<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: sakisv</title><link>https://news.ycombinator.com/user?id=sakisv</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Sat, 12 Sep 2026 07:11:28 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=sakisv" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by sakisv in "GrapheneOS' rewritten Messages app is released"]]></title><description><![CDATA[
<p>That's true as well, especially if you're still developing and changing things - because you tend to realise problems only after you've pushed the new screenshot :P</p>
]]></description><pubDate>Fri, 11 Sep 2026 22:03:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=49666022</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49666022</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49666022</guid></item><item><title><![CDATA[New comment by sakisv in "GrapheneOS' rewritten Messages app is released"]]></title><description><![CDATA[
<p>I think the reason is that you can get quite much of a tunnel vision while developing. Everyone involved already knows what they're building and how it looks, so it's very easy to overlook it.<p>Case in point, I recently wrote a CLI to show which of your AWS infra is not captured in terraform, and you can either print the result as a json to consume by a machine or generate a dashboard with some charts. It took me an embarrassing while to realise that I should have included a damned screenshot in the README, in fact I think I only realised when I wanted to show it to my brother.</p>
]]></description><pubDate>Fri, 11 Sep 2026 21:03:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=49665356</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49665356</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49665356</guid></item><item><title><![CDATA[New comment by sakisv in "Instagram's head says engagement falls by half without the algorithm"]]></title><description><![CDATA[
<p><i>cue the smallest sad violin</i><p>Snarky reaction aside, and actually reading the article, it says that the problem is something along the lines of "we incentivized and rewarded business accounts to post large volumes, so now if you switch to chronological order you will see <i>more</i> of these posts which reduces user satisfaction".<p>Well, that just means that the company will have to adapt before their users start unfollowing spammy accounts and the whole "influencer" business takes a hit. Though tbh, not sure how much of a hit it could take but hey, when instagram says engagement falls, I allow myself to feel optimistic for a brief moment.</p>
]]></description><pubDate>Fri, 11 Sep 2026 12:10:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=49657080</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49657080</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49657080</guid></item><item><title><![CDATA[New comment by sakisv in "Brits would quite like their private messages to stay private"]]></title><description><![CDATA[
<p>While this may be a bit of a tongue-in-cheek comment, I've started to think that this is exactly how it should be:<p>People that are elected by the public and hold the power to define every aspect of our lives, should be held to the absolute highest level of scrutiny possible. Every aspect and every single moment of their lives should be transparent and recorded while they hold office, no exceptions whatsoever.<p>I will concede that having it broadcasted may be a tad hard to do, but there should be a record of what happened during their time - in fact there should be a way to answer the question "what was minister X doing at 2026-08-29 20:13:14 UTC?"<p>And for the argument that says "oh then nobody would want to do it", I think that's in favour of this approach. Look around at what we're dealing with, and which people want to win elections and the fervour with which they go about it.<p>We should be trying to make this kind of "job" as unappealing as possible. It should be a chore, not something to go after.</p>
]]></description><pubDate>Sun, 30 Aug 2026 17:27:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=49500764</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49500764</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49500764</guid></item><item><title><![CDATA[New comment by sakisv in "CosmosEscape: Taking over Every Database in Azure Cosmos DB"]]></title><description><![CDATA[
<p>oh ffs, I forgot about this. I was thinking of the other one though from 2021 mentioned in a sibling comment, and it was indeed, again, with cosmos</p>
]]></description><pubDate>Thu, 30 Jul 2026 20:50:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=49115588</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49115588</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49115588</guid></item><item><title><![CDATA[New comment by sakisv in "CosmosEscape: Taking over Every Database in Azure Cosmos DB"]]></title><description><![CDATA[
<p>Is it me or was there a similar vulnerability reported a few years ago? Something about the attacker getting access to all platform's users' databases, though not sure if it was cosmos or something similar.</p>
]]></description><pubDate>Thu, 30 Jul 2026 14:22:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=49110444</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=49110444</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49110444</guid></item><item><title><![CDATA[New comment by sakisv in "Claude Code is steganographically marking requests"]]></title><description><![CDATA[
<p>Depends on the software.<p>In this case, the companies that make and provide AI models that are increasingly used to interact with me on critical things (banks, public sector services) then yes.<p>Abso-fucking-lutely they should be regulated like crazy.<p>In fact I'm really surprised by the amount of people that are not worried by how many parts of their lives are being handed over to be managed by a probabilistic system that is controlled by a private company with next to zero oversight.<p>There must be a greater liability than "oops, you're right to push back"</p>
