Hacker Newsnew | past | comments | ask | show | jobs | submit | oefrha's commentslogin

Good idea, but don’t be surprised when threatened with 100% tariffs. Canada got that threat (again? honestly lost track) just yesterday.

There is already arbitrary tariff. At this point, it is better to trade with other countries instead of chasing the US. Let the American citizen pay their tariff, their loss.

I wouldn’t worry too much about those threats. This administration is so erratic that you may see those same threats made against you for any other reason down the line even if you keep it put.

> TikTok USDS Joint Venture LLC

First instinct is USDS stands for usds.gov and it literally turned into nationalized social media. Upon further research USDS is apparently short for U.S. Data Security. WTF is with this naming. Imagine TikTok DHS (Digital High School) JV.


At this point I won’t consider any GitHub activity after ~2024 as hiring signals unless it’s very substantial work on high profile projects that clearly have high bars.

Sadly that was already the case prior to LLMs.

We had a bootcamp in our city that had all students build a GitHub portfolio. They all built the same projects like a TODO app. Every person’s code would like almost identical because they all did them together and, I suspect, copied from past grads.

They all applied to the same local jobs, too. So we’d get a batch of their resumes with GitHub links, follow the GitHub links, and see basically the same codebase repeated everywhere.


I kind of suspected that some bootcamp or college or something is telling all these people to just go to GitHub, create an account, spam it with activity, and you'll get a job! At this point I don't think "has a GitHub account" can be used as any signal of programming ability whatsoever.

I mean I never considered having GitHub projects as anything. If you have project(s) that seem useful and have let's say a hundred stars or more (rough signal assuming no foul play), I'll have a look. If you say you have meaningful contributions to projects with a thousand stars or more, I may have a look as well.

Now my bars are so massively higher, 99.95% of juniors who don't have pre-2024 work to show can forget about it.


You’re subtly pushing the same product in basically every one of your comments. If these are good faith comments please edit out the product name, it’s unnecessary and doing so as a green account just makes people consider you a spammer. Establish yourself first.

They've submitted "I'm working at io.net" quite openly, but I admit, they should at least announce their employment in the bio, otherwise it's a very poorly executed astroturf post (phrased like they're an experimenting user and not a dev).

Or he could disclose it.l, which he did in a different comment on a different story.

I agree that green accounts could be regarded as suspicious and, if it were me, I'd disclose each time I mention it.


If you exterminate the replaced human coders, sure.

I also chuckled when an ex-Facebook employee whose blog is popular on HN lectured us on "web page annoyances that I don't inflict on you here".

Yeah there's more to a browser than a couple of out-of-tree servo components, otherwise https://github.com/servo/servo wouldn't have 300k+ lines of Rust code, 400k+ if you count comments and blanks (I cloned the repo, nuked the tests directory, then did a count).

Plus that linked comment doesn't even say it's "nothing more than a non-functional wrapper for Servo". It disputes the "from scratch" claim.

Most people aren't interested in a nuanced take though. Someone said something plausible sounding and was voted to top by other people? Good enough for me, have another vote. Then twist and exaggerate a little and post it to another comment section. Get more votes. Rinse and repeat.


Defense in depth. Malware is software programmed to do a number of things, not all possible things (well at least until the attacker gets a shell, which is rather noisy). Scanning env vars is trivial, scanning the entire file system and traversing mount points is a bit harder, traversing all memory and guessing what’s a secret is a hell lot harder even for an interactive attacker. If you happen to include some malicious library doing dragnet mining and exfilatration of secrets, you’re more likely to dodge a bullet if you don’t have secrets in env vars than if you do.

Just recently I heard that they can donate to “typed languages” too, a donation to one language does’t preclude other donations, and given their cash injections they have a few $1.5m’s to spare.

And on top of that, putting these in AGENTS.md makes no sense whatsoever. You’ll simply waste tokens and confuse the hell out of your agents. I wonder if gp assumed this is another repo of design patterns without reading anything there at all. Pasting a bunch of design patterns into AGENTS.md may not be the brightest idea either but at least that isn’t absurd.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: