HN user

brightball

16,841 karma

Brightball (personal company / blog) https://www.brightball.com/

Carolina Code Conference https://carolina.codes

Carolina Code Cast (tech podcast) https://blog.carolina.codes/podcast

Posts108
Comments5,174
View on HN
blog.carolina.codes 1mo ago

2026 Carolina Code Conference Speakers Announced

brightball
1pts1
subq.ai 2mo ago

SubQ 12M token reasoning model

brightball
5pts0
twitter.com 3mo ago

Caveman Mode Save Token?

brightball
16pts7
blog.carolina.codes 4mo ago

Call for Speakers Until March 31st – Carolina Code Conference

brightball
2pts1
news.ycombinator.com 4mo ago

Ask HN: Is there a way to tell if somebody is in the Microsoft partner network?

brightball
2pts0
twitter.com 1y ago

DHH Presents Omarchy: Arch and Hyprland Linux Build

brightball
9pts3
blog.carolina.codes 1y ago

Carolina Code Conference – Announcing Our 2025 Speakers

brightball
1pts0
digital-strategy.ec.europa.eu 1y ago

The EU Digital Services Act

brightball
4pts2
github.com 1y ago

Hurricane Helene Power Outage Visualization

brightball
3pts0
blog.carolina.codes 1y ago

Carolina Code Conference 2024 talks are live

brightball
1pts0
www.brightball.com 2y ago

Story points are pointless, measure queues

brightball
345pts288
blog.carolina.codes 2y ago

Easy come, Easy Go, Will you let me code

brightball
1pts0
graphenemg.com 2y ago

Graphene Aluminum-Ion Battery with 1000 mAH cell capacity

brightball
1pts0
news.ycombinator.com 2y ago

Ask HN: Is it possible that all of this Boeing news is sabotage?

brightball
4pts13
blog.carolina.codes 2y ago

A Polyglot Site for a Polyglot Conference

brightball
1pts0
blog.carolina.codes 2y ago

Call for Speakers for the 2024 Carolina Code Conference is now open

brightball
1pts0
twitter.com 2y ago

Grok: Die Hard is a Christmas movie

brightball
1pts1
rbates.dev 2y ago

Ryan Bates: RailsCasts Retrospective, part 2

brightball
5pts0
twitter.com 2y ago

From Carolina to Y Combinator: Lessons Learned Getting into YC for Rownd

brightball
1pts0
news.ycombinator.com 2y ago

Ask HN: Why are captive portals such a pain with Linux?

brightball
6pts9
news.ycombinator.com 3y ago

Tell HN: Stripe login appears to be down

brightball
5pts8
blog.carolina.codes 3y ago

Speakers announced for the 2023 Carolina Code Conference

brightball
1pts0
www.bleepingcomputer.com 3y ago

Chinese Hackers Breach Critical US Infrastructure

brightball
6pts0
www.brightball.com 3y ago

The time I accidentally spent a year combatting fraud

brightball
160pts75
blog.carolina.codes 3y ago

Show HN: Crowdsourcing a Conference T-Shirt

brightball
1pts0
github.com 3y ago

Show HN: Lyrical Code Challenge

brightball
4pts0
news.ycombinator.com 3y ago

Ask HN: Learning Sales and Marketing as a Developer?

brightball
1pts0
news.ycombinator.com 3y ago

Ask HN: Programmable Drones for Kids?

brightball
1pts0
www.brightball.com 3y ago

How Microsoft Became Phishing's Biggest Enabler

brightball
13pts3
www.brightball.com 3y ago

I accidentally spent a year combatting fraud

brightball
4pts0

Also, what is there to study? I am sincerely asking. The text in the book is, if I may use a tautology, the text in the book.

Quite a bit and it's much more interesting than I imagined! The amount of interconnection and reference across thousands of years of text is fascinating. The historical aspects and context alone got my interest when I first started attending again. The preacher at the church where I first started back was very good at framing lessons from the history of the time, putting the events in the context of the day. A lot of that context comes from history outside of the Bible itself, from the work of many historians at archaeologists working to piece together history.

One time, we were reviewing a lesson that talked about this bronze snake that Moses put on a pole that people could look to in order to be healed from poison. I thought that sounded like an familiar visual...a snake on a pole for healing so I went and looked it up. A later story references a King who had the bronze snake destroyed because the people had begun worshiping it as an idol. That was 800 years later. 800 years is a long time especially when you put the entirety of US history being 250 years for perspective.

Went down a huge rabbit hole. The symbol used for medicine, the Rod of Asclepius from Greek mythology is actually predated by this story by about 1,000 years but it sounded so familiar I kept researching to see if they were connected. It turns out the Jewish tribes in Israel had a tribe of traders on the Mediterranean Sea called the Tribe of Dan. They made harbor on Cyprus and traded all the way to Athens and beyond.

