HN user

fps

892 karma
Posts2
Comments261
View on HN

The US's anti-surveillance laws and sentiment keep ubiquitous camera systems from existing in many places, and keep the ones that do exist, quiet. In my state, Massachusetts, traffic cameras legally cannot be used to issue citations. Automated toll collection, which uses highway mounted plate scanners, faced substantial backlash from people for privacy reasons. And Massachusetts is one of the least anti-government states in the country. If it got out that the police were monitoring which cars were on the road and how often they were driven, there would be literal riots.

fast accurate plate scanners are relatively new. At most, only on police cars for the past 10 or so years. Many police cars still don't have them, only dedicated highway patrol cars. The sticker system has been in place for over 80 years. Systems that work, that are are generally not difficult to implement stick around past when they're technologically outdated.

It's to notify police to stop the car if they see it on the road. The US has a lot of infrequently used or unused cars that gradually transition to a sedentary life in a garage or yard. It's not illegal to let your registration or inspection lapse if the car isn't being driven. If you drive a car with a lapsed registration or safety inspection sticker, police will notice, stop you, and issue a ticket.

in the very early 2000s, home routers weren't a thing. Cable modems hooked up to a single computer. If you were a business, you got a PIX, but home setups were frequently done with a computer that had 2 ethernet ports and either used Windows's "home internet sharing" or Linux's ipchains and NAT. This was typically fine, because very few houses had multiple computers. I knew many people who would get a separate cable modem for each computer in their house.

By the mid 2000s, Linksys started coming out with their little WRT routers, which were affordable by home users and mostly just plug and play.

Modern password managers run into issues regularly that still require a user to copy/paste a password out of a secure location. I don't know what the solution is for these situations with passkeys, but I know I don't trust password managers to do it right.

I've used iCloud, Google Chrome, Lastpass, and 1password, and they all break consistently in a few scenarios. Three that come to mind are:

  - SSO or other systems where multiple logins are linked to the same account on different host names. The password manager will require you to essentially create a separate entry for the new site that becomes disconnected from the original. 

  - Having multiple logins for the same site.  This breaks especially with services that use a multi-stage login, but in general it breaks frequently.  If you have kids or parents whose accounts you manage, password managers will invariably ask to update the wrong password, or attempt to auto-fill the wrong password regularly.

  - Sites that request you enter the old password at the same time as you enter your new password for verification when changing a password.  Password managers can't figure this out, and as a result whenever I have a password manager generate a new credential, I also make sure to copy it to a temporary location until I've verified that it was saved. Typically, because you entered the old password on the password change page, that save doesn't go through.

In the end, all these security features just boil down to how secure your password reset/customer support function is. If you're going to require people to reset their passkey every time they log into your site, why not just use a "magic link" email session initiator and be done with it?

Then the child should stay with the parent most able to provide for them. The big issue a lot of people have with the inequity of child support is that fathers who want custody of their kids are continually denied it by the state.

Involved, stay-at-home, full time fathers are given at best 50% custody and then a hefty child support obligation and told to go out and get a job. Uninvolved mothers are given primary custody by default and then collect a massive paycheck as a result.

Common law marriages are not as easy to happen by accident as many people assume. Living together doesn't matter. Common law marriage, in every state I've checked, requires that you have a ceremony and present yourself as a "married couple" publicly. You have to go around telling people you're married for it to matter.

you can scream all you want, most people who buy new cars won't care and will just lease for 3-5 years no matter what the manufacturer puts behind a paid upgrade/software subscription. They never have to repair their cars, because nothing breaks for the first 5 years. The used market might care, but manufacturers don't care about the used market at all, since they get no money from it.

Banks don't hold substantial cash. They send whatever cash they collect to the local federal reserve to be recycled and get fresh cash to hand out to people every morning from the same federal reserve. I don't think I've gotten a "used" bill from a bank in over a decade.

You may not believe it, but the situation is very well documented and certainly a thing that is removing housing stock from cities around the world.

Housing has a value as an investment, and leaving the housing unoccupied reduces the cost to maintain the investment. Tenants have a lot of protections in many jurisdictions, and an owner is responsible for maintenance, depreciation and damages, while a tenant cannot be evicted by the landlord who wants to sell a unit without a substantial waiting period, if at all.

https://bostonagentmagazine.com/2018/09/11/study-bostons-new...

https://nypost.com/2021/08/05/nearly-half-of-luxury-units-em...

https://www.nytimes.com/2017/07/21/upshot/when-the-empty-apa...

The small wheels on the front and back are an add-on, called fangs (https://land-surf.com/products/fangs%e2%84%a2-2-1). I’ve had them on my Onewheel for years and I’m not sure they’ve ever actually saved me on a nosedive. The front of the board comes down with a lot of force very quickly and even if the little wheels do keep the board rolling, the rider has been rapidly shoved forward and will likely go over the front anyway.

Discord monitors all running processes on a user's machine so it can tag users with a "now playing ..." status text. The content of chats/private messages is also accessible to them. Their ToS allows them to sell/share this data.

