<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: jtrn</title><link>https://news.ycombinator.com/user?id=jtrn</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 13 Aug 2026 21:38:37 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=jtrn" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by jtrn in "Codex in ChatGPT desktop app for Linux is now in preview"]]></title><description><![CDATA[
<p>Nonono. You are supposed to pile one with negativity and point out everything that is bad with it!!</p>
]]></description><pubDate>Thu, 13 Aug 2026 16:54:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=49288750</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=49288750</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49288750</guid></item><item><title><![CDATA[New comment by jtrn in "Codex in ChatGPT desktop app for Linux is now in preview"]]></title><description><![CDATA[
<p>So much negativity... I like the desktop app and am looking forward to testing it out.</p>
]]></description><pubDate>Thu, 13 Aug 2026 16:53:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=49288723</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=49288723</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49288723</guid></item><item><title><![CDATA[New comment by jtrn in "Yubikey 5.8: Verified Authorization for the New Era of Identity and AI"]]></title><description><![CDATA[
<p>It was misleading by me also. As mentioned, terrible work day yesterday, so I was writing angrily. Ironic that I accuse the security people of being bad at explaining, then turn around and explain stuff badly myself...<p>Ill TRY to make it up by explaining it as i understand this.<p>This is not adding the pin functionality, I was just focusing on the flow that happens when you get the Fido2 challenge flow on a webpage. That functionality is already there. Thee new thing is the 5.8 ads support for a second roundtrip/flow for signing stuff in browsers.<p>Right now, a YubiKey does only one thing in browser: signing a "login challenge string" from the webpage (FIDO2 flow). This is just slightly simplified: (random number + domain + some other shit). Fingerprint that string and return that cryptographically signed result to the site, as proof that "Only I could have signed this login challenge."<p>Right now, that's the only supported back-and-forth flow for signing anything with a YubiKey vs. a browser.<p>The new thing is that YubiKey wants a second flow, where the browser sends a request to sign any arbitrary text. So the page contains a contract, converts that to a fingerprint, the browser sends the fingerprint to YubiKey, YubiKey cryptographically signs this, and you can post the resultant string anywhere (public key cryptography magic), and that proves that the person holds that hardware key signed that exact input string (the contract).<p>So if/when Chrome, Safari, Firefox, and more accept this standard, you could click a button below a contract on a webpage, and the back-and-forth dance with the YubiKey would result in a string below that contract being cryptographic proof that the exact contract above is signed by the person holding one specific key.<p>Notice the lack of any AI-related shit in this functionality, yet the article reads 5.8 is a revolution for security in "the AI era"</p>
]]></description><pubDate>Wed, 22 Jul 2026 06:31:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=49002617</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=49002617</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49002617</guid></item><item><title><![CDATA[New comment by jtrn in "Yubikey 5.8: Verified Authorization for the New Era of Identity and AI"]]></title><description><![CDATA[
<p>Perhaps you should look at the announcement. Of course webauthin is in the browsers. They didn’t announced that they now support webauthn??? I said the webauthn THING because it’s an addition to that functionality!<p>A 2018 page announcing the base API, and a devtool page about the virtual authenticator debugger is not relevant to this new extensions.<p>The thing that’s an unshipped proposal is the sign extension.<p>So my point stands, nothing new and useful in this at all and nothing they announced is usable for anybody today.<p>Or am I mistaken? What new thing will you, or anybody, do with this 5.8 announcement?</p>
]]></description><pubDate>Tue, 21 Jul 2026 21:50:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=48998841</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48998841</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48998841</guid></item><item><title><![CDATA[New comment by jtrn in "Apple Private Cloud Compute SoC 3 audit reports"]]></title><description><![CDATA[
<p>"Here are 2 things, but you can only have 1," it seems.</p>
]]></description><pubDate>Tue, 21 Jul 2026 20:38:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=48997938</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48997938</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48997938</guid></item><item><title><![CDATA[New comment by jtrn in "Yubikey 5.8: Verified Authorization for the New Era of Identity and AI"]]></title><description><![CDATA[
