
by
wowohwow
1y ago
A mini shop seems possible on the iPhone. Does Apple prevent sideloading? I'm not familiar enough with the ecosystem. How does Apple scare customers? By giving them a warning about sideloading? A warning hardly seems monopolistic? Unle
22.
▲
by
wowohwow
1y ago
In the age of floppy disk and CD distribution of software, what was a retailers markup/cut? I imagine, Staples, Best Buy, CompUSA, Office Depot, etc were taking 30%+. Shelf space, physical distribution, and store operations, etc costs
23.
▲
by
wowohwow
2y ago
Here's my analysis on the trends in Vulnerability Management and the related changes for CVEs published in 2024.
24.
▲
2024 CVEs in Review
(vulnerability.blog)
1 points
by
wowohwow
2y ago
|
1 comments
25.
▲
Vulnerabilities (CVEs) Reserved per Year as a Proxy for US Economy?
(vulnerability.blog)
2 points
by
wowohwow
2y ago
|
1 comments
26.
▲
by
wowohwow
2y ago
Let me know your thoughts!
27.
▲
ChatGPT: The Security Researcher Sidekick
(vulnerability.blog)
5 points
by
wowohwow
2y ago
|
0 comments