<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: vinckr</title><link>https://news.ycombinator.com/user?id=vinckr</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 22 Jun 2026 18:27:08 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=vinckr" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by vinckr in "Open Source Resistance: keep OSS alive on company time"]]></title><description><![CDATA[
<p>Has that law ever been enforced ? (e.g. taking away a FOSS or other project that someone wrote in their own time)</p>
]]></description><pubDate>Wed, 13 May 2026 18:04:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=48125317</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48125317</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48125317</guid></item><item><title><![CDATA[New comment by vinckr in "Open Source Resistance: keep OSS alive on company time"]]></title><description><![CDATA[
<p>in most cases you dont need explicit permission but you need to sign a CLA (Individual Contributor License Agreement) - which kind of includes permission</p>
]]></description><pubDate>Wed, 13 May 2026 18:02:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=48125289</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48125289</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48125289</guid></item><item><title><![CDATA[New comment by vinckr in "Riding the D in Los Angeles: city hopes new subway stations will be game changer"]]></title><description><![CDATA[
<p>Coming from Germany I found it funny how tiny the subway lines are in major cities in the US compared to medium-sized cities here.<p>I always thought Germany was a country centered a lot around cars but it was so much more extreme in the states; seemed not possible to live in a city(!) without a car.</p>
]]></description><pubDate>Tue, 12 May 2026 23:13:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=48115824</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48115824</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48115824</guid></item><item><title><![CDATA[New comment by vinckr in "From Supabase to Clerk to Better Auth"]]></title><description><![CDATA[
<p>Personally I hate magic links via email with a passion and will actively avoid products that have this as the only authentication method</p>
]]></description><pubDate>Thu, 07 May 2026 13:55:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=48049523</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48049523</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48049523</guid></item><item><title><![CDATA[New comment by vinckr in "From Supabase to Clerk to Better Auth"]]></title><description><![CDATA[
<p>I don't think we can let that one go so easily, since they might not be scanning for ad targeting (pinky promise?) - but they most certainly will slurp everything up for their AI stuff: <a href="https://blog.google/products-and-platforms/products/gmail/gmail-is-entering-the-gemini-era/" rel="nofollow">https://blog.google/products-and-platforms/products/gmail/gm...</a></p>
]]></description><pubDate>Thu, 07 May 2026 13:54:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=48049502</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48049502</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48049502</guid></item><item><title><![CDATA[New comment by vinckr in "DeepClaude – Claude Code agent loop with DeepSeek V4 Pro"]]></title><description><![CDATA[
<p>How is it obvious that this project bought starts on GitHub?</p>
]]></description><pubDate>Mon, 04 May 2026 16:05:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=48010467</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=48010467</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48010467</guid></item><item><title><![CDATA[New comment by vinckr in "Starter Template for Ory Kratos"]]></title><description><![CDATA[
<p>Very cool, thanks for sharing.
Feel free to add it to <a href="https://github.com/ory/awesome-ory" rel="nofollow">https://github.com/ory/awesome-ory</a> !</p>
]]></description><pubDate>Sat, 07 Feb 2026 13:59:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=46923943</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=46923943</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46923943</guid></item><item><title><![CDATA[The Agentic Trust Framework: Zero Trust Governance for AI Agents]]></title><description><![CDATA[
<p>Article URL: <a href="https://cloudsecurityalliance.org/blog/2026/02/02/the-agentic-trust-framework-zero-trust-governance-for-ai-agents">https://cloudsecurityalliance.org/blog/2026/02/02/the-agentic-trust-framework-zero-trust-governance-for-ai-agents</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46891425">https://news.ycombinator.com/item?id=46891425</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 04 Feb 2026 20:42:29 +0000</pubDate><link>https://cloudsecurityalliance.org/blog/2026/02/02/the-agentic-trust-framework-zero-trust-governance-for-ai-agents</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=46891425</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46891425</guid></item><item><title><![CDATA[New comment by vinckr in "Why users cannot create Issues directly"]]></title><description><![CDATA[
<p>> Tickets cannot be moved between trackers<p>You can convert an issue to a discussion and vice versa, so no duplication is needed and your notification should be preserved.<p>Or do you mean something else?</p>
]]></description><pubDate>Fri, 02 Jan 2026 17:59:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=46467468</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=46467468</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46467468</guid></item><item><title><![CDATA[New comment by vinckr in "Mistral OCR 3"]]></title><description><![CDATA[
<p>after clicking on your link I browsed twitter for a minute and damn that place has become weird (or maybe it always was?)</p>
]]></description><pubDate>Fri, 19 Dec 2025 23:26:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=46332169</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=46332169</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46332169</guid></item><item><title><![CDATA[New comment by vinckr in "Git history knows more than your standup. We built an AI to query it"]]></title><description><![CDATA[
<p>I think most commit messages use conventional commits (<a href="https://www.conventionalcommits.org/en/v1.0.0/" rel="nofollow">https://www.conventionalcommits.org/en/v1.0.0/</a>) - I found them to be quite useful for creating structures commit messages.<p>I think gitmore could be improved if it used the conventional commits specification, there is a reason almost everyone uses them.</p>
]]></description><pubDate>Sun, 14 Dec 2025 16:43:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=46264359</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=46264359</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46264359</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>These are fair concerns, and I want to clarify what's included versus what's paid.<p>The confusion here is about two different types of SSO:<p>_Admin SSO (for managing Ory itself)_ - Ory is fundamentally an API. For self-hosted deployments, you control access however you want - through your infrastructure, reverse proxy, or using Ory Polis. This is not gated.<p>_Organizations SSO (for your end users)_ - This is the paid feature. It allows your B2B customers to bring their own identity provider. If you're building a SaaS product and BigCorp wants their employees to authenticate using Okta or Azure AD, Organizations handles that federation.<p>The distinction matters because maintaining integrations with enterprise IDPs is continuous work.  