This made me curious about other potential influences on Greek mythology like this so I got curious and decided to look up the most obvious one: Samson and Hercules (Heracles to the Greeks, Hercules is Romanized). It turns out Samson was from...the Tribe of Dan. The Greek's called these Jewish traders, "Haroclim" the Hebrew word for merchant. What is the likelyhood that Jewish traders telling stories about a man from their tribe being granted incredible strength by God evolving to influence the story of Hercules?

So I kept investigating the origins of Hercules. It turns out, I was in good company because Aristotle also investigated his origins. Aristotle traced the origins to Argos on the island of...Cyprus.

10 years ago people found...an ancient mosaic of Hercules...on Cyprus.

https://www.abc.net.au/news/2016-07-15/rare-roman-mosaic-unc...

All that was from about 2-4 verses. I found it deeply interesting.

If you like history at all, just understanding the context of the time periods around any of the stories adds to it tremendously.

my experiences, one must dare not question it

I suppose that depends on the church and maybe the question? I don't know what was asked. The Bible is probably the most studied text in the world and if you do have questions, there are a lot of well studied answers out there. I was always very open about my own questions and found people who were genuinely interested in helping me to find answers, particularly the teachers. Those who aren't teachers probably just don't know how to answer appropriately. Churches are filled with a lot of people who have variety in their study, faith and experience. Learning not to assume everybody else had the same level of knowledge was a trap I had to get myself out of.

I asked enough questions and participated in enough lessons that I was eventually asked to teach a few. I had to teach a lesson about alcohol in an adult Sunday school class in a Baptist church! And I didn't teach what I was supposed to because the Baptist view and what the Bible actually says are two different things. I talked to other teachers about it and they were completely okay with it while also challenging me on some things, which gave me a greater understanding. The Bible itself talks about moderation. Not drinking too much. Baptists emphasize abstaining entirely. This bothered me greatly because, as far as I can tell, it's a man-made rule attempting to be stricter than the Bible itself. Jesus first miracle was turning water to wine after all.

That's where speaking to another teacher made an impact on me because he explained the reason. "Yes, you can moderate," he said "but the Paul says in Romans 14:13-23 that we should not cause another to stumble in their faith and specifically talks about food and wine. While you may be able to moderate, not everyone can. Baptists advocate for abstaining in an effort to help prevent others from stumbling."

https://www.biblegateway.com/passage/?search=Romans%2014%3A1...

That changed the way I viewed everything. I taught the lesson and highlighted the perspective.

But those people probably truly believe, unlike me. Thus, I might as well stay home at that point.

I was just trying to showcase the option to try in a low pressure situation. There will always be opportunities to talk, but for somebody curious and introverted this type of option makes it easier. It can be harder to walk into a smaller church where new people will stand out more if you're more introverted.

We must have wildly different experiences

Every church is different. Baptist churches in particular all have their own different constitutions. Methodist, Episcopal, Catholic and some others are much more standardized. There are over 1,500 different denominations and many independent churches. IMO this variety is a feature, not a bug.

However, there is absolutely a reason to fake it.

I get that. To be completely honest, I initially did the same thing. I went because it was important to my wife and having grown up around church my entire life I felt like I knew what to say to fit in. Eventually that changed as God started working on me.

God saved me at the lowest point of my life about 18 years ago when I was struggling with so much anger that I didn't even know I was capable of. It went on for 2 years. I tried to move on, to get over it. Nothing helped. Nothing would make me whole. It gave me chest pains. My wife asked me if I had asked God for help and at the time, I had not because I didn't believe it would make a difference. I bowed my head, closed my eyes and said, "God, please help me forgive." That night He took the anger and the pain away in a moment that I will never forget. He changed my life. I didn't do anything to deserve it. I have felt obligated to share my experience, and more, ever since.

I hope some of this helps you or anyone else reading it.

The more structure the better. Provides strong guardrails.

I’ve had great experience with Elixir and the new compiler combined with Ash.

Solid read.

Recommendations elaborated on in the article are a solid set. Mark Twain or Walt Whitman would probably get my vote.

