Hacker Newsnew | past | comments | ask | show | jobs | submit | renewiltord's commentslogin

I don’t get it. Did they use the MTA budget or something? If the train is better then just build the train. Certainly these guys aren’t stopping you.


These massive green text attempts started becoming common recently and honestly they’re excruciatingly boring. Misses the entire value of the medium. Very “hello, fellow kids”.


This is a lot of content-free stuff but the reality is that if you’re hoping that customers will just write software to integrate with your SaaS you have to ask yourself why they wouldn’t also just write your SaaS. So either you go to them, they come to you, or you’re past some particular implementation hurdle. I think it’s better you go to them. Just reduces the barrier to entry and people will happily pay you for additional technology capacity to get a sufficiently complex thing onboarded.

So sending your implementation team out is “not just smart — it’s required” (to use everyone’s current favourite phrasing).


So we know Claude’s mitigation. What is Ramp’s? Same warning dialog?

It’s funny that this technology only admits in-band signaling. Given that, any foreign content is risky. It’s actually quite interesting that the current technological ecosystem is built around a high trust situation: npm, pip, cargo all run foreign code in the developer context and communities have norms of downloading random people’s modules.

And so I suppose it’s no surprise that we use LLMs - another tech that is high-trust: since it has no out of band signaling ability.

But it seems like we’re very close to the end of the era where someone will use (in a sensitive system) arbitrary web content carrying the equivalent of merged code/data.


I hate the online repos. Sure it’s nice to have good libraries accessible. But is there any quality control against malicious packages?

Or will one day some obscure “Unicode homograph” library end up pwning half the world because it was a dependency 10 layers deep for an optional but default-enabled feature that nobody cares about.

Things like Visual Studio’s extension marketplace really acare me. It’s too easy to install Jim Bob’s “starter pack” of extensions that bundles many well known ones with an unheard of one… Or install the wrong “Python” extension because there are 20 with the same icon…


I only use GitHub for unified login git access to a bunch of repos. These other “forges” (didn’t know that was the term - cool) are all almost certain to put Anubis in front and make a logged out user be unable to access the code. I get why, but it seems inevitable. I think Codeberg already does and for some reason it takes ages to complete the challenge on my phone.

Undoubtedly these various hosts will come under pressure from spammers and the like and they will react by placing extraordinary barriers around accessing the code.

That’s fine but it reminds me of the later stages of online forums, where it was impossible to browse most threads because you had to create an account and then build up community points until the screenshot of the kernel panic on the ZTE phone would be visible so you could see if it’s the same problem as yours.

GitHub was big and powerful enough to not need all of this but now we’re going back to the era of decentralization and I suppose with that come the pros and cons.


Recent performance of Claude Opus 4.7 and Claude Code has been poor because of context bloat. Model no longer obeys instructions well. Codex on medium reasoning and fast mode is often better. I have simple local manual eval through harness and automated eval for other programs and Opus still best on latter but garbage experience on former.

Spent last evening so frustrated I also got ChatGPT subscription. Makes me wonder if I should be using Gemini on pay per use with custom harness.

With my own harness performance is way better but cost goes up because no subscription.


Interesting, no bidding flow entirely first party and contextual.


Realistically, I think anyone can tell when they’re being asked “Really? Lions will bite your head off if you put it in their mouths? Prove it”


I guess but that's really not what I'm asking here - the parent commenter is making a fantastical claim and I'm asking for stronger proof than "trust me bro."


Seems like the CNPV used is a Trump admin project though no idea how much RFK is involved. If they Warp Speed All The Things that’s a pretty good idea.


I mean, obviously all the behaviors in the article are undesirable. The joke is in proposing other ones. Surely people are being amusingly self deprecating not precisely honest.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: