<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: SamInTheShell</title><link>https://news.ycombinator.com/user?id=SamInTheShell</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 30 Sep 2026 20:14:17 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=SamInTheShell" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by SamInTheShell in "America.gov"]]></title><description><![CDATA[
<p>The harness was censored overnight as well. Can't ask it who won the 2020 election or who was the president in 2020 or 2000. It will say who is president right now though. Crazy shit really.</p>
]]></description><pubDate>Wed, 30 Sep 2026 17:25:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=49911835</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49911835</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49911835</guid></item><item><title><![CDATA[New comment by SamInTheShell in "America.gov"]]></title><description><![CDATA[
<p>I agree with AI being useful for exactly the type of usecase you're thinking. Though I do want to point out a major flaw with trust in this specific harness. It got censored overnight.<p>Last night you could literally query and get factual information about election results; but today it wont even tell you who the president was in 2000.<p>There's a major censorship issue here.</p>
]]></description><pubDate>Wed, 30 Sep 2026 17:24:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=49911819</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49911819</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49911819</guid></item><item><title><![CDATA[New comment by SamInTheShell in "America.gov"]]></title><description><![CDATA[
<p>Last night you can ask "Who won the 2020 election?" and it was like "I got you! It's Joe Biden".<p>Today it responds with "America does not provide campaign or party information."<p>The people on Reddit were right.</p>
]]></description><pubDate>Wed, 30 Sep 2026 17:13:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=49911706</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49911706</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49911706</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions"]]></title><description><![CDATA[
<p>Those are API things. Should be an API, build an MCP server for it. Doesn't touch the PC. About the automated responses, that's a write operation, therefore requires user consent.<p>If you want to design a system specifically to make sure you're not going to get stonewalled for sending me an emdash, you build and maintain a set of permissive rules for sending/reading to avoid my blacklist of people I'll never work with.<p>Once you got API stuff sorted, just throw a cronjob at it or build a service for that stuff.<p>^ There be prompts all over the place here, obviously.
Realistically your MCP server will end up hacking on POP3.</p>
]]></description><pubDate>Wed, 30 Sep 2026 17:03:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=49911561</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49911561</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49911561</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions"]]></title><description><![CDATA[
<p>> that it still functions as a general purpose assistant<p>What features you want it to have? The thing you're saying is super vague, I would just say that one belongs in cloud.<p>If it must run things on the user's machine, it's gotta be in a rootless container and not be root inside the container. All tools belong in the container. Folder access explicitly configured by the user.<p>Like I already did this for my local AI: <a href="https://github.com/SamInTheShell/loom" rel="nofollow">https://github.com/SamInTheShell/loom</a><p>It's not perfect or even done, but it works and it shows the security model that should be standard for aligned models we're running.<p>Unaligned models, absolutely different story.<p>Also VM is better than container for security, but containers are a bare minimum for me.</p>
]]></description><pubDate>Tue, 29 Sep 2026 23:22:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=49902204</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49902204</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49902204</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions"]]></title><description><![CDATA[
<p>The problem is trivial to solve. Treat AIs like they are users. We have user space for a reason. We have linux namespaces for a reason. We have real airgap architectures where the data center can't even connect out.<p>When you're a company running around with more than a few billion in the vault, you have no excuse for the level security negligence going on at every phase of rollout.<p>I gawked at Cursor executing a python script one time and decided enough was enough, I don't raw dog these tools anymore because their developers are the dumbest people to task with security work. They just don't care.</p>
]]></description><pubDate>Tue, 29 Sep 2026 16:44:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=49896249</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49896249</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49896249</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions"]]></title><description><![CDATA[
<p>These companies don't care. The technology exists, but the legislative stick just isn't there to incentivize these idiots to do the right things.</p>
]]></description><pubDate>Tue, 29 Sep 2026 16:00:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=49895579</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49895579</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49895579</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions"]]></title><description><![CDATA[
<p>It's already solved. I have two git repos proving these companies can fix the problems. The fact this continues just proves they don't care. In one project I literally containerize CLI coding tools, it works. You might say "sure, but network." I literally wrote a desktop app harness that you can toggle the network on/off too.<p>This is all amateur hour shenanigans.</p>
]]></description><pubDate>Tue, 29 Sep 2026 15:59:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=49895565</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49895565</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49895565</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>Still doesn't answer the question. In Java, allocate 8 gigs. Free 7 gigs. Why still 8 gigs? I didn't ask anything about if I could run a 1 gig process here.</p>
]]></description><pubDate>Mon, 28 Sep 2026 18:02:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=49881924</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49881924</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49881924</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>This is going to be interesting to check out. Thanks.</p>
]]></description><pubDate>Mon, 28 Sep 2026 18:01:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=49881895</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49881895</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49881895</guid></item><item><title><![CDATA[New comment by SamInTheShell in "MongoDB CEO resigns to join Meta"]]></title><description><![CDATA[
<p>Migrate to yugabyte? It's a multi-raft fork of postgres.</p>
