<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: gravis</title><link>https://news.ycombinator.com/user?id=gravis</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 23 Apr 2026 07:35:49 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=gravis" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by gravis in "Ask HN: What are you working on? (February 2026)"]]></title><description><![CDATA[
<p>Hey HN - ex-GitLab here, building Selora Homes: Professional installation and managed support for Home Assistant.<p>The idea is to give people the power of HA without needing to maintain it themselves. Most HA enthusiasts are happy to do this for their homes, but don't want to manage HA for parents, friends, etc.<p>We pre-install a smart hub (miniPC) for each subscriber and we maintain management access on the host via WireGuard, but all traffic is closed by default - remote support requires your approval. You stay admin of your own instance. The host pulls config updates from our public repo (<a href="https://gitlab.com/selorahomes/products/selorabox-nix/" rel="nofollow">https://gitlab.com/selorahomes/products/selorabox-nix/</a>), and we handle monitoring, troubleshooting, and (soon) automatic updates with health-aware rollbacks.<p>We're also working on an AI agent that helps maintain configs and suggests automations.<p>We're an open core company backed by Open Core Ventures. Source code is on GitLab, roadmap is public: <a href="https://selorahomes.com/docs/roadmap/" rel="nofollow">https://selorahomes.com/docs/roadmap/</a><p>Currently recruiting beta testers in California (Bay Area and SoCal) if you know anyone interested in testing our product!<p>We ship you a pre-installed miniPC, our installers handle any physical setup required, and we configure remotely so your devices are set up, along with automations, and a dashboard.<p>You give us honest feedback. If you're interested, book a call with us: <a href="https://selorahomes.cal.com/selorahomes/beta-tester-intro" rel="nofollow">https://selorahomes.cal.com/selorahomes/beta-tester-intro</a><p>We also have a free version:
<a href="https://selorahomes.com/pricing" rel="nofollow">https://selorahomes.com/pricing</a><p>Check out our docs if want to explore by yourself:
<a href="https://selorahomes.com/docs/" rel="nofollow">https://selorahomes.com/docs/</a></p>
]]></description><pubDate>Tue, 10 Feb 2026 03:22:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=46954956</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=46954956</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46954956</guid></item><item><title><![CDATA[New comment by gravis in "GitHub’s latest security features"]]></title><description><![CDATA[
<p>GitLab offers free security checks for opensource projects (<a href="https://about.gitlab.com/blog/2018/06/05/gitlab-ultimate-and-gold-free-for-education-and-open-source/" rel="nofollow">https://about.gitlab.com/blog/2018/06/05/gitlab-ultimate-and...</a>). Enabling these checks is as simple as this one-liner (<a href="https://docs.gitlab.com/ee/user/application_security/sast/index.html#configuration" rel="nofollow">https://docs.gitlab.com/ee/user/application_security/sast/in...</a>):<p>include:
  template: SAST.gitlab-ci.yml<p>Now do the same with Dependency Scanning, Container Scanning, DAST and License Compliance if needed.<p>Note that Auto-DevOps enables this automatically.<p>On a general note, I agree with you, Security should be available out of the box for everyone. I created last month this issue for this purpose, feel free to comment or watch it.</p>
]]></description><pubDate>Mon, 14 Oct 2019 21:25:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=21253063</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=21253063</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21253063</guid></item><item><title><![CDATA[New comment by gravis in "Gemnasium acquired by GitLab, the future of version control is built-in security"]]></title><description><![CDATA[
<p>GitLab is planning a feature with the ability to use CI/CD pipelines (and so security checks) also for GitHub hosted projects. It is intended to be released in 10.6, according to the current scheduling: <a href="https://gitlab.com/gitlab-org/gitlab-ee/issues/3839" rel="nofollow">https://gitlab.com/gitlab-org/gitlab-ee/issues/3839</a></p>
]]></description><pubDate>Tue, 30 Jan 2018 21:31:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=16269239</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=16269239</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=16269239</guid></item><item><title><![CDATA[Gemnasium acquired by GitLab, the future of version control is built-in security]]></title><description><![CDATA[
<p>Article URL: <a href="https://gemnasium.com/blog/gemnasium-is-acquired-by-gitlab/">https://gemnasium.com/blog/gemnasium-is-acquired-by-gitlab/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=16264916">https://news.ycombinator.com/item?id=16264916</a></p>
<p>Points: 27</p>
<p># Comments: 6</p>
]]></description><pubDate>Tue, 30 Jan 2018 13:08:40 +0000</pubDate><link>https://gemnasium.com/blog/gemnasium-is-acquired-by-gitlab/</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=16264916</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=16264916</guid></item><item><title><![CDATA[New comment by gravis in "GitHub acquires AppCanary"]]></title><description><![CDATA[
<p>Good luck Phill and Max for your new adventure!
