<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: tonygiorgio</title><link>https://news.ycombinator.com/user?id=tonygiorgio</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 20 Apr 2026 06:38:10 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=tonygiorgio" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by tonygiorgio in "Privacy Pass Authentication for Kagi Search"]]></title><description><![CDATA[
<p>This is sick, fantastic work.<p>I have built blind signature authentication stuff before (similar to privacy pass) and one thing I’m curious about is how you (will) handle multi device access?<p>I understand you probably launched with only unlimited search users in order to mitigate the same user losing access to their tokens on a different device. But any ideas for long term plans here? When I built these systems in the past, I always had to couple it with E2EE sync. Not only can that be a pain for end users, but you can also start to correlate storage updates with blind search requests.<p>Either case, this is amazing and I’m gonna be even more excited to not just trust Kagi, but verify that I don’t need to trust y’all. Congrats.</p>
]]></description><pubDate>Thu, 13 Feb 2025 21:02:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=43041312</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=43041312</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43041312</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Goose: An open-source, extensible AI agent that goes beyond code suggestions"]]></title><description><![CDATA[
<p>Can’t you just run ollama and provide it a localhost endpoint? I dont think its within scope to reproduce the whole local LLM stack when anyone wanting to do this today can easily use existing better tools to solve that part of it.</p>
]]></description><pubDate>Sun, 02 Feb 2025 22:50:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=42912693</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42912693</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42912693</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Exposed DeepSeek database leaking sensitive information, including chat history"]]></title><description><![CDATA[
<p>You could also use models that run on nvidia’s trusted execution environment.</p>
]]></description><pubDate>Wed, 29 Jan 2025 23:41:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=42872856</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42872856</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42872856</guid></item><item><title><![CDATA[New comment by tonygiorgio in "YC Graveyard: 821 inactive Y Combinator startups"]]></title><description><![CDATA[
<p>Should be easy to determine when a 409a evaluation was done.</p>
]]></description><pubDate>Sun, 26 Jan 2025 23:55:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=42835623</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42835623</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42835623</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Nation-scale Matrix deployments will fail using the community version of Synapse"]]></title><description><![CDATA[
<p>I was a paying pro user for a <1000 person server years ago.<p>They forced me off of it due to offerings they were no longer servicing. Told me I had to self host and export all my data. I attempted this and it never worked. I abandoned that server and my profile I used across many matrix instances (and somehow my matrix room continued to run without me hosting it, and without an admin running it).<p>I will never use nor recommend them ever again. They clearly do not know how to operate a business nor an open source project.</p>
]]></description><pubDate>Sun, 19 Jan 2025 06:04:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=42754161</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42754161</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42754161</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Let's talk about AI and end-to-end encryption"]]></title><description><![CDATA[
<p>Yes, you're correct on both, though I think Google Cloud recently started supporting it as well. AWS will likely have GPU enclave support with Trainium 2 soon (AFAIK, that feature is not publicly offered yet but could be wrong).<p>We work with Edgeless Systems who manages the GPU enclave on Azure that we speak to from our AWS Nitro instance. While not ideal, the power of enclaves and the attestation verification process, we at least know that we're not leaking privacy by going with a third party GPU enclave provider.</p>
]]></description><pubDate>Fri, 17 Jan 2025 19:57:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=42742584</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42742584</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42742584</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Let's talk about AI and end-to-end encryption"]]></title><description><![CDATA[
<p>> Although PCC is currently unique to Apple, we can hope that other privacy-focused services will soon crib the idea.<p>IMHO, Apple's PCC is a step in the right direction in terms of general AI privacy nightmares where they are at today. It's not a perfect system, since it's not fully transparent and auditable, and I do not like their new opt-out photo scanning feature running on PCC, but there really is a lot to be inspired by it.<p>My startup is going down this path ourselves, building on top of AWS Nitro and Nvidia Confidential Compute to provide end to end encryption from the AI user to the model running on the enclave side of an H100. It's not very widely known that you can do this with H100s but I really want to see this more in the next few years.</p>
]]></description><pubDate>Fri, 17 Jan 2025 17:46:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=42741055</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42741055</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42741055</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Yemeni Coffee Shops in Texas"]]></title><description><![CDATA[
<p>TIL, one near me too. Are they pretty open to late night working/studying or more of a social hangout at nights?</p>
]]></description><pubDate>Sat, 04 Jan 2025 19:47:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=42597165</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42597165</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42597165</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Is there such a thing as "private, interactive databases" for SaaS's"]]></title><description><![CDATA[
<p>Yeah exactly this. Especially if you need to programmatically process that data too. You can even let the customers provide their own managed key too (such as AWS externally managed KMS) in combination with something like AWS nitro enclaves.<p>I’ve enjoyed building on nitro myself and most things should run in it just fine, just need to build the networking vsock proxy into the nitro image for anything that needs networking (such as DB, where you store the encrypted at rest data).</p>