]]></description><pubDate>Wed, 01 Jul 2026 07:17:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=48743300</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=48743300</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48743300</guid></item><item><title><![CDATA[New comment by sakisv in "Chrome is looking to permanently drop MV2 extension"]]></title><description><![CDATA[
<p>Mac</p>
]]></description><pubDate>Wed, 10 Jun 2026 23:22:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=48484150</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=48484150</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48484150</guid></item><item><title><![CDATA[New comment by sakisv in "Chrome is looking to permanently drop MV2 extension"]]></title><description><![CDATA[
<p>This is not true. I'm a Firefox user and it works perfectly fine in Firefox.</p>
]]></description><pubDate>Wed, 10 Jun 2026 09:00:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=48473500</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=48473500</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48473500</guid></item><item><title><![CDATA[New comment by sakisv in "The operating cost of adult and gambling startups"]]></title><description><![CDATA[
<p>I wanted to draw the distinction between something that destroys lives over a longer period of time (smoking) VS something like gambling where you could lose your life's savings in seconds.<p>The alcohol mentioned in a sibling comment also ticks the box.<p>For the sugar, I'd say yes, no, no, yes and "not too much, but I'm keeping an eye out".</p>
]]></description><pubDate>Fri, 24 Apr 2026 16:02:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=47892052</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=47892052</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47892052</guid></item><item><title><![CDATA[New comment by sakisv in "The operating cost of adult and gambling startups"]]></title><description><![CDATA[
<p>Not the original person you replied to, but as far as I'm concerned there are a few questions that could very easily indicate which side of the line is something.<p>E.g.<p>- Is it addictive?<p>- Does it have the potential to destroy lives?<p>- Does it have the potential to destroy lives in seconds?<p>- Does it have a strong lobbying mechanism behind it? (n.b. things that are good and nice rarely need someone to bribe people to accept them)<p>or simply:<p>- Would you be worried if your child did it?<p>I think the number of "yes" that you get draws a very clear line.</p>
]]></description><pubDate>Fri, 24 Apr 2026 13:31:02 +0000</pubDate><link>https://news.ycombinator.com/item?id=47890016</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=47890016</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47890016</guid></item><item><title><![CDATA[New comment by sakisv in "Some secret management belongs in your HTTP proxy"]]></title><description><![CDATA[
<p>This feels like a good idea in principle, but I can't shake the feeling that it just moves the goalposts one step away:<p>Now your app doesn't have direct access to your stripe/github/aws/whatever keys (which is good!) but you still need to have _some_ authentication against your proxy.<p>If you have a per-app authentication, then if your app's key leaks, then whoever uses it will be able to reach all the external services your app can, i.e. with one key you lose everything. On the other hand, if you have per-endpoint authentication, then you didn't really solve anything, you still have to manage X secrets.<p>Even worse, from the perspective of the team who owns and runs the proxy, chances are you are going to use per-app AND per-endpoint authentication, because this will allow you to revoke bad keys without breaking everyone else, etc.<p>What this really solves is subscription management for (big?) organisations. Now that you have a proxy, you only need a single key to talk to <external-service>, no need to have to manage subscriptions, user onboarding and offboarding, etc. You just need to negotiate ratelimits.</p>
]]></description><pubDate>Wed, 22 Apr 2026 10:34:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=47861556</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=47861556</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47861556</guid></item><item><title><![CDATA[New comment by sakisv in "Migrating to the EU"]]></title><description><![CDATA[
<p>While I agree in principle, I have to remind you (and to myself) that Australia is part of the Five Eyes: <a href="https://en.wikipedia.org/wiki/Five_Eyes" rel="nofollow">https://en.wikipedia.org/wiki/Five_Eyes</a></p>
]]></description><pubDate>Mon, 23 Mar 2026 12:01:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=47488275</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=47488275</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47488275</guid></item><item><title><![CDATA[New comment by sakisv in "Can you slim macOS down?"]]></title><description><![CDATA[