You have a differing point of view. That doesn't make churches hostile to women. A lot of this seems like Reddit stuff, but I'll address anyway.

women bodily autonomy (being anti-abortion)

Pro-life has never been anti-women and this is a political hot button topic that isn't getting settled on HN. The conceived child has it's own life, it's own DNA and the goal is to protect that life. If the baby is a girl, then pro-life is the only real pro-woman stance. Churches also offer extensive support for mothers, single-mothers and their families.

want to take away the right to vote from women

I have no response to this other than...what stuff are you reading on the internet? This is nonsense.

openly attack children (yes attacking trans children is attacking children)

Nobody attacks children. This is not a church topic. Protecting children is a church topic. Children are innocent.

believing the civil rights act was a mistake

Again, I have no idea what you're reading on the internet but this is not something that comes from church. I vaguely remember some political agitator in the last couple of years going viral for saying something to this regard and then it went away.

might be extremely hostile to women or minorities

This isn't accurate at all. Christian churches welcome everyone but there are no zoning laws directing people to specific churches. Many happen to be very homogeneous as a side effect of people often being more comfortable. There are numerous "black", "hispanic", "chinese", etc churches that are out there by perception but not by requirement. None of these churches are going to turn you away if you don't look like them anymore than a predominantly white church would.

Regarding women, I'm not sure what you've been reading to make that suggestion? There's probably no institution in the world that cares for women more than the Christian church. Strong families are part of the bedrock. Visit one on Mother's Day sometime. Check out the low cost and sometimes even free child care available (Mother's morning out, VBC, etc). Jesus treatment of women was radical in the context of the time period.

That is contingent on actually believing in the religion, no?

You're there to learn. It's called Bible study for a reason.

When I came back to church after 10 years as an avowed agnostic/atheist I didn't believe. I did listen and pay attention a lot better than I did as a child. Listening with an open mind and an unhardened heart make a difference.

There are different types of churches too. In my experience most "mega churches" truly cater to this more curious audience. It's more of the movie going experience where you can walk in like anyone else, without having to know anybody, sit down and just listen to the service. Then get up and leave without talking to anybody if you don't want to. Messages tend to be tailored to the idea that any given week you're going to have people who have never set foot in a church before in life.

When I came back, I went to one of these for about 6 years (New Spring Church in South Carolina). Eventually, I wanted more and we switched to a more traditional church with Adult Sunday School and a men's (or women's) Bible study one night a week.

Churches are welcoming places but everybody there is going to be different. If you tell somebody you don't believe, some people are going to be thankful that you're there and others aren't going to have any idea what to say. That's pretty normal. Faking it is a little different though. No reason to fake it. Just be honest that you don't believe but you're here and willing to listen.

I find the more structure that the AI can be given to follow the better. I recently tried building a side project with Elixir, Phoenix & LiveView but on the recommendation of somebody I decided to have it use the Ash framework within it.

I've been very pleasantly surprised. The combination of the compiler improvements in Elixir 1.20 and the structural guardrails from Ash seems to have led to very consistent, organized and readable code.

I saw a post the other day pulling a Frank Herbert quote from Dune about men offloading their thinking to machines and being controlled by the men who controlled the machines.

Somebody asked an AI how to interpret it.

I'll try to explain.

Say I decide to open a pirate themed gym called Slimmer Ye Timbers and buy the domain slimmeryetimbers.com.

If I want to setup a website, I will go to a hosting company, set something up, go into the DNS and point a couple of records for the top level domain and the www subdomain to the hosting company.

If I want to receive email sent to argh@slimmeryetimbers.com I need to setup a mail server (Google, Outlook, web host may offer one, could setup an open source one, etc) and once it's setup I go to the DNS to point an MX record at the mail server.

So far, if people try to lookup my website or send an email TO me everything is pretty straightforward.

Now, if I want to send email that says it's FROM argh@slimmeryetimers.com is where things get weird. Because I don't have to do anything.

Any server, anywhere can just do it and every mail server that receives a message saying it's from that domain has to try to figure out if it really is or isn't. This is where antispam rules come in. Without DMARC, SPF & DKIM in place receiving mail servers will build up trust in different IP addresses, typically from vendors who go out of their way to prevent email abuse specifically to protect the reputation of those IP addresses. The receiving mail server my do a reverse DNS lookup to see if the hostname matched. They might see if the MX server used by domain is the same server sending the message along with a ton of other algorithmic hoops to make a good judgement. Even with DMARC, SPF and DKIM in place they may still use those rules.

DMARC, when strictly enforced with p=reject, let's you signal the receiving mail server that all mail claiming to be from your domain can be validated and if it can't be validated that message isn't from you and can be discarded. All that DMARC does is say that if you receive a message from this domain, it should pass either SPF OR DKIM for this domain as well.

So let's say, for example that I'm using both Google Workspace and Sendgrid for email for slimmeryetimbers.com. I'll setup Gmail for my main professional email for myself and my staff and I'll setup Sendgrid to send email from the website (responses to contact forms, etc).

For SPF it can be pretty simple, a single TXT record:

"v=spf1 include:_spf.google.com include:sendgrid.net ~all"

Both Google and Sendgrid publish DNS records with the IP address of their servers and keep them up to date, so adding that include is all that we have to do.

