<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: Cu3PO42</title><link>https://news.ycombinator.com/user?id=Cu3PO42</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Tue, 14 Apr 2026 22:32:33 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=Cu3PO42" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by Cu3PO42 in "Real-time estimates of animals consumed by humans worldwide"]]></title><description><![CDATA[
<p>I personally find the "animals killed since you opened this page" number to be the most unsettling. YTD numbers are so large, I find them hard to process.<p>If you choose to eat meat, please be aware of the conditions most of these animals exist in and how they die. I'll spare you more numbers, because they don't do the cruel reality justice anyway. Instead, I'll leave you with some video material: <a href="https://animalequality.org/blog/factory-farming-facts/" rel="nofollow">https://animalequality.org/blog/factory-farming-facts/</a></p>
]]></description><pubDate>Fri, 30 Jan 2026 17:59:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=46827634</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46827634</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46827634</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Devuan – Debian Without Systemd"]]></title><description><![CDATA[
<p>I've looked at OpenRC, RUnit and S6. I haven't recently run any of them "in production", however.<p>Personally, I am a strong believer that declaring the desired state is a lot easier to get right than actually writing the code to get there. Beyond that, I'm not saying any of these are bad at being what they are, systemd just has more features, some of which I really like. Two examples I'm actively using currently are automount units and socket activation (S6 also has socket activation). I have some remote folders mounted via SSHFS automatically when I access them and this is incredibly useful for my workflow.<p>Could I find tools to slot into other init systems that do this for me? Probably. But systemd has this neatly packaged up, easy to configure and easy to introspect state.</p>
]]></description><pubDate>Wed, 28 Jan 2026 21:13:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=46801603</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46801603</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46801603</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Devuan – Debian Without Systemd"]]></title><description><![CDATA[
<p>Gnome, for example. GDM now needs systemd's userdb.<p>It is indeed becoming harder and harder to avoid and I understand that this isn't <i>great</i>, but systemd tackles some genuinely hard problems that others don't. Which is to say I don't begrudge Gnome devs for this and personally prefer systemd over current alternatives.</p>
]]></description><pubDate>Wed, 28 Jan 2026 12:58:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=46794719</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46794719</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46794719</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Lennart Poettering, Christian Brauner founded a new company"]]></title><description><![CDATA[
<p>You seem to be under the impression that you cannot reset your Secure Boot to setup mode. You <i>can</i> in the UEFI, doing so wipes any enrolled keys. This, of course assumes you trust the UEFI (and hardware) vendors. But if you don't, you have much bigger problems anyway.<p>Is it possible someone will eventually build a system that doesn't allow this? Yes. Is this influenced in any way by features of Linux software? No.</p>
]]></description><pubDate>Wed, 28 Jan 2026 01:37:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=46789900</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46789900</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46789900</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Lennart Poettering, Christian Brauner founded a new company"]]></title><description><![CDATA[
<p>> What prevents Microsoft from mandating removal of enrollment permissions for user keychains and Secure Boot toggle<p>Theoretically, nothing. But it's worth pointing out that so far they have actually done the opposite. They currently mandate that hardware vendors must allow you to enroll your own keys. There was a somewhat questionable move recently where they introduced a 'more secure by default' branding in which the 3rd party CA (used e.g. go sign shim for Linux) is disabled by default, but again, they mandated there must be an easy toggle to enable it. I don't begrudge them to much for it, because there have been multiple instances of SB bypass via 3rd party signed binaries.<p>All of this is to say: this is not a scenario I'm worried about today. Of course this may change down the line.</p>
]]></description><pubDate>Wed, 28 Jan 2026 01:23:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=46789799</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46789799</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46789799</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Google confirms 'high-friction' sideloading flow is coming to Android"]]></title><description><![CDATA[
<p>> Maybe I could get a EU bank from another EU country but my employer will not accept an out of country account for salary deposits because it makes their tax life difficult and my mortgage provider doesn't trust foreign accounts either.<p>I do not doubt this is happening, but it is forbidden under SEPA. All IBANs, no matter from which member country, must be treated equally. Unfortunately, "IBAN discrimination" happens quite frequently still. The European commission recommends filing a complaint with your national governing body.</p>
]]></description><pubDate>Sun, 25 Jan 2026 12:45:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=46753653</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46753653</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46753653</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "I dumped Windows 11 for Linux, and you should too"]]></title><description><![CDATA[
<p>If you're working in a corporate environment, this may not be viable. LibreOffice is great software, but it's not 100% compatible. Things may look slightly different, get lost or otherwise cause problems. I've really tried, but at the end of the day I occasionally do need to use actual Microsoft Office.</p>
]]></description><pubDate>Sun, 11 Jan 2026 18:09:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=46577999</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46577999</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46577999</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Going immutable on macOS, using Nix-Darwin"]]></title><description><![CDATA[
<p>nix-darwin is essentially this. I have a small bootstrap script to install Xcode CLI and Nix, git clone my dotfiles and activate the config. That in turn sets up the system, also installs Homebrew, installs apps from the App store and sets up all my configs. The only thing I need to do after is sign into some accounts.</p>
]]></description><pubDate>Fri, 02 Jan 2026 09:42:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=46463144</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46463144</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46463144</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Upcoming Changes to Let's Encrypt Certificates"]]></title><description><![CDATA[
<p>ZeroSSL is Austrian, however since I last looked at them it appears they were acquired by a US corporation.</p>
]]></description><pubDate>Tue, 16 Dec 2025 07:56:39 +0000</pubDate><link>https://news.ycombinator.com/item?id=46285916</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46285916</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46285916</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Games using anti-cheats and their compatibility with GNU/Linux or Wine/Proton"]]></title><description><![CDATA[