]]></description><pubDate>Wed, 01 Jan 2025 19:59:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=42568783</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42568783</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42568783</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Family of OpenAI whistleblower Suchir Balaji demand FBI investigate death"]]></title><description><![CDATA[
<p>The same gov that’s in bed with OpenAI???</p>
]]></description><pubDate>Sun, 29 Dec 2024 00:13:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=42536143</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42536143</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42536143</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Commercial tea bags release microplastics, entering human cells"]]></title><description><![CDATA[
<p>Agreed. While some people are nit picking the comment here as “well don’t do any of those things,” it still doesn’t quantify the danger.<p>Recently read from “Made to Stick”: “Don’t just say popcorn has 40g of trans fats. Everyone knows trans fats are bad, but how bad is bad? Say popcorn has more trans fats in one serving than a whole day of greasy junk food”</p>
]]></description><pubDate>Mon, 23 Dec 2024 16:56:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=42495792</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42495792</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42495792</guid></item><item><title><![CDATA[New comment by tonygiorgio in "NoDB: Processing Payments Without a Database"]]></title><description><![CDATA[
<p>Unfortunately not. Every single payment has to be persisted to a disk locally. Even worse, a single payment needs to be persisted like 3-4 times during the payment exchange. Otherwise there’s counterparty risk of publishing an outdated state to the blockchain.</p>
]]></description><pubDate>Sat, 21 Dec 2024 05:38:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=42477756</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42477756</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42477756</guid></item><item><title><![CDATA[New comment by tonygiorgio in "A 10-Year Battery for AirTag"]]></title><description><![CDATA[
<p>Doing a v2 isn’t the same as “killing AirTags.” V2 could even have the same exact size and it would still be useful, just swap out. Worst case, buy a v1 to v2 adapter if it’s smaller, or hell, just buy another $20 10 year battery pack. If you’re protecting $10k equipment, who cares about spending $20. Piece of mind and durability matters a lot.</p>
]]></description><pubDate>Fri, 20 Dec 2024 02:24:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=42467701</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42467701</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42467701</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Apple Watch with Android"]]></title><description><![CDATA[
<p>This is a cool exploration. The post mentioned the health aspects, yet mostly goes over basic app integrations.<p>I’m curious about how well the health features translate over to the android phone. Is it mostly just to track health metrics locally on the Apple Watch, or is there any sort of “export/sync to android phone” for health?<p>I’ve been really curious about other open source (or at least reversed engineered) devices like the Colmi, and while I’m still an Apple consumer, prefer to track and keep things locally and private to myself with my own apps and scripts.</p>
]]></description><pubDate>Wed, 18 Dec 2024 21:22:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=42455400</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42455400</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42455400</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Elon Musk wanted an OpenAI for-profit"]]></title><description><![CDATA[
<p>Just about the only open part about OpenAI is how their dirty laundry is constantly out in the open.</p>
]]></description><pubDate>Fri, 13 Dec 2024 21:54:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=42412704</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42412704</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42412704</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Clio: A system for privacy-preserving insights into real-world AI use"]]></title><description><![CDATA[
<p>There’s absolutely nothing privacy preserving about their system and adding additional ways to extract and process user data doesn’t call for any additional privacy, it weakens it further.<p>Until they start using nvidia confidential compute and doing end to end encryption from the client to the GPU like we are, it’s just a larp. Sorry, a few words in a privacy policy don’t cut it.</p>
]]></description><pubDate>Fri, 13 Dec 2024 15:29:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=42409328</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42409328</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42409328</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Itch.io Taken Down by Funko"]]></title><description><![CDATA[
<p>Unfortunately "serverHold" goes above registrars. I learned this the hard way. There's a variety of watchdogs that false flag things all the time, and a handful of tld's that will blindly obey these orders. I'm guessing io is one of these. You'll have to escalate it with them, though I was never successful. Good luck.</p>
]]></description><pubDate>Mon, 09 Dec 2024 16:21:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=42367598</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42367598</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42367598</guid></item><item><title><![CDATA[New comment by tonygiorgio in "TikTok divestment law upheld by federal appeals court"]]></title><description><![CDATA[
<p>The real problem is people scared of tHE aLGOrItHm</p>
]]></description><pubDate>Fri, 06 Dec 2024 23:54:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=42345910</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42345910</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42345910</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Hetzner cuts traffic on US VPSs, raises prices"]]></title><description><![CDATA[
<p>Always felt like they were in the business of blaming and hating their customers. Cloud providers that nitpick and judge every aspect of their customers’ business details and technicalities are a huge operational risk. This archaic practice is the reason generic cloud orchestration was a must, and it’s just not needed anymore.<p>I don’t care how cheap they are. You get what you pay for.</p>
]]></description><pubDate>Thu, 28 Nov 2024 22:38:33 +0000</pubDate><link>https://news.ycombinator.com/item?id=42269063</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42269063</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42269063</guid></item><item><title><![CDATA[New comment by tonygiorgio in "Netflix buffering issues: Boxing fans complain about Jake Paul vs. Mike Tyson"]]></title><description><![CDATA[
<p>Had issues all stream but was perfect during the final fight.</p>
]]></description><pubDate>Sat, 16 Nov 2024 07:01:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=42154950</link><dc:creator>tonygiorgio</dc:creator><comments>https://news.ycombinator.com/item?id=42154950</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42154950</guid></item></channel></rss>