Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
davidfiala
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
davidfiala
1mo ago
> We've disabled Cmd+Option+I OP was providing a userful tips to users, and they weren't giving you a bug report to remove it. If anything, they were suggesting you remove a login-wall. But now that you blocked the inspector to
2.
▲
by
davidfiala
2mo ago
Attestation of any type: A double edged sword, where you are guaranteed to lose freedom. Attestation entrenches, empowers, and enriches other entities that aren't you. Ironic how this post got upvoted in parallel to polar opposite in t
3.
▲
by
davidfiala
8mo ago
Missing Option 3) hardware and software continue to evolve and AI becomes cost efficient at the same price and eventually even lower
4.
▲
by
davidfiala
10mo ago
Very nice. Thanks for making it clean and simple to use. I'm curious, only if you're willing to share, how you check so many domains availability automatically? Is there any potential rate limit problems behind the scenes? One cha
5.
▲
by
davidfiala
1y ago
SPAs are not about view transitions. TFA implies that fancy transition is important between pages (wrong!) and blames a "CMO" or "brand manager" rather than challenging their own preconceptions and exploring the value an
6.
▲
by
davidfiala
1y ago
I'd love to see more examples in a portfolio or catalogue page. I think it would help me more clearly see what is possible than just the links above. Or at the very least, having them all together on one page without having to open the
7.
▲
by
davidfiala
1y ago
Assuming you have a desktop or VM that is always on, then using vs code or cursor with the remote SSH and dev containers extensions installed is great. The extensions operate on top of each other transparently. A lost or interrupted interne
8.
▲
by
davidfiala
1y ago
I mean, the site is just incredibly beautiful. Good job. I want to go on vacation wherever the made-up end-frame is with the lake on the bottom. I had to show it to a friend who said they must have hired a frontend engineer yelling, "I
9.
▲
by
davidfiala
1y ago
It is important for readers to be aware that the specs compared are not useful today. Only the latest greated 50x NVIDIA gpus will do DP 2.1 (everything else is DP 1.4). And likewise, even your best monitors are unlikely to support DP 2.1 t
10.
▲
by
davidfiala
1y ago
Absolutely excellent!
11.
▲
by
davidfiala
1y ago
Very nice! Regarding the localness, are you optimizing or targeting users that prefer only local inference? The part about API keys at the end makes me wonder if there's any practical difference outside of lower local resource requirem
12.
▲
by
davidfiala
1y ago
This is great news. I love thinking about exploit scenarios that remain. Very niche, but attackers on a LAN or in the path to cloudflare's edge servers probably have a small window to still exploit this. In my case, I have about 25 mil
13.
▲
by
davidfiala
1y ago
I replied to cold outreach from designers. To vet, I took calls to see their actual portfolio (actual prior work in Figma, for instance), asked about their processes, areas of strength/weakness, types of work (illustrations only? css h
14.
▲
by
davidfiala
2y ago
Might be worth explicitly stating popular/known datapoints you were unable to include or evaluate yet. For example, the fastest inference provider by multiples as of this writing, Cerebras, is missing. It's popular, so I'm su
15.
▲
by
davidfiala
2y ago
Imagine increasing the quality and FPS of those AI-generated minecraft clones and experiencing even more high-quality, realtime AI-generated gameplay (yeah, I know they are doing textual tokens. but just sayin..) edit: context is https:&#x
16.
▲
by
davidfiala
2y ago
> Your manager doesn’t promote you? > No, managers at Google can’t promote their direct reports. They don’t even get a vote. > Instead, promotion decisions come from small committees of upper-level software engineers an
17.
▲
by
davidfiala
2y ago
Exercise extreme caution. Having your security strategy rely on quirky behaviors of an implementation detail which might change is incredibly dangerous.
18.
▲
by
davidfiala
2y ago
- 1,800tps on llama 3.1 8B - 450tps on llama 3.1 70B free chat interface is at: https://inference.cerebras.ai (requires login)
19.
▲
cerebras: 450 tokens/sec llama 3.1 70B
(theregister.com)
7 points
by
davidfiala
2y ago
|
2 comments
20.
▲
by
davidfiala
2y ago
Didn't see it :) you nailed it!
21.
▲
by
davidfiala
2y ago
Ideally TFA would have also explained why some requests do go through without a preflight. What's called a 'simple' request is the explanation behind TFA's whole premise. https://developer.mozilla.org/en-
22.
▲
by
davidfiala
2y ago
It depends on including things like headers and other non-approved changes to the request. Content-Type is one of them, but even it has some whitelisted options. Read about 'simple' requests to see what you can and cannot do befor
23.
▲
by
davidfiala
2y ago
Couldn't agree more on this one: > especially when the product itself claims security as a core principle My thought is that both volunteers and corporations contribute. In different ways, too. One example is how a YC company made
24.
▲
by
davidfiala
2y ago
tldr; purpose built tools SSH is kind of a swiss army knife. But 1000x sharper ;) The delta I'm speaking of would be to have bespoke tooling for different needs. And the tooling for each purpose could have appropriate, structured loggi
25.
▲
by
davidfiala
2y ago
It's off topic, but in my consulting and networking, security/firewall appliances are an easy first line approach I see companies buy in to. The security sales pitch sounds good and makes you feel good. Cannot name names.
26.
▲
by
davidfiala
2y ago
> tldr; your statement overlooks the reality of businesses with high ethical and financial obligations, like Google, Amazon, and Azure. - These companies underpin much of the internet's infrastructure. - Their security practices are
27.
▲
by
davidfiala
2y ago
There's a ton of great truth here. It's hard to bite the bullet and believe that insiders already exist (everywhere), but I can share that from my experience working in big tech: - There 100% will be bad actors. Many of them. - Bu
28.
▲
by
davidfiala
2y ago
We don't know. We won't know the negative case, but we may someday in some circumstance find out the positive (bugged) case. But we do know some sane things: - The stakes couldn't be higher. - Good: Don't allow inbound S
29.
▲
by
davidfiala
2y ago
@dns_snek, it's right there in my real name username, comment history, and profile. :) My entire youth and professional life I've seen nothing but footguns with actual practical use of SSH. The HN community loves to hate, but the
30.
▲
by
davidfiala
2y ago
Even with the best intentions, can a volunteer-driven project like OpenSSH truly guarantee the same level of security as a commercial solution with dedicated resources and a financial stake in preventing backdoors?
More ›