And thanks for having mentioned <a href="https://gemnasium.com" rel="nofollow">https://gemnasium.com</a> as an alternative.</p>
]]></description><pubDate>Fri, 05 Jan 2018 15:50:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=16079303</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=16079303</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=16079303</guid></item><item><title><![CDATA[New comment by gravis in "Security alerts on GitHub"]]></title><description><![CDATA[
<p>(Hint: Gemnasium founder here)
If you like this feature, you may want to try <a href="https://gemnasium.com" rel="nofollow">https://gemnasium.com</a> then. We have a lot more advisories in db, for Java, Python, Ruby, PHP and JavaScript. Please feel free if you have any question, I’ll be glad to help!</p>
]]></description><pubDate>Fri, 17 Nov 2017 01:23:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=15718247</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=15718247</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=15718247</guid></item><item><title><![CDATA[From Monolith to Micro-Services, Part 3: The Transition]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/146701089939/from-monolith-to-micro-services-part-3">http://blog.gemnasium.com/post/146701089939/from-monolith-to-micro-services-part-3</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=12008169">https://news.ycombinator.com/item?id=12008169</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 30 Jun 2016 12:58:02 +0000</pubDate><link>http://blog.gemnasium.com/post/146701089939/from-monolith-to-micro-services-part-3</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=12008169</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=12008169</guid></item><item><title><![CDATA[From Monolith to Micro-Services (Part 1 / 4)]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/145001327420/from-monolith-to-micro-services-part-1-4">http://blog.gemnasium.com/post/145001327420/from-monolith-to-micro-services-part-1-4</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=11785372">https://news.ycombinator.com/item?id=11785372</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 27 May 2016 11:53:58 +0000</pubDate><link>http://blog.gemnasium.com/post/145001327420/from-monolith-to-micro-services-part-1-4</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=11785372</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=11785372</guid></item><item><title><![CDATA[Dear package, give Git tags to your versions]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/130767660320/dear-package-give-git-tags-to-your-versions">http://blog.gemnasium.com/post/130767660320/dear-package-give-git-tags-to-your-versions</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=10355971">https://news.ycombinator.com/item?id=10355971</a></p>
<p>Points: 4</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 08 Oct 2015 20:33:12 +0000</pubDate><link>http://blog.gemnasium.com/post/130767660320/dear-package-give-git-tags-to-your-versions</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=10355971</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=10355971</guid></item><item><title><![CDATA[Gemnasium security alerts are now free for opensource projets]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/118186520636/security-alerts-go-free?utm_source=hackernews&utm_medium=link&utm_campaign=GemnasiumBlog">http://blog.gemnasium.com/post/118186520636/security-alerts-go-free?utm_source=hackernews&utm_medium=link&utm_campaign=GemnasiumBlog</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=9492520">https://news.ycombinator.com/item?id=9492520</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 05 May 2015 14:05:17 +0000</pubDate><link>http://blog.gemnasium.com/post/118186520636/security-alerts-go-free?utm_source=hackernews&amp;utm_medium=link&amp;utm_campaign=GemnasiumBlog</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=9492520</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=9492520</guid></item><item><title><![CDATA[New comment by gravis in "Gem Updater: Update gems in your Gemfile and fetch their changelogs"]]></title><description><![CDATA[
<p>Ok, but there's a difference between sharing _all_ your files and just a bunch of non-critical ones (Gemfile, Gemfile.lock, etc.) :)</p>
]]></description><pubDate>Mon, 16 Mar 2015 02:04:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=9209314</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=9209314</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=9209314</guid></item><item><title><![CDATA[New comment by gravis in "Gem Updater: Update gems in your Gemfile and fetch their changelogs"]]></title><description><![CDATA[
<p>Hi, Gemnasium founder here.
Let me clarify things a bit :)
Gemnasium is a paid service for private projects only, and security notifications. It's free for opensource projects.