<p>I'm a bit emotional after an extremely long and aggravating day at work, so this is probably situational based, but I HATE the whole god damn security field, and this is one of many examples of why.<p>It's impossible to get simple explanations out of anybody in that field. And it's why security has always been a pain. It's like they're allergic to making plain, straightforward sense.<p>Here’s what this actually means for people who expect stuff to matter in any practical terms.<p>5.8 changes zero things about how you work. You cannot upgrade older keys to it, you have no reason to buy it, and the two features actually in there have never once been used by anyone outside a lab. The WebAuthn thing could, in theory, make the browser remember your key so you don't have to pin every time you use it, but that only happens when Apple, Google and others implement this proposed standard. Right now, no browser can call it. Not Chrome, not Safari, not anything. The spec is an open pull request. If it ever ships it's years out, and it wont be you that starts using it first, it would have to be some big auth entity.<p>The ARKG thing: same, plus it needs a wallet ecosystem that doesn't exist yet.<p>Yubico shipped firmware whose headline features nothing can currently use, is not relevant for existing hardware, and wrote three pages about AI to sell it. That's the actual story.<p>bleh.</p>
]]></description><pubDate>Tue, 21 Jul 2026 20:36:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=48997916</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48997916</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48997916</guid></item><item><title><![CDATA[New comment by jtrn in "Migrating a production AI agent to GPT-5.6: 2.2x faster, 27% cheaper"]]></title><description><![CDATA[
<p>One of many reasons I would assume is that people just hate anything related to AI, so they latch on to anything negative they can say.<p>Another reason is that they mean what they say... That they really, really hate the style of writing, enough to fixate on that.<p>Personally, I think the people whining about the style are silly. Maybe because I'm terrible at grammar and spelling, but I always just focus on the message, not the delivery. I just care about the concept, facts, the argument, and so forth. The actual grammar and spelling are just trees, while the forest is the point.<p>Edit: just an infobit: The reason my text isn't full of errors is due to the awesomeness of the dictation and a custom hotkey I have created on my computer, which uses a local LLM to spellcheck any text I have selected and replaces it with the corrected one. Nothing has improved my quality of life and writing more than these two tools!</p>
]]></description><pubDate>Mon, 13 Jul 2026 13:09:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=48892121</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48892121</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48892121</guid></item><item><title><![CDATA[New comment by jtrn in "GPT-5.6"]]></title><description><![CDATA[
<p>Same, I am actually able to reach my weekly limit, but when I start going below 30%, I switch to normal speed, and that usually gets me through the week.<p>I absolutely save money and time by constantly using everything at the highest reasoning. I guess my use case and needs are different from others, but I really don’t understand how it can be true when people say they don’t need the highest reasoning and best model. Every time I drop down, things are missed, code gets unnecessarily bloated, more mistakes, and more iterations to solve the same problem. I think it might be because I’m spending a lot of time in a legacy system that I’m trying to clean up, and given the messiness, one needs all the reasoning available to decode what the hell is going on in there.</p>
]]></description><pubDate>Fri, 10 Jul 2026 05:10:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=48855953</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48855953</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48855953</guid></item><item><title><![CDATA[New comment by jtrn in "Tokenmaxxing is dead, long live tokenmaxxing"]]></title><description><![CDATA[
<p>Better title more in line with the content of the article would have been: The reports of tokenmaxxing’s death are greatly exaggerated.<p>Pet peeve of mine is nonsensical usage of the x is dead, long live x.</p>
]]></description><pubDate>Sun, 28 Jun 2026 18:50:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=48710252</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48710252</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48710252</guid></item><item><title><![CDATA[New comment by jtrn in "Vitamin D3 During Pregnancy and Cognitive Performance at 10 Years"]]></title><description><![CDATA[