]]></description><pubDate>Mon, 28 Sep 2026 17:54:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=49881798</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49881798</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49881798</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>Never really thought about this but it seems to me that if you want to launch separate processes? Goroutines are built around functions, so you're just stuck with function semantics. If you want an entire process, you just invoke self with a feature flag on your binary and control a subprocess. If you need to communicate you establish your own message passing channels with STDIO or something.<p>I don't feel this is hacky or even a work around. Just different promises on what goroutines are vs threads/concurrency/processes in other languages.<p>Exit and panics are promised at the process level in Go.</p>
]]></description><pubDate>Sun, 27 Sep 2026 21:07:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=49870855</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49870855</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49870855</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>I don't have a use case where anything in my toolbox isn't already sufficient enough to solve, it wouldn't be worth while. Maybe if I cared to work at some big place or specifically Ericsson, but there's better things to be doing with my time. There's plenty of problems that can be solved with tools like uv/Python/PyWebView.</p>
]]></description><pubDate>Sun, 27 Sep 2026 20:54:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=49870718</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49870718</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49870718</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>The memory safety thing is just a moot out of scope contract. It seems moot to me every time someone shows up trying to push memory safety everywhere, that's a language to developer contract issue, not a functionality issue. When the contract of the language is such as that of Go vs Rust, the two languages are just offering different contracts. Rust just promises to hold your hand more than Go does.<p>Regarding the JVM and GC. Good luck with that? Every Java application I've seen in the wild when I supported JVM seemed to never release any ram it allocated. Ever. If it used 1G and even after free, the JVM decided that was going to be used again and wouldn't release it.<p>It would be hard to sell me on wanting to use Java again (people can pay me enough to do it, but I hate it). Which kinda sucks since Apache Foundation has a ton of really cool projects using it. Kotlin maybe, but I have no real use cases where it would be better than anything else I know right now.</p>
]]></description><pubDate>Sun, 27 Sep 2026 20:28:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=49870493</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49870493</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49870493</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>I gave an example. Go allocate 8 gigs. Then get it garbage collected. Why is JVM still allocating 8 gigs?</p>
]]></description><pubDate>Sun, 27 Sep 2026 20:14:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=49870393</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49870393</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49870393</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>To the concurrency/threading; no? (there might be an "it depends situation somewhere idk about)<p>But Go itself comes with it's own runtime built into the final binary. It doesn't work well in some use-cases, I mentioned some of the draw backs in a couple other comments if you want to dig those up.<p>Also I saw some of the other comments. Channels are ultimately just used for message passing and aren't that complicated. You also can use mutexes or some other locking pattern. There's some primitive atomic structures available that solve some use-cases preventing you from even have to having to really deal with working between goroutines.</p>
]]></description><pubDate>Sun, 27 Sep 2026 05:37:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=49863634</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49863634</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49863634</guid></item><item><title><![CDATA[New comment by SamInTheShell in "How to keep enjoying programming in a world of LLMs"]]></title><description><![CDATA[
<p>Was happy to see someone forked Zed into "Gram". It was very disappointing to see every code editor go the route of being more than a code editor or even full IDE. I can literally just invoke a separate AI app to do code if I want that. I don't want to have to be actively conscious of every keystroke being shipped up to a backend to be processed. Sometimes I just need a dumb scratchpad to plop a password onto with other shared notes while I'm mid-task in an unsaved tab.</p>
]]></description><pubDate>Sun, 27 Sep 2026 05:31:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=49863611</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49863611</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49863611</guid></item><item><title><![CDATA[New comment by SamInTheShell in "How to keep enjoying programming in a world of LLMs"]]></title><description><![CDATA[
<p>Idk, I could see some of my stats (like Claude usage) and I tried to avoid spending an unjustified amount of money.</p>
]]></description><pubDate>Sun, 27 Sep 2026 05:28:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=49863605</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49863605</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49863605</guid></item><item><title><![CDATA[New comment by SamInTheShell in "How I changed teaching after AI managed to do all my homework assignments"]]></title><description><![CDATA[
<p>Why not just make the assignments "reading" based and set an expectation of randomized quizzes that take 5 minutes at the start of class to fill out to get the homework credit? When I say randomized, like multiple versions. You can use LLMs to churn out PDFs to a tailored format and utilize a pool of questions.</p>
]]></description><pubDate>Sun, 27 Sep 2026 05:21:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=49863590</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49863590</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49863590</guid></item><item><title><![CDATA[New comment by SamInTheShell in "Go Concurrency Distilled"]]></title><description><![CDATA[
<p>I found Go memory issues easier to solve than Java issues. You can see an example with etcd used in Kubernetes. I had to enable performance profiling in etcd to identify why it was eating up all the memory. It led me to a specific partition of keys that tracked back to a specific object type in Kubernetes.<p>It was literally enabling a flag and running some commands to do some really quick exports.<p>Dealing with the JVM though, heap dumps are slow to process and the UI I had to download was very clunky. I don't know if there are better tools, but even if there are the path to just doing it isn't straight forward.</p>
]]></description><pubDate>Sun, 27 Sep 2026 05:07:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=49863522</link><dc:creator>SamInTheShell</dc:creator><comments>https://news.ycombinator.com/item?id=49863522</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49863522</guid></item></channel></rss>