<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: sandeepkd</title><link>https://news.ycombinator.com/user?id=sandeepkd</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Tue, 07 Apr 2026 07:52:41 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=sandeepkd" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by sandeepkd in "Delve removed from Y Combinator"]]></title><description><![CDATA[
<p>Its quite ironical and interesting at the same time, seems like there is a threshold size/impact beyond which everyone would come and save you, anything less and you will have to bear the consequences.</p>
]]></description><pubDate>Sat, 04 Apr 2026 04:10:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=47635646</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47635646</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47635646</guid></item><item><title><![CDATA[New comment by sandeepkd in "Mercor says it was hit by cyberattack tied to compromise LiteLLM"]]></title><description><![CDATA[
<p>Yes they may be a BS in certain cases, however its still better than nothing. They do allow the companies to consider the questions atleast instead of claiming unawareness and most importantly it facilitates the incremental improvement.</p>
]]></description><pubDate>Thu, 02 Apr 2026 15:40:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=47615954</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47615954</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47615954</guid></item><item><title><![CDATA[New comment by sandeepkd in "ChatGPT won't let you type until Cloudflare reads your React state"]]></title><description><![CDATA[
<p>You do not ever trust the client side. Sometimes being simple is good enough. The maximum you can do is put rate limits on the IP address and/or user account. You just do not want some one to use the product at machine speeds.</p>
]]></description><pubDate>Mon, 30 Mar 2026 16:18:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=47576240</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47576240</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47576240</guid></item><item><title><![CDATA[New comment by sandeepkd in "Copilot edited an ad into my PR"]]></title><description><![CDATA[
<p>It took me some time to understand how big the advertisement market is, things flowing in the direction seem natural when it comes to making money out of the investment.</p>
]]></description><pubDate>Mon, 30 Mar 2026 16:11:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=47576139</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47576139</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47576139</guid></item><item><title><![CDATA[New comment by sandeepkd in "ChatGPT won't let you type until Cloudflare reads your React state"]]></title><description><![CDATA[
<p>Lets not try to qualify the wrongs by picking a metric and evaluating just one side of it. A static website owner could be running with a very small budget and the scraping from bots can bring down their business too. The chances of a static website owner burning through their own life savings are probably higher.</p>
]]></description><pubDate>Mon, 30 Mar 2026 02:36:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=47569798</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47569798</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47569798</guid></item><item><title><![CDATA[New comment by sandeepkd in "Nobody gets promoted for simplicity"]]></title><description><![CDATA[
<p>There is another facet to it as well, if it really makes sense to solve it via code or could it be more effective to handle with a manual process.<p>The hard part is that its a cyclic problem, you learn the importance of simplicity only by observing how complexity may not always be adding value. As a principal or staff if you suggest the engineers to simplify things, they may even see it as a missed opportunity for promotion.</p>
]]></description><pubDate>Wed, 04 Mar 2026 06:48:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=47244017</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47244017</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47244017</guid></item><item><title><![CDATA[New comment by sandeepkd in "When does MCP make sense vs CLI?"]]></title><description><![CDATA[
<p>While I do agree that MCP was probably bit too far from whats required, there is some benefit for sure. Providing information in a consistent format across all the services makes it easier work with. It lowers the brittleness of figuring out things making the products built using LLMs more stable/predictable. Most importantly it becomes the latest version of the documentation about a service. This can go a long way in M2M communication, pretty much standardization of Application layer.<p>Oh wait, things like open-api and all already exists and pretty much built to solve the same problem.</p>
]]></description><pubDate>Mon, 02 Mar 2026 03:23:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=47213478</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47213478</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47213478</guid></item><item><title><![CDATA[New comment by sandeepkd in "Don't use passkeys for encrypting user data"]]></title><description><![CDATA[
<p>Probably everything else is debatable, I do agree with one thing though, the cat is indeed out of the bag. It would have been probably a really good use case if the scope was limited to only hardware based security keys for enterprise users only.  
Rolling it out for OS platforms, software based authenticators just muddies the water. You cannot even provide any guarantees around it being phishing resistant anymore.</p>
]]></description><pubDate>Sat, 28 Feb 2026 06:13:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=47191122</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47191122</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47191122</guid></item><item><title><![CDATA[New comment by sandeepkd in "Statement from Dario Amodei on our discussions with the Department of War"]]></title><description><![CDATA[
<p>Most experienced folks would be very careful in predicting or stating something with certainty, they would be cautious about their reputation/credibility and will always add riders on the possibilities. 