If you don't want to share your github repo with us (and I completely understand that), you can push your files to our API using http requests, or directly our CLI : https//github.com/gemnasium/toolbelt
Modern projects use more than one package manager (ie: bower or npm + something else). You don't need to mix tools with gemnasium, we support projects with multiple deps type.<p>Feel free to contact me if you have any question!</p>
]]></description><pubDate>Sun, 15 Mar 2015 14:13:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=9206548</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=9206548</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=9206548</guid></item><item><title><![CDATA[Gemnasium Auto-Update: Lessons learned]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/104679519720/auto-update-lessons-learned">http://blog.gemnasium.com/post/104679519720/auto-update-lessons-learned</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=8719305">https://news.ycombinator.com/item?id=8719305</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 08 Dec 2014 21:27:07 +0000</pubDate><link>http://blog.gemnasium.com/post/104679519720/auto-update-lessons-learned</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=8719305</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=8719305</guid></item><item><title><![CDATA[Gemnasium is releasing in open-source its toolbelt cli written in go]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/gemnasium/toolbelt">https://github.com/gemnasium/toolbelt</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=8041035">https://news.ycombinator.com/item?id=8041035</a></p>
<p>Points: 5</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 16 Jul 2014 08:06:52 +0000</pubDate><link>https://github.com/gemnasium/toolbelt</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=8041035</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=8041035</guid></item><item><title><![CDATA[Gemnasium unveils Bower dependencies support]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/86244228880/unveiling-bower-support">http://blog.gemnasium.com/post/86244228880/unveiling-bower-support</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=7779948">https://news.ycombinator.com/item?id=7779948</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 21 May 2014 18:38:22 +0000</pubDate><link>http://blog.gemnasium.com/post/86244228880/unveiling-bower-support</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=7779948</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=7779948</guid></item><item><title><![CDATA[Ruby 2013 in review Gemnasium]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/75591409690/2013-in-review">http://blog.gemnasium.com/post/75591409690/2013-in-review</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=7178757">https://news.ycombinator.com/item?id=7178757</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 04 Feb 2014 17:15:10 +0000</pubDate><link>http://blog.gemnasium.com/post/75591409690/2013-in-review</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=7178757</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=7178757</guid></item><item><title><![CDATA[Hacking RubyGems servers]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/63452494107/hacking-rubygems-servers">http://blog.gemnasium.com/post/63452494107/hacking-rubygems-servers</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=6513565">https://news.ycombinator.com/item?id=6513565</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 08 Oct 2013 08:04:28 +0000</pubDate><link>http://blog.gemnasium.com/post/63452494107/hacking-rubygems-servers</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=6513565</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=6513565</guid></item><item><title><![CDATA[Serving ruby gems, the paranoid way]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.gemnasium.com/post/62702069261/serving-ruby-gems-the-paranoid-way">http://blog.gemnasium.com/post/62702069261/serving-ruby-gems-the-paranoid-way</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=6468290">https://news.ycombinator.com/item?id=6468290</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 30 Sep 2013 07:49:45 +0000</pubDate><link>http://blog.gemnasium.com/post/62702069261/serving-ruby-gems-the-paranoid-way</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=6468290</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=6468290</guid></item><item><title><![CDATA[New comment by gravis in "Node.js security advisories"]]></title><description><![CDATA[
<p>and <a href="https://gemnasium.com" rel="nofollow">https://gemnasium.com</a> (which supports npm as well)</p>
]]></description><pubDate>Fri, 06 Sep 2013 08:33:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=6339310</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=6339310</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=6339310</guid></item><item><title><![CDATA[Pkgr, make a package out of a Rails app in 5 minutes]]></title><description><![CDATA[
<p>Article URL: <a href="https://discuss.gemnasium.com/t/pkgr-make-a-package-out-of-a-rails-app-in-5-minutes/59">https://discuss.gemnasium.com/t/pkgr-make-a-package-out-of-a-rails-app-in-5-minutes/59</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=6082289">https://news.ycombinator.com/item?id=6082289</a></p>
<p>Points: 35</p>
<p># Comments: 6</p>
]]></description><pubDate>Mon, 22 Jul 2013 07:22:44 +0000</pubDate><link>https://discuss.gemnasium.com/t/pkgr-make-a-package-out-of-a-rails-app-in-5-minutes/59</link><dc:creator>gravis</dc:creator><comments>https://news.ycombinator.com/item?id=6082289</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=6082289</guid></item></channel></rss>