<p>Can you say p-hacking? It was designed and powered to test whether prenatal vitamin D reduces childhood asthma/wheeze, and found no effect on that primary outcome. The rest is just shuffling numbers and statistical methods around until something with p > .05 pops out.<p>They flags their own post hoc status, reports modest effect sizes, and applies some multiple-comparison correction. That makes the rhetorical sleight of hand harder to spot, because it's buried inside otherwise careful looking work.<p>The statistics are shit. They applied Benjamini-Hochberg FDR correction within cognitive domains, not across the family of 11 functions. That choice is what produced the headline "memory survived correction."<p>Watch what happens with the actual numbers. The two "winning" functions, verbal memory (p = .02) and visual memory (p = .01), both sit inside the memory domain — which contains exactly those two functions. BH within a 2-member family barely adjusts anything: the most lenient threshold is just 0.05, and both p-values are already under it, so the q-values come back at .02 and .02. The correction was toothless by construction, because the two hits happened to fall in the same tiny domain. A reviewer should have made them show the whole-family result side by side. The fact that they didn't is the tell. And there is much more that could be criticized in the same manner across the whole thing.<p>And then the observational data fail to corroborate the supplementation finding. The authors explain the mismatch via trimester timing of exposure, which is plausible, but the equally plausible reading is that the RCT hits are fragile, or that, more probably, it's not a real effect.<p>And even if there was an effect, it's so small and weak and NOT proven by even this data, that the recommendation for supplementation is not warranted at all. At best, this single study with their focus on recreating this effect is the only defensible conclusion. And yet they recommend supplementation.This is pure bias and D-vitamin cult babble once again.<p>The conclusion, based on the actual data, is: in a vitamin-D-sufficient cohort, high-dose prenatal D3 was not associated with offspring cognition on any whole-battery-corrected measure.<p>I hate this so much because it's stupidity like this that shows that science is not worth paying attention to, because the scientists basically lie through their teeth, at least from my perspective, where truth is something that is verifiable and relates to something real.</p>
]]></description><pubDate>Sun, 07 Jun 2026 17:22:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=48436866</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48436866</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48436866</guid></item><item><title><![CDATA[New comment by jtrn in "Microsoft builds MacBook Pro rival with NVIDIA-powered Surface Laptop Ultra"]]></title><description><![CDATA[
<p>Indeed. Never buying a windows computer ever again. Every time I use it I get angry.</p>
]]></description><pubDate>Mon, 01 Jun 2026 21:56:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=48363192</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48363192</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48363192</guid></item><item><title><![CDATA[New comment by jtrn in "Claude Opus 4.8"]]></title><description><![CDATA[
<p>Initial testing feels better than 4.8
And the knowledge cutoff claim of January 2026 seems to check out since it was able to "remember" without search about the double-tap killing of a drug smuggler by the US Army in late December.</p>
]]></description><pubDate>Thu, 28 May 2026 19:14:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=48313986</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48313986</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48313986</guid></item><item><title><![CDATA[New comment by jtrn in "SQLite Code of Ethics"]]></title><description><![CDATA[
<p>One could probably argue that, if interpreted in a certain way, most of these laws/rules could be good. Even the god praising could be seen positively if one subtly transforms "god" into something like "that which is good," as many secular philosophers have done.<p>However, this rule cannot be shown to be universally good, regardless of interpretation:<p>"Obey in all things the commands of those whom God has placed in authority over you, even though they (which God forbid) should act otherwise, mindful of the Lord's precept, 'Do what they say, but not what they do.'"<p>It’s just not logical or empirically coherent. We could deconstruct this  stupidity extensively, but it would not fit within the margin of this thread.</p>
]]></description><pubDate>Thu, 14 May 2026 10:02:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=48133259</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=48133259</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48133259</guid></item><item><title><![CDATA[New comment by jtrn in "Our commitment to Windows quality"]]></title><description><![CDATA[
<p>Oh goody. I left windows but this really makes me want to come back: More control over widgets and feed experiences!<p>What a list of bangers!</p>
]]></description><pubDate>Fri, 20 Mar 2026 22:32:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=47461607</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47461607</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47461607</guid></item><item><title><![CDATA[New comment by jtrn in "Claude Code, Claude Cowork and Codex #5"]]></title><description><![CDATA[