For example Google randomly changes their OIDC implementation on a Saturday evening. Someone needs to wake up and fix that. For products serving other businesses at scale, that operational burden is real.<p>Organizations is one of the few areas where we charge, specifically targeting the B2B SaaS use case. If you're self-hosting for internal use or building a consumer product, you don't need Organizations.  
If you're selling to enterprises that require SSO, you're generating revenue to support the cost.</p>
]]></description><pubDate>Sun, 16 Nov 2025 10:32:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=45944032</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45944032</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45944032</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>if you leave the admin APIs unsecured in production it is an attack vector, not sure what you would prefer being told here?<p>It says "When deploying Ory open-source Servers, protect access to their APIs using Ory Oathkeeper or a comparable API Gateway."</p>
]]></description><pubDate>Fri, 14 Nov 2025 14:44:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=45927191</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45927191</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45927191</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>sorry to hear that, hope you have a better experience going forward. 
if you feel like it send me some details on what was most painful and we'll fix it.</p>
]]></description><pubDate>Thu, 13 Nov 2025 22:04:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=45921235</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45921235</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45921235</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>Another problem is also that "standards" like OAuth2/OIDC are used for a thousand use cases that weren't intended by the authors, so people get really creative with them. 
Plus the spec itself is vague on many essential things, for example how logout should work.
Thankfully I never had to implement SAML but I would guess it's even worse there...</p>
]]></description><pubDate>Thu, 13 Nov 2025 21:23:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=45920730</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45920730</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45920730</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>if you are a masochist that is a great retirement project!</p>
]]></description><pubDate>Thu, 13 Nov 2025 18:52:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=45918915</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45918915</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45918915</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>Check out Ory Polis if you want SAML/SCIM support: <a href="https://github.com/ory/polis" rel="nofollow">https://github.com/ory/polis</a><p>CAPTCHA is not in scope for Kratos, there are already great solutions out there that you can use</p>
]]></description><pubDate>Thu, 13 Nov 2025 18:49:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=45918858</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45918858</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45918858</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>You can use other parts of the Ory ecosystem to add these features, such as Ory Polis for SAML/SCIM support: <a href="https://github.com/ory/polis" rel="nofollow">https://github.com/ory/polis</a><p>CAPTCHAs aren’t a big help anymore in my personal opinion, but you can easily integrate them on the frontend when using Kratos. The commercial offering just bundles all of this out of the box for you.<p>If Keycloak fits your needs well and you see no room for improvement, that’s perfectly fine; by all means use what works best for you.</p>
]]></description><pubDate>Thu, 13 Nov 2025 18:01:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=45918205</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45918205</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45918205</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>you should check out Ory Polis if you are looking for SAML support in the OSS version: <a href="https://github.com/ory/polis" rel="nofollow">https://github.com/ory/polis</a></p>
]]></description><pubDate>Thu, 13 Nov 2025 17:57:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=45918144</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45918144</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45918144</guid></item><item><title><![CDATA[New comment by vinckr in "Kratos - Cloud native Auth0 open-source alternative (self-hosted)"]]></title><description><![CDATA[
<p>Ory Kratos itself doesn't support SAML that is correct.<p>However the newest addition to the Ory ecosystem, called Ory Polis (formerly known as BoxyHQ) does close that gap. 
It is also Apache2 licensed, do check it out here: <a href="https://github.com/ory/polis" rel="nofollow">https://github.com/ory/polis</a></p>
]]></description><pubDate>Thu, 13 Nov 2025 17:56:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=45918131</link><dc:creator>vinckr</dc:creator><comments>https://news.ycombinator.com/item?id=45918131</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45918131</guid></item></channel></rss>