HN user

dguo

2,284 karma

https://dannyguo.com

You can reach me at danny@dannyguo.com

[ my public key: https://keybase.io/dannyguo; my proof: https://keybase.io/dannyguo/sigs/C2fFXC5Ko08xHzyJcfsCCYirEvBcPjlRkJBGlgl1ipk ]

Posts63
Comments242
View on HN
labs.amazon.science 1y ago

Amazon Nova Act

dguo
7pts0
www.dannyguo.com 1y ago

Beat the Drum

dguo
25pts4
www.dannyguo.com 1y ago

Prefer Numbered Lists to Bullets

dguo
1pts0
www.theverge.com 1y ago

How to Watch a Baby

dguo
3pts0
www.dannyguo.com 2y ago

My cat alerted me to a DDoS attack

dguo
278pts106
www.dannyguo.com 2y ago

How I Do Code Review

dguo
2pts0
www.dannyguo.com 2y ago

A Code Review of My Earliest Projects

dguo
3pts0
stevenliss.substack.com 2y ago

Reddit, AI, and Advertising – The IDK IPO

dguo
2pts0
www.dannyguo.com 2y ago

Making Make a Readme

dguo
2pts0
jamesg.blog 2y ago

Making My Bookshelves Clickable

dguo
10pts0
www.petemillspaugh.com 2y ago

Edison Bulb Night Mode

dguo
74pts32
www.dannyguo.com 2y ago

Start with a Minimum Viable System

dguo
2pts0
nathanpeck.com 3y ago

Rethinking Infrastructure as Code from Scratch

dguo
102pts120
www.dannyguo.com 3y ago

Forex Trading for Fun and Luckily Profit

dguo
2pts0
www.dannyguo.com 3y ago

Why I Blog

dguo
191pts66
www.dannyguo.com 4y ago

Updating My Favicon, Courtesy of Randall Munroe

dguo
1pts0
www.dannyguo.com 4y ago

How to use Tasker to block spam phone calls from a certain area code on Android

dguo
2pts0
arstechnica.com 4y ago

Safari has 1B users, but it still can’t touch Chrome

dguo
3pts0
www.dannyguo.com 4y ago

How to Disable 5G for a Samsung Galaxy S21 FE Phone

dguo
1pts0
www.wsj.com 4y ago

He Broke Every Record. Then He Told His Rivals How to Beat Him

dguo
4pts1
www.dannyguo.com 4y ago

My seatbelt rule for judgment

dguo
487pts193
www.theverge.com 4y ago

A lone undersea internet cable connected Tonga to the world

dguo
3pts0
azeemba.com 4y ago

Improving Git's Autocorrect Feature

dguo
2pts0
www.dannyguo.com 4y ago

Automating My Air Conditioner

dguo
38pts25
azeemba.com 5y ago

Year Review 2020

dguo
1pts0
nextjs.org 5y ago

Next.js 10.2

dguo
7pts0
www.theverge.com 5y ago

Why game developers can’t get a handle on doors

dguo
1pts0
julian.digital 5y ago

Proof of X

dguo
181pts71
arstechnica.com 5y ago

Yukon gold miner unearths a mummified Ice Age wolf pup

dguo
1pts0
stripe.com 5y ago

Stripe’s payments APIs: the first ten years

dguo
309pts71

Author here.

That's a good hypothesis! But I have a strong preference for email over SMS for communication from companies, so I receive almost no texts from credit card companies. It's pretty much limited to an occasional authentication code for logging in (since TOTP-based two-factor is so unfortunately rare).

I know it sounds bad, but in practice, it really did work fine for us for quite a while.

1. We didn't experience that many incidents that couldn't wait until working hours.

2. There was never an explicit expectation to keep an eye out. We did it anyway because we were at an early-stage startup, and we all deeply cared about making our products work for our customers.

Writing this post did make me think that if someone had a well-trained dog, they could hook up a monitoring service to something that makes a particular sound, which tells the dog to alert the person.

Her name was (I sadly lost her to cancer) Bamboo! Because one of the first things she did after I adopted her was to try to eat my bamboo plant.

Why I Blog 3 years ago

Hi! It's good to see you here! Let me know if you do start "sharing." I'd love to check it out.

And thanks for the tip. I've been using Notion, but I've kept my eye on Obsidian and Roam too.

Why I Blog 3 years ago

Author here. That's a great point, and it's true for me as well. I should have mentioned that under the "Be Able to Provide a Link" section since I reference my own posts sometimes.

Why I Blog 3 years ago

Author here. Nope! Life has just been very busy in the last year. I'm going to try to write more consistently again, starting with this post.

My rule is: if I get a single notification that I find useless, I'll immediately disable that notification channel (I'm on Android; I'm not sure if iOS has a concept of channel-specific settings) for that app. Even if the channel can include useful notifications, as the article discusses.

If the app doesn't bother to categorize its notifications into channels at all, I turn off its notifications entirely, and I won't turn it back on.

If something is important enough, I can always manually check on it. My attention is too valuable to me to waste it on useless notifications.

I do want more control over my notifications in general. I use Google Apps Script to automatically process/triage my email, and I want to do something similar with notifications. I can probably do so using Tasker, but I haven't gotten around to it.

Author here. Thanks for the heads up. From my experience, after it turns off, it tends to stay off for about 30-45 minutes. I hope that's long enough to avoid issues. The comment in the link mentioned delaying 3-5 minutes.

And yep, It was my bad to misunderstand the first knob. I should have read the manual instead of assuming. I added a note to the post.

I believe most window units instruct you to set them at a slight angle so that condensation can drain out the back without manual intervention. At least mine do.

OP here. Wow, that's a good point. I don't know why I assumed that the first knob is just a static control for cooling output. Especially considered that it's labeled "Temperature."

Looking at some customer reviews, I do see some complaints that it doesn't work very well on this model. But still, I should have read the manual. Thanks for correcting me!

I did consider this, and I would also like to believe that my first thought would be "I am being phished" rather than "I'm sure this is the right web site." I do understand that many users (including myself on a bad day) might not recognize a phishing situation. But at least there is a layer of defense that SMS doesn't have.

Maybe the Bitwarden extension should warn users when they try to copy/view a TOTP code by searching for a login rather than using a matched entry.

U2F is my preferred method of MFA, but many services don't support it, and there can be practical issues even for the ones that do. For example, some services support U2F in a browser but not in mobile apps.

This is certainly a vulnerability, but it also depends on how you get your TOTP codes. I use Bitwarden's browser extension to get mine, and if the domain is incorrect, the extension won't present me with the code. I think this is a decent level of protection from phishing.

Audio feedback doesn’t give the user the same reassuring sense of certainty as a graphical user interface. One glance will confirm that I have typed my card number correctly, but you don’t have to be unusually impatient for your heart to sink, when you hear the inhumanly calm words, “I heard 4659 1234 1234 1234. Is that correct? Say yes or press one to confirm”.

This is the main reason I rarely use voice controls. Even if voice is faster than typing for most cases, typing never fails catastrophically like voice does.

I could use voice only when I'm confident it will work, but then there's the mental load of making that prediction. It's easier to just always go with typing.

I loved this feature when I first experienced it in Google Wave. I don't think it belongs everywhere, but exactly as the article author says, it makes the conversation feel smoother and more like I am actually talking to someone in real life because I can think about what they are saying as they are typing it.

In a real life conversation, you digest in real time as you hear the other person. You don't have to wait for chunks of their thoughts.