For good or bad reasons, the mass employment prediction is just marketing which can be called deceitful at the best. When you have so much money riding then you are not an individual anymore, you are just an human face/extension of the money which is working for itself</p>
]]></description><pubDate>Fri, 27 Feb 2026 06:45:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=47177344</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47177344</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47177344</guid></item><item><title><![CDATA[New comment by sandeepkd in "IT Staffing Firms (TCS, Cognizant, Infosis Underpay Developers by 80–100%"]]></title><description><![CDATA[
<p>The data is more or less correct, however the comparison's are flawed. There are tons of US based companies that pay on the similar scale to all their employees regardless of visa status. Instead of tying the visa with the employer, giving it for a certain duration can go as a long term fix to address both abuse and supply shortage. Its takes preparation, skill and the mindset to make it to companies like google and meta.</p>
]]></description><pubDate>Mon, 23 Feb 2026 04:21:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47118091</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47118091</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47118091</guid></item><item><title><![CDATA[New comment by sandeepkd in "What Is OAuth?"]]></title><description><![CDATA[
<p>I alluded to the usage of being hijacked for the same reason. From what I have seen, the nuance around oAuth1 vas auth2 vs auth2.1 vs OIDC  is just something that most people use without understanding the details just in order to achieve the end goal. On the top you can add PCKE, client credential, password credential and now we are talking about something thats  not comprehensible anymore. I am not a purist by any means but it still pains when people do thing whiteout understanding them.</p>
]]></description><pubDate>Sat, 21 Feb 2026 09:09:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=47098909</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47098909</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47098909</guid></item><item><title><![CDATA[New comment by sandeepkd in "What Is OAuth?"]]></title><description><![CDATA[
<p>Its looks simple, sounds simple, however its not. Merging(Being hijacked by) authorization into authentication is probably the slippery slope.</p>
]]></description><pubDate>Sat, 21 Feb 2026 08:14:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=47098606</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47098606</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47098606</guid></item><item><title><![CDATA[New comment by sandeepkd in "Anthropic officially bans using subscription auth for third party use"]]></title><description><![CDATA[
<p>Not really sure if its even feasible to enforce it unless the idea is to discourage the big players from doing it.</p>
]]></description><pubDate>Thu, 19 Feb 2026 04:01:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=47069766</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=47069766</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47069766</guid></item><item><title><![CDATA[New comment by sandeepkd in "Claude Code daily benchmarks for degradation tracking"]]></title><description><![CDATA[
<p>Totally tangential to article, was browsing through the website UI - <a href="https://marginlab.ai/explorers/swe-bench-pro/" rel="nofollow">https://marginlab.ai/explorers/swe-bench-pro/</a> , the page gives impression that the  language, category boxes are selectable.  However they are not a dropdown. Not sure if it was intentional design by human or some smart code generation by Claude based on the design sketches.</p>
]]></description><pubDate>Fri, 30 Jan 2026 02:20:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=46819833</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46819833</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46819833</guid></item><item><title><![CDATA[Show HN: Selling New Era Calculator]]></title><description><![CDATA[
<p>So I built this calculator which can do big number multiplications (keeping the scope/functionality small)<p>Only caveat is that there is a certain probability of it making mistakes with the calculations ( I claim the probability to be less than .0001 %,  different results for different benchmarks though)<p>- It does speeds up the calculations, saving lots of time for business<p>- You can of course verify the calculations manually if you want to check on accuracy<p>- Better yet, you buy multiple calculators and execute the same inputs to get a better confidence on the result<p>( Though in full transparency, I must warn you, since the core logic is same, its possible that for certain combination of inputs it produces the same result across all the calculators/devices which may be wrong. Buying more than 1 calculator can only help up to certain degree.<p>- Also I am emphasizing that you should not spend any more efforts to learn multiplication since calculator is there<p>As a business:<p>1. Would you want to buy this calculator<p>2. How many calculators would you want to buy, I would like to emphasize that the more you buy the better accuracy/confidence you will have with the results<p>Oh couple more things I forgot to share,<p>1. I was able to sell this calculator to some of the companies in aviation industry to calculate altitudes while flying<p>2. My business plan does depends on people loosing the skill to do multiplication, thus artificially increasing the accuracy of my calculator in the absence of manual verifications. Eventually I will raise the price 10X to make profit.<p>PS: This is one time investment opportunity to take big number calculations to next level.</p>
<hr>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46807109">https://news.ycombinator.com/item?id=46807109</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 29 Jan 2026 07:57:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=46807109</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46807109</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46807109</guid></item><item><title><![CDATA[New comment by sandeepkd in "That's not how email works"]]></title><description><![CDATA[
<p>More than likely its a third party service managing the tracking of the email. Serving content over http just requires them to ask HSBC to add a domain entry for their (cName) server. HTTPS would increase the amount of work required.</p>
]]></description><pubDate>Thu, 29 Jan 2026 00:58:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=46804213</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46804213</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46804213</guid></item><item><title><![CDATA[New comment by sandeepkd in "Software engineers can no longer neglect their soft skills"]]></title><description><![CDATA[
<p>Its never about the soft skill experts being able to convince the engineers, the challenge if any, is always about them being able to convince the "leadership"</p>
]]></description><pubDate>Sun, 18 Jan 2026 22:42:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=46672911</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46672911</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46672911</guid></item><item><title><![CDATA[New comment by sandeepkd in "PassSeeds – hijacking Passkeys to unlock new cryptographic use cases"]]></title><description><![CDATA[
<p>IMO automatic sync is a mess with the passkeys, it just muddies the whole guarantees around security based on possession, its not available unless you are signed in on the platform (eg. apple account) making the behavior inconsistent</p>
]]></description><pubDate>Wed, 07 Jan 2026 03:54:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=46522346</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46522346</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46522346</guid></item><item><title><![CDATA[New comment by sandeepkd in "PassSeeds – hijacking Passkeys to unlock new cryptographic use cases"]]></title><description><![CDATA[
<p>I think if you are doing it in the browser then you bind the flow to the request origin making it phishing resistant compared to a static, origin agnostic storage</p>
]]></description><pubDate>Wed, 07 Jan 2026 03:50:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=46522324</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46522324</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46522324</guid></item><item><title><![CDATA[New comment by sandeepkd in "Try to take my position: The best promotion advice I ever got"]]></title><description><![CDATA[
<p>On a tangential note, I have a concern with all such advices from a technology standpoint. These are all ways to understand the rules and constraints for upward mobility and make them work for you. More and more people are bubbling up in technology roles and roles impacting the long term outcome for technology by using the ~smart/outcome driven/cheat sheet. Building thoughtful systems require long term vision and commitments, not sure if any of this fits in that picture though. Lately everything is just A MVP.</p>
]]></description><pubDate>Tue, 06 Jan 2026 04:21:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=46508703</link><dc:creator>sandeepkd</dc:creator><comments>https://news.ycombinator.com/item?id=46508703</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46508703</guid></item></channel></rss>