HN user

BenTheElder

242 karma

https://elder.dev

Posts2
Comments92
View on HN

Unfortunately, if you've used Google Takeout or other systems that can both downsample your photos and videos, as well as actually deleting _or changing_ metadata, deduplicating becomes a big wad of heuristics.

I thought takeout exported the original files? (alongside metadata entered into the application)

FWIW: That project was started as an internal tool with a playful acronym and then went from obscure to well-known enough to making renaming a somewhat regrettable concept rather quickly just due to momentum. I think we'd have named it differently if we were aiming for widespread usage :-)

We had no reason to worry about making it popular, the effort was staffed to improve developing Kubernetes itself.

As for googling, I recommend adding keywords like "kubernetes" and for issues searching the repo itself or reaching out to the community for help https://github.com/kubernetes-sigs/kind#community

That tool is written in "Go" which also somewhat famously doesn't search well without changing your terms up a bit.

Those are interesting points / possible approaches, however is there any indication that this particular project enables any of that?

This seems focused on signing binaries / build artifacts.

IMHO it seems like if you have the threat model of "crowbared maintainer forced to insert backdoor" you probably don't trust sources let alone binaries and need to vet your dependency sources and then compile your own binaries from them.

Many open source dependencies will not have a jurisdictionally diverse review team, or any review team at all (single maintainer).

Those things don't have to be inherently slow and e.g. external IP don't need to block bring-up.

I've worked on KIND and on clusters on clouds (at Google, but on multiple clouds) and both can be very quick, if anything there's still low hanging fruit to make KIND faster that I'd expect a production service with more staffing to handle.

KIND is Kubernetes, typically on much weaker hardware :-)

Within a few minutes is a perfectly reasonable expectation even for "real"-er clusters, see e.g. under 4 minutes:

- https://kubedex.com/google-gke-vs-azure-aks-automation-and-r...

- https://stackoverflow.com/questions/53839292/is-a-3-minute-g...

Is what appears to be less than 2,000 lines including detailed comments etc. "quite a lot"?

This seems like a manageable amount to very carefully maintain and not at all like writing something entirely in C.

FWIW Google did this ("letting go" of an asset) with Kubernetes / the CNCF.

I work on this at Google, but Google no longer owns this since 2015.

Without commenting on the rest ...

Then there is the always present double standard. Why did Twitter allow “Hang Mike Pence” to trend last night? Where are the suspensions and permanent bans?

Actually, they intervened and stopped it.

https://www.newsweek.com/twitter-stops-hang-mike-pence-trend...

Also note:

Journalist Yashar Ali tweeted a screenshot of the topic trending, indicating that the phrase had been tweeted over 14,000 times. Ali noted that most people were "quot[ing] some of the insurrectionists" at the Capitol, rather than making direct threats against Pence. He wrote that the phrase "shouldn't be allowed to trend."

See also despite the URL: https://nypost.com/2021/01/09/twitter-allows-hang-mike-pence...

“We blocked the phrase and other variations of it from trending. We want trends to promote healthy discussions on Twitter,” a company spokesperson told The Post. “There are Rules for trends — if we identify accounts that violate these rules, we’ll take enforcement action.”

Do you know if any browsers are doing this?

In practice on iOS nothing seems better than safari + the content rules for adblocking, but I admittedly didn't try every app

Shipping your own content lists seems like a tricky way to differentiate since users could install similar lists without using your browser.

aside: It also appears to just inject CSS you have to inject it via javscript now which feels a bit gross but certainly doable.

In this context they're more or less the same, because the relevant networking / adblocking bits are in webkit, AIUI.

It's true that safari and webkit are not the same, this comment is imprecise. But switching browsers won't net you different adblocking capability due to the restriction to use apples webkit core.

Edit: that is "safari core" is a very lazy shorthand for the webkit framework here. The impact to the user is pretty much the same in this context.

If you read my comment again you'll note the only claim I make about adblocking is that all browsers must use the same runtime.

I don't claim that it's broken, but the ability to switch browsers (finally!) doesn't seem terribly relevant given that they're all required to essentially be safari skins.

Let's see an example of dodgy kernel drivers. How about Easy Anti-Cheat? Go to their page at https://www.easy.ac/en-us/. Guess who develops it?

Their store does not install or require this. Specific applications require it for online play (and generally only for online play...)

Microsoft does not ban this behavior on any storefront, AFAIK. Having a single storefront would not change this.

Hypothetical monopolistic practices really? Because I vividly Facebook skirting App Store security policies to make users install a privacy invading VPN app, which they also used to gather data on competitors[1].

Amusingly this occurred under the current iOS app restrictions, which clearly didn't prevent this.

An argument could be made for certain high-risk extension point access (such as VPN) could be limited independently of general apps, but the fact that there's a bad VPN app is a silly excuse for restricting the install of simple applications.

The app sandbox should provide plenty of protection, and if the user opts to give apps permissions, that's on their choice. I really don't think users are going to install an app store that requires the usage of a sketchy VPN app ...

If this were the case, surely it would exist already on android :-)

But I'm sure that's fine because people have alternatives to Facebook. Or perhaps not[2].

[2]: is exactly why we don't need to leave Apple's monopoly in place to "defeat other monopolies" ... we have other tools for that. Let users (and their representatives etc.) decide.

It's a pretty excellent example precisely because the operating system typically already has controls over this behavior (installing kernel drivers..)

However, known user hostile players trying to have a go at people's personal devices under the guise of competition is something that we as consumers should be equally wary of.

Is epic user hostile? Other than offering temporarily exclusive applications their store does not seem hostile ...

Because in the end, we won't be given much choice. Monopolies are not something exclusive to Apple, and big players will use their own monopolistic power to coerce users to install their privacy invading app store.

Defeating hypothetical monopolistic practices by denying user choice and persisting an existing monopolistic practice sure is a take.

Microsoft could block dodgy kernel drivers while still allowing game stores ... These are not inherently related.

I think OP is aware that competing music apps are allowed. They're making an analogy about banning competing app stores, just because itunes is good doesn't mean we don't want competition ... the same concept applies.