<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: arianvanp</title><link>https://news.ycombinator.com/user?id=arianvanp</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 15 Jun 2026 10:30:48 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=arianvanp" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by arianvanp in "1-Click GitHub Token Stealing via a VSCode Bug"]]></title><description><![CDATA[
<p>Zed downloads random binaries on startup without any permissions prompts. No thanks.</p>
]]></description><pubDate>Wed, 03 Jun 2026 07:17:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=48380938</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48380938</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48380938</guid></item><item><title><![CDATA[New comment by arianvanp in "NPM packages from Red Hat have been compromised"]]></title><description><![CDATA[
<p>Given they use nx my bet is on developer laptop compromise through the nx vscode extension that also compromised GitHub engineer's laptop</p>
]]></description><pubDate>Mon, 01 Jun 2026 13:46:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=48356818</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48356818</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48356818</guid></item><item><title><![CDATA[New comment by arianvanp in "Garnix (A Nix CI) is shutting down"]]></title><description><![CDATA[
<p>Yeh... This month has been especially tough. I'm both a customer of cirrus labs (now bought up by OpenAI) and garnix (now bought up by Shopify) and I'm scared that whatever competitor I switch to is also just gonna get bought out.<p>Now I have two CI providers to replace by the end of the Quarter<p>Sigh</p>
]]></description><pubDate>Fri, 29 May 2026 08:20:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=48320522</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48320522</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48320522</guid></item><item><title><![CDATA[New comment by arianvanp in "Italians and Dutch share the same gestural instinct for teaching"]]></title><description><![CDATA[
<p>I only realized that dutch people are handful communicators when moving abroad. Apparently I do it unconsciously all the time.<p>For example we gesture when something tastes good and I don't even say "tastes good" out loud i just wave my hand next to my cheek. But quickly learnt that people think you're crazy in the head instead of complimenting the chef.<p><a href="https://youtube.com/shorts/5a9Md32gSQg?is=fJ9BYQEt-CpEUE-g" rel="nofollow">https://youtube.com/shorts/5a9Md32gSQg?is=fJ9BYQEt-CpEUE-g</a></p>
]]></description><pubDate>Fri, 29 May 2026 08:11:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=48320451</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48320451</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48320451</guid></item><item><title><![CDATA[New comment by arianvanp in "DynIP – Dynamic DNS with RFC 2136, IPv6, DNSSEC, and BYOD"]]></title><description><![CDATA[
<p>This will be great for my homelab. Currently I have some hacky scripts to update he.net records whenever my ISP sends me a new ipv6 prefix but I'd prefer to reuse existing tooling.<p>Looking into switching today :D</p>
]]></description><pubDate>Tue, 26 May 2026 08:56:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=48277008</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48277008</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48277008</guid></item><item><title><![CDATA[New comment by arianvanp in "Ask HN: Is anyone working at least 4 hours daily on an Apple Vision Pro?"]]></title><description><![CDATA[
<p>I've tried and it's okay with Virtual desktop but the resolution is like on the uncanny line of fine and not good enough.<p>The quest being much lighter makes it nice though (but you should buy a third party headstrap that doesn't suck)</p>
]]></description><pubDate>Tue, 26 May 2026 08:53:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=48276986</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48276986</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48276986</guid></item><item><title><![CDATA[New comment by arianvanp in "Amazon Web Services – Four Years and Out"]]></title><description><![CDATA[
<p>Was inspiring to meet you at NixCon. Thanks for all your energy and advocacy! You'll always be welcome in our open source community.</p>
]]></description><pubDate>Sun, 24 May 2026 08:57:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=48255712</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48255712</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48255712</guid></item><item><title><![CDATA[New comment by arianvanp in "We should get rid of average CPU utilization"]]></title><description><![CDATA[
<p>A more general metric that is useful to watch for is pressure stall information for CPU, IO and Memory.<p><a href="https://docs.kernel.org/accounting/psi.html" rel="nofollow">https://docs.kernel.org/accounting/psi.html</a><p>I made a Prometheus exporter for it:<p><a href="https://github.com/arianvp/cgroup-exporter" rel="nofollow">https://github.com/arianvp/cgroup-exporter</a></p>
]]></description><pubDate>Fri, 22 May 2026 09:15:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=48233615</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48233615</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48233615</guid></item><item><title><![CDATA[New comment by arianvanp in "GitHub is investigating unauthorized access to their internal repositories"]]></title><description><![CDATA[
<p>Ah yeh Zed. The editor that downloads random binaries for LSPs unprompted without asking me. That's not gonna end badly.<p>The only way I found out is because I run NixOS and it downloaded a dynamically linked binary that failed to start up and it spat out an error</p>
]]></description><pubDate>Wed, 20 May 2026 07:12:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=48204202</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48204202</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48204202</guid></item><item><title><![CDATA[New comment by arianvanp in "Postmortem: TanStack NPM supply-chain compromise"]]></title><description><![CDATA[
<p>Why do we do all these efforts making our build systems hermetic and we end up just using a global mutable cache across branches where the caller picks the key? Failure of industry as a whole. Actually insane.</p>
]]></description><pubDate>Tue, 12 May 2026 07:40:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=48105357</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48105357</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48105357</guid></item><item><title><![CDATA[New comment by arianvanp in "Using Claude Code: The unreasonable effectiveness of HTML"]]></title><description><![CDATA[