<p>If you use secure boot and don't let your keys near Windows, you should be fine even if your Windows install is compromised. Unless you don't trust Microsoft themselves, in which case you'd need to re-enroll keys whenever switching operating systems, which is possible, but very tedious.</p>
]]></description><pubDate>Mon, 01 Dec 2025 12:02:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=46106377</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46106377</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46106377</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Games using anti-cheats and their compatibility with GNU/Linux or Wine/Proton"]]></title><description><![CDATA[
<p>I also strongly dislike requiring remote attestation for any kind of software I want to run. But what I also dislike is cheaters in my online games and I genuinely do not have a better suggestion on what to do.<p>Personally, I run Windows purely for gaming and don't let it near any important data. For the latter, I boot into Linux with separately encrypted disks.</p>
]]></description><pubDate>Mon, 01 Dec 2025 10:43:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=46105840</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=46105840</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46105840</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Retiring Windows 10 and Microsoft's move towards a surveillance state"]]></title><description><![CDATA[
<p>The important part in the parent is "that don't need a user password". You just said you had to supply a (user) password.<p>With a TPM you can set it up that your disk is unlocked automatically, but only if no-one changed anything in the signed boot chain. This is the default with Bitlocker on Windows and is also possible on Linux, though somewhat more finicky.</p>
]]></description><pubDate>Thu, 16 Oct 2025 04:37:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=45601507</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45601507</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45601507</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Email immutability matters more in a world with AI"]]></title><description><![CDATA[
<p>Is it? Last time I tried to self-host my email I did. I had DKIM, DMARC and SPF set up correctly as verified by multiple sites, but I couldnt't get reliable delivery to any Microsoft-hopsted mailboxes. Every other provider I tested was perfectly happy with my mail, unfortunately MS is too big a provider to ignore them.<p>> What matters is domain age, IP, and compliance with DKIM/DMARC.<p>Maybe it was my IP, but I cycled a few with my hosting provider and none of them made a difference. If I am unable to reliable obtain a 'trusted' IP, what good does it do?<p>I switched to hosted email and all my delivery issues were gone.</p>
]]></description><pubDate>Thu, 02 Oct 2025 20:10:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=45454896</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45454896</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45454896</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Cloudflare is sponsoring Ladybird and Omarchy"]]></title><description><![CDATA[
<p>Anecdotally, I'm not. I always use Firefox (or Zen) and get almost no Captchas. Neither at home, nor at work. Not on Windows, not on Linux, not on macOS.<p>I'm not going to say that Cloadflare isn't doing anything fishy, but if they are, it's probably more complicated.</p>
]]></description><pubDate>Tue, 23 Sep 2025 05:39:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=45343144</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45343144</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45343144</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Apple: SSH and FileVault"]]></title><description><![CDATA[
<p>Depending on the timeouts involved, I imagined it might still happen if you had automatic retry.<p>And thanks for the pointer, I actually have the same fix in my config with the nice benefit of only adding a single non-changing entry to /etc/shells. It might be worth up streaming something like this to nix-darwin, so we don't all go implement essentially the same fix.</p>
]]></description><pubDate>Fri, 19 Sep 2025 01:34:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=45297024</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45297024</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45297024</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Apple: SSH and FileVault"]]></title><description><![CDATA[
<p>Neat. Though I wonder if this suffers from the same race condition that the graphical session does when your shell is stored on a data volume.<p>Specifically, if you restart and opt to restart apps, they can come up before all volumes have been decrypted and mounted. If your shell is on one such volume, your terminal emulator may fail to start, for example. This can happen when using Nix to install your shell, for example.<p>I imagine this may be even easier to hit over SSH unless the underlying problem was resolved.</p>
]]></description><pubDate>Thu, 18 Sep 2025 21:02:33 +0000</pubDate><link>https://news.ycombinator.com/item?id=45294976</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45294976</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45294976</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Gearbox CEO Randy Pitchford tells Borderlands 4 critics: "code your own engine""]]></title><description><![CDATA[
<p>The game really doesn't perform great, but it's not impacting the fun I'm having with it, so I decided to stick with it.<p>What I don't get is why Randy Pitchford seems intent on alienating the player base further by doubling down again and again on there not being a problem. Emotionally, I understand being defensive of one's work, but at a certain point it might be financially advantageous to show some humility or simply ... not say anything. Then again, he's free to do as he pleases.</p>
]]></description><pubDate>Tue, 16 Sep 2025 21:07:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=45268058</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45268058</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45268058</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Liquid Glass in the Browser: Refraction with CSS and SVG"]]></title><description><![CDATA[
<p>backdrop-filter is supported by all major browsers, but specifically using SVG filters, which are more powerful and is out-of-spec, is only supported in Chromium-based browsers.</p>
]]></description><pubDate>Tue, 09 Sep 2025 06:28:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=45178188</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45178188</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45178188</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Our love letter to Internet Relay Chat [video]"]]></title><description><![CDATA[
<p>> One of the channels I am still on is full of VPS hosted ghosts;<p>This hits hard. I might be one of those ghosts. When I last checked in, I saw the same in virtually all the channels that were once important to me. My bouncer is still running, I suppose I'm not quite ready to let go yet.</p>
]]></description><pubDate>Sat, 06 Sep 2025 18:54:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=45151910</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45151910</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45151910</guid></item><item><title><![CDATA[New comment by Cu3PO42 in "Atlassian is acquiring The Browser Company"]]></title><description><![CDATA[
<p>If you liked Arc, you should try Zen. I understand it brings many of the same ideas to a Firefox base.</p>
]]></description><pubDate>Thu, 04 Sep 2025 13:06:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=45126822</link><dc:creator>Cu3PO42</dc:creator><comments>https://news.ycombinator.com/item?id=45126822</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45126822</guid></item></channel></rss>