<p>For me it's quite simple: It works and it stays out of my way.<p>I've owned a macbook since 2010, with a short break during the touchbar era when I got myself an XPS with windows which I dual-booted with ubuntu and later a system76 that comes with their own flavour of Ubuntu, called Pop! Os.<p>The situation in windows (windows 10 at the time) was abysmal. Completely incoherent UI, settings spread across different menus, ads in start menu, slow and broken search, constant nagging to update windows, to update the drivers, to tell me that the drivers have been updated, to install or update my antivirus, etc. These were not things that I installed myself, these were included with Dell's setup of the machine.<p>On the system76 laptop things were different. Things were calm, I could configure everything as I wanted and things worked. Until at some point I installed a new version of something, which had nothing to do with sound, but it broke sound, just as I was preparing to join a meeting, and just as we were going into the second phase of lockdowns in late 2020 so online meetings were here to stay.<p>My macbooks are reliable. I've got the M1 as soon as it came out and I never got a single issue with it. I've upgraded twice (I think) across major versions and everything worked. I don't have to worry about it leaving me hanging when I need it.<p>(And that's not taking into account things like build quality, touchpad quality, battery life, silence, etc)<p>In the end of the day, I do a lot of debugging as part of my work. When I don't work, I want to <i>choose</i> what I will be debugging, not have it forced on me.<p>And don't get me wrong: I see where Apple is going, I know that they're a greedy company that want to maintain their iron grip and have the final say on what we can and cannot do on <i>our</i> machines.<p>However, for me for the time being it's the least bad option.</p>
]]></description><pubDate>Wed, 21 Jan 2026 10:27:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=46703604</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=46703604</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46703604</guid></item><item><title><![CDATA[New comment by sakisv in "Rust--: Rust without the borrow checker"]]></title><description><![CDATA[
<p>Ah, that's a fair point. In that case then yes, I have been bothered by the borrow checker very much indeed lol.</p>
]]></description><pubDate>Sat, 03 Jan 2026 00:54:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=46471532</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=46471532</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46471532</guid></item><item><title><![CDATA[New comment by sakisv in "Rust--: Rust without the borrow checker"]]></title><description><![CDATA[
<p>As someone who's only did a couple of small toy-projects in rust I was never annoyed by the borrow checker. I find it nothing but a small mental shift and I kinda like it.<p>What I _do_ find annoying though and I cannot wrap my head around are lifetimes. Every time I think I understand it, I end up getting it wrong.</p>
]]></description><pubDate>Thu, 01 Jan 2026 20:00:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=46457478</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=46457478</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46457478</guid></item><item><title><![CDATA[New comment by sakisv in "Pricing Changes for GitHub Actions"]]></title><description><![CDATA[
<p>Given that a lot of places that deal with money use them, I find your comment quite interesting and would like to learn more :)</p>
]]></description><pubDate>Tue, 16 Dec 2025 21:52:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=46295076</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=46295076</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46295076</guid></item><item><title><![CDATA[New comment by sakisv in "GitLab discovers widespread NPM supply chain attack"]]></title><description><![CDATA[
<p>The way I solve the plain text problem is through a combination of direnv[1] and pass[2].<p>For a given project, I have a `./creds` directory which is managed with pass and it contains all the access tokens and api keys that are relevant for that project, one per file, for example, `./creds/cloudflare/api_token`. Pass encrypts all these files via gpg, for which I use a key stored on a Yubikey.<p>Next to the `./creds` directory, I have an `.envrc` which includes some lines that read the encrypted files and store their values in environment variables, like so: `export CLOUDFLARE_API_TOKEN=$(pass creds/cloudflare/api_token)`.<p>Every time that I `cd` into that project's directory, direnv reads and executes that file (just once) and all these are stored as environment variables, but only for that terminal/session.<p>This solves the problem of plain-text files, but of course the values remain in ENV and something malicious could look for some well known variable names to extract from there. Personally I try to install things in a new termux tab every time which is less than ideal.<p>I'd like to see if and how other people solve this problem<p>[1]: <a href="https://direnv.net/" rel="nofollow">https://direnv.net/</a>
[2]: <a href="https://www.passwordstore.org/" rel="nofollow">https://www.passwordstore.org/</a></p>
]]></description><pubDate>Fri, 28 Nov 2025 11:23:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=46077667</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=46077667</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46077667</guid></item><item><title><![CDATA[New comment by sakisv in "Cloudflare Global Network experiencing issues"]]></title><description><![CDATA[
<p>I would be tempted to put it on my CV :D</p>
]]></description><pubDate>Tue, 18 Nov 2025 15:10:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=45967229</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=45967229</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45967229</guid></item><item><title><![CDATA[New comment by sakisv in "Cloudflare Global Network experiencing issues"]]></title><description><![CDATA[
<p>Well, you can never be sure that he didn't:<p><a href="https://www.fastly.com/blog/summary-of-june-8-outage" rel="nofollow">https://www.fastly.com/blog/summary-of-june-8-outage</a></p>
]]></description><pubDate>Tue, 18 Nov 2025 11:59:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=45964118</link><dc:creator>sakisv</dc:creator><comments>https://news.ycombinator.com/item?id=45964118</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45964118</guid></item></channel></rss>