<p>The irony of this being a Twitter post with pictures of html rendering instead of an interactive html page is not lost on me.<p>Arguing for html on a platform with less rich semantics than markdown is just ultimately funny</p>
]]></description><pubDate>Sat, 09 May 2026 10:32:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=48073789</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=48073789</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48073789</guid></item><item><title><![CDATA[New comment by arianvanp in "Wire to Replace Signal as Standard in the Bundestag"]]></title><description><![CDATA[
<p>Yes, updates were delivered using a flash drive.<p>> PVC backing<p>Yeh. But wire's storage is based on Cassandra which handles replication of storage. So you could deploy it on local nvme drives as well using a local storage CSI.<p>That's also how the wire.com cloud is/was run.  Large Cassandra cluster on top of EC2 Instance Store as opposed to EBS.</p>
]]></description><pubDate>Wed, 29 Apr 2026 09:27:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=47946006</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47946006</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47946006</guid></item><item><title><![CDATA[New comment by arianvanp in "Wire to Replace Signal as Standard in the Bundestag"]]></title><description><![CDATA[
<p>Working on the foundation of this (getting Wire deployed at and certified by the BSI) was my first job out of college 7 years ago and how I ended up in Berlin. And once you end up in Berlin you can never leave, it seems.<p>I was actually on site at the Bundeskanzleramt and they had requirements of being able to install the entire server stack airgapped. We ended up building quite a cool delivery method based on Nix to ship the whole closure of the system and the containers inside and spin up a Kubernetes cluster with it. I'm wondering if it is still being used.<p>Amazing to see it's still going strong :)</p>
]]></description><pubDate>Wed, 29 Apr 2026 08:39:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=47945686</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47945686</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47945686</guid></item><item><title><![CDATA[New comment by arianvanp in "Ghostty is leaving GitHub"]]></title><description><![CDATA[
<p>And yet GitHub has felt the most dead it ever did. Less quality contributions. Less feeling of community. All the open source projects are struggling.<p>They dont have a service usage problem they have a slop problem. Ban the slop and the platform will thrive</p>
]]></description><pubDate>Tue, 28 Apr 2026 20:32:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=47940308</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47940308</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47940308</guid></item><item><title><![CDATA[New comment by arianvanp in "Bitwarden CLI compromised in ongoing Checkmarx supply chain campaign"]]></title><description><![CDATA[
<p>The chainguard folks built sigstore :)</p>
]]></description><pubDate>Thu, 23 Apr 2026 19:03:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=47880108</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47880108</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47880108</guid></item><item><title><![CDATA[New comment by arianvanp in "Some secret management belongs in your HTTP proxy"]]></title><description><![CDATA[
<p>That's not true.  Both AWS' as well as GCP's workload identity tokens are not bound to the VM. If you leak the credentials they're valid until they expire.  on AWS the expiry is 6 hours (non-configurable). Even if your IAM role has a shorter expiration, the credentials assumed by the VM will always be valid for 6 hours.</p>
]]></description><pubDate>Thu, 23 Apr 2026 08:44:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=47873513</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47873513</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47873513</guid></item><item><title><![CDATA[New comment by arianvanp in "Zero-Copy Pages in Rust: Or How I Learned to Stop Worrying and Love Lifetimes"]]></title><description><![CDATA[
<p>Just a heads up: I know it's cool to generate  ASCII art with Claude code these Days but for some reason checks the output? Non of the diagrams in the article look correct to me. They all have spacing issues?</p>
]]></description><pubDate>Mon, 20 Apr 2026 22:58:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=47842168</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47842168</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47842168</guid></item><item><title><![CDATA[New comment by arianvanp in "Zero-copy protobuf and ConnectRPC for Rust"]]></title><description><![CDATA[
<p>I've been running into _a lot_ of issues with Hyper/Tonic. Like literal H2 spec violations. Try hosting a tonic server behind nginx or ALB. It will literally just not work as it can't handle GOAWAY retries in a H2 spec-compliant way.<p>If this fixes that I might consider switching.<p>However, Google is also working in a new grpc-rust implementation and I have faith in them getting it right so holding tight a little bit longer.</p>
]]></description><pubDate>Mon, 20 Apr 2026 07:01:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47831174</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47831174</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47831174</guid></item><item><title><![CDATA[New comment by arianvanp in "Dependency cooldowns turn you into a free-rider"]]></title><description><![CDATA[
<p>I feel like this is false. These companies mostly seem to monitor social media and security mailing lists with an army of LLMs and then republish someone else's free labor as an LLM slop summary as fast as possible whilst using dodgy SEO practices to get picked up quickly.<p>They do do original work sometimes. But most of it feels like reposted stuff from the open source community or even other vendors</p>
]]></description><pubDate>Wed, 15 Apr 2026 07:48:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=47775914</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47775914</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47775914</guid></item><item><title><![CDATA[New comment by arianvanp in "jj – the CLI for Jujutsu"]]></title><description><![CDATA[
<p>You can disable the auto staging of new files since recently which removed the main grype for me</p>
]]></description><pubDate>Tue, 14 Apr 2026 12:44:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=47764937</link><dc:creator>arianvanp</dc:creator><comments>https://news.ycombinator.com/item?id=47764937</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47764937</guid></item></channel></rss>