<p>I found this an incredibly well written and interesting read. A bit of a strange format… is it an article or a newsletter or something else? It is extremely long. I don’t really care though. Because I loved the combination of quotes, insights and links. Thanks.</p>
]]></description><pubDate>Tue, 10 Mar 2026 07:44:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=47320183</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47320183</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47320183</guid></item><item><title><![CDATA[New comment by jtrn in "Google Workspace CLI"]]></title><description><![CDATA[
<p>Nothing. MCP and HTTP APIs and CLI tools without the good parts. They lack the robustness of the OpenAPI spec, including security standardization, and are more complex to run than simple CLI utilities without any authentication.<p>I have done it many times, using the swagger.json as a "discovery service" and then having the agent utilize that API. A good OpenAPI spec was working perfectly fine for me all the way back when OpenAI introduced GPTs.<p>If we standardized on a discovery/ endpoint, or something like that, as a more compact description of the API to reduce token usage compared to consuming the somewhat bloated full OpenAPI spec, you would have everything you need right there.<p>The MCP side quest for AI has been one of the most annoying things in AI in recent years. Complete waste of time.</p>
]]></description><pubDate>Thu, 05 Mar 2026 07:43:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=47258795</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47258795</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47258795</guid></item><item><title><![CDATA[New comment by jtrn in "Most-read tech publications have lost over half their Google traffic since 2024"]]></title><description><![CDATA[
<p>The low ratio of quality original reporting vs political and opinion pieces made stop reading the verge.</p>
]]></description><pubDate>Tue, 03 Mar 2026 21:51:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=47239552</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47239552</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47239552</guid></item><item><title><![CDATA[New comment by jtrn in "IBM Plunges After Anthropic's Latest Update Takes on COBOL"]]></title><description><![CDATA[
<p>Code is less and less the scares resource.... Good documentation is.</p>
]]></description><pubDate>Mon, 23 Feb 2026 22:15:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=47129778</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47129778</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47129778</guid></item><item><title><![CDATA[New comment by jtrn in "The three year myth"]]></title><description><![CDATA[
<p>I think you just heard that word and use it because it makes you sound like a logical person. It’s not fitting at all here. After all, a straw man would be me taking a general claim and creating the weakest version of that argument.<p>If anything, you should argue that it’s overgeneralization, over-extrapolation, or an argument from authority. Hell, if you involved the concept of non sequitur, it would be better.<p>It’s like you’re cobbling together words related to scientific rigor without understanding the concepts. A hypothesis is, by definition, based on incomplete data. If it wasn’t, it would just be called an observation. So you make a hypothesis, see how it fits the data, and maybe even see how well it predicts the future.</p>
]]></description><pubDate>Mon, 16 Feb 2026 23:01:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=47041548</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47041548</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47041548</guid></item><item><title><![CDATA[New comment by jtrn in "The three year myth"]]></title><description><![CDATA[
<p>Tell me what I’m wrong about?<p>I have absolutely no frustration with my clients. Be it psychopaths, social anxiety, pedophilia, or schizophrenia. I think I currently actually like all of my clients. And I think all of them I appreciate my approach. Because with them, I don’t care about labels. I only care about figuring out together what the real problem is. Can I accept who they are no matter what their problem is, or who they are. The only thing I “fight”, metaphorically, against self deception.<p>That doesn’t mean that diagnosis is are handy quick references for the topic at hand.<p>Obviously, I don’t talk so directly confrontation with my clients as I do on a forum, but I follow the same principle. If I disagree on their own self assessment, I talk with them about it until we both agree on what the real problem is. Sometimes I’m wrong. Sometimes the diagnosis label people give themselves is a defense mechanism.</p>
]]></description><pubDate>Mon, 16 Feb 2026 22:52:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=47041449</link><dc:creator>jtrn</dc:creator><comments>https://news.ycombinator.com/item?id=47041449</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47041449</guid></item></channel></rss>