DKIM is more complicated. Google will provide you with a DKIM record to put under a subdomain that includes the public DKIM key. Once they have verified it's setup, they will sign every email sent from your account with the private key that only they know. When a receiving server gets the message they will see that the message has been signed by DKIM and it will point to the subdomain where the public key was stored. By following the instructions from the signature in the email and using the public key, they can verify that the message was actually signed by the private key and hasn't been tampered with.

If we then setup Sendgrid they will give you their own DNS records for DKIM that work for their own private key. In both of these situations, we never get our hands on the private key because we are using a 3rd party service that doesn't disclose it. Sendgrid issues 2 CNAME records that point to DKIM public key records on their DNS so that they can control them. They'll send out messages signed with one private key and then later switch to a different private key while the original key and it's public record is changed, transparently without you having to deal with it.

If we were to setup our own mail servers, we would have access to it though. It's also entirely possible for somebody with access at an email company to go steal the private keys of their customers and sell them, or just use them. It's possible for those services or our mail servers to be hacked/compromised and the keys be stolen. Built in rotation process helps with this. It's the same reason that Let's Encrypt issues secure certificates that expire after 90 days (sometimes less). Just key rotation.

That was long but I hope it helps?

Since multiple services can send on behalf of the domain, DKIM has to be configured for each of them. A service provider, like Google, will likely use the same private key across any of their servers that is sending your mail but Sendgrid won't have access to that private key so they have to setup their own. Same goes for any other services that send mail using your domain.

As a receiving mail server, they have no way of knowing how many different parties are legitimately sending email on behalf of your domain.

SPF is per domain. You setup a DNS record at the domain (or subdomain) level that lists all of the IPs (or a DNS reference to a list of those IPs) that are authorized to send email on your behalf...but, that breaks with mail forwarding and mailing lists.

SPF is much simpler, absolutely. DKIM requires a private key to sign outgoing messages from every mail server sending mail on your behalf.

1. There are a lot of domains out there and all of the people who own them aren't necessarily technical enough to setup DKIM on their mail server. Ideally those people are using some type of service. SPF is much simpler in this regard.

2. This is a rather famous story about it happening.

https://www.wired.com/2012/10/dkim-vulnerability-widespread/

I have no idea how widespread the issue is today but I had to do some analysis on it when I worked for dmarcian ahead of the Anti-Phishing Working Group conference and we found that a significant percentage of email from known malicious IPs associated with reported phishing was passing DKIM. Key rotation removes the problem. Many services like ProtonMail and Sendgrid will set you up with 2 CNAME's for your DKIM keys so that they can rotate them for you automatically.

3. Domains send emails from multiple servers. Sometimes dedicated email servers, Google/Outlook, Sendgrid, email marketing tools, etc. A receiving system has no way to validate whether any of the tools sending email claiming to be from your domain are actually from your domain. The first time you look at a DMARC report for a domain that's been around for a while, you will typically see that 90% or more of the messages claiming to be from your domain weren't from you at all.

There are a few gaps with DKIM.

1. You have to set it up on every sending server. It's easier today but it wasn't always

2. You have to periodically rotate each of the keys that you setup because they can be cracked/stolen. Soon as somebody steals your key, they can impersonate anyone sending email from your domain.

3. Receiving email servers have no way of knowing if a message they received without a DKIM signature is supposed to include a DKIM signature, so simply not including one creates a scenario where receiving mail servers have to guess if the message was really from you.

DMARC isn't for sending email successfully, it's for preventing other people from impersonating your domain. Without it, there's nothing stopping anybody from sending an email saying it is from you@qurren.com. SPF tried. DKIM tried. Both of them had gaps.

When you use them together and have a DMARC policy that requires one of them or the other for successful delivery, it's the best current solution.

Grok 4.5 14 days ago

For many years, I watched my apps performance on AWS suffer in December around all the holiday sales. They might not snatch it back but they probably saturated it during high demand periods.

Cloudflare Drop 14 days ago

There are numerous products like this out there. Isn’t that where Dropbox got its name in the first place?

Grok 4.5 14 days ago

My guess is that the use here is similar to the reason AWS started as Amazon selling their excess capacity.

Between Tesla, SpaceX, X, Boring Co and Neuralink they probably want the capability internally for a lot of different applications.

If the whole data centers in space thing works out AND people keep protesting/blocking data center build outs on land SpaceX will eventually dominate the entire AI industry just based on escaping scarcity.

Grok 4.5 14 days ago

In what way? I spend more of my time managing than hands on lately so I legitimately don’t know.

Read replication is easy.

Horizontal scaling for DB typically means distributing the write load across instances either via sharding or master-master. I could be wrong of course, but that’s how I read it.

MySQL is very good at master-master out of the box.