The average slim carseat is 17" wide. Not just any car seat, but a slim one. It's a whole category of seats. That means 3 side-by-side car seats require 51" of rear hip and rear shoulder room, which is really very doable. In modern cars, your choices include a Subaru Impreza, a Mazda 3, Toyota Corolla, Nissan Sentra, Ford Focus, BMW 3 series, Audi a4.. I could go on, but basically every manufacturer's smallest car.

Yes, you can't fit 3 of Graco's convertable car seat/stroller/play place/activity centers into a typical sedan, but if you plan ahead you can do it easily.

We have google now, and lots and lots of parenting blogs. Googling "3 across car seats" shows that Britax, Chicco and Graco, the big 3 in car seats, all make several extra narrow car seats for packing kids in to smaller cars. Diono was the first to focus on narrow seats, but there's a whole aisle at most retailers for them.

There are plenty of narrow car seats that will fit 3 across in any car. I ran 3 Diono Radians in the back seat of a second gen Prius and there was plenty of space. Car seats and cars are the least expensive part of raising young children.

The majority of high end EVs are muscle cars. Tesla, Lucid, Rivian are all shipping 500-1000HP cars with the drag race times front and center on the marketing page.

I think most states will fail a car with the "check engine" light on. For cars in the northeast, keeping the CEL off gets more and more expensive every winter. I had a truck that was getting a new oxygen sensor (there were 6 on the car) every year from age 8 to 12. The truck drove fine with them malfunctioning, but it couldn't pass inspection. My current Jeep, I assume is going to need about $2K every year in maintenance to get it to pass inspection. And the only reason to do the maintenance is the inspection, because it also drives fine.

I think what they meant was an outage so short that it will reset the clock on the microwave/stove/bedside alarm but that you don't notice it otherwise. In the northeast, these happen frequently overnight, usually due to minor weather events or grid maintenance.

Most of my clocks are internet connected and battery backed, so the only ones left in my house that are affected are on kitchen appliances.

remote pre-heating of the oven, remote alerts when the laundry is done. Non-connected versions of these appliances just make a really loud alarm sound when they need someone to pay attention to them, but a small notification on a phone would be more effective and less annoying.

Ran into this issue way back in 2005 when I bought my first modern-ish car (Subaru Legacy.) I'd always just replaced the radio with something decent and modern every few years in previous cars, but in this one the audio system was integrated into the HVAC controls and you couldn't replace it. So, no adding aux input jacks, nothing. I sold that car after 2 years and bought a car that had a standard double din head unit.

I have a JVC head unit in my car now that does car play/android auto, exterior cameras, etc. I will never buy another car without an upgradable stereo. This usually means I'm shopping on the lower end of the market, but that's worth it to not be stuck with auto manufacturer's software.

your cards themselves can disallow contactless payment when a chip reader is present. Discover did this to me when they sent me a chip card - I had been using my discover card contactless for a while with android pay, and all of a sudden it stopped working on all new terminals and started saying "insert chip", assuming the terminal had a chip reader in it. I switched to using my visa card with google pay and it continues to work mostly everywhere, even though I have a chip in my visa card as well.

I find I only use google pay when I'm not in a hurry or when I'm very familiar with the specific reader and it has a long track record of working. If I go somewhere new, I always use my card unless I have time and the store isn't busy.

I use android pay when it's available in the US, but the first time you encounter any specific reader, there's a learning curve. By "reader", it should be obvious we mean the reader that is in the store that you tap your phone or slide your card into, not the fingerprint reader on your phone.

Most of them look like this: https://en.wikipedia.org/wiki/Payment_terminal#/media/File:P... and will occasionally have a contactless payment icon or an apple/android pay logo on the screen when you walk up to it. In the case of this card reader, the NFC point is at the bottom of the screen and you basically have to rub your phone on the screen to get it to read.

Sometimes they look like this one: https://www.flickr.com/photos/jeepersmedia/14128014654 but that big pad at the top is a lie - those have never actually worked and if there's not a sign on it, the cashier will tell you it's "broken".

The rest of them look like this: https://twitter.com/dionlisle/status/768124197549723648 and there's no clear indication or consistency where the NFC contact point is, or it is also a lie and you shouldn't even bother.

I'd say about half of my credit card transactions these days involve me handing a card to someone who swipes it directly into the register - there's no way to possibly use NFC or enter a PIN for debit/etc.

Phones? It's been 10 years since I worked at a company that gave me a desk phone, and it was archaic and useless then. Email is mostly a dumpster fire because of inflexible clients like gmail or outlook with terrible filtering and clumsy rules engines.

At my current company, the main way to reach someone is Hipchat. We have a large percentage of remote workers, so face to face works for some people, but not everyone. You have to be on chat, and you have to be checking it regularly. We still use github, JIRA and confluence for work, but almost everything passes through chat.

Google's "Beyond Corp" initiative [1] discourages trusted networks and VPNs in favor of secure services on public networks. By trusting the network to provide a level of security, you are more likely to be vulnerable to escalation attacks by bad actors that are able to access your private networks. You're also more likely to encourage legitimate users to set up workarounds that result in secure network breaches. Typically they use an Identity aware proxy in front of the service, but services can have a public view as well.

To answer your second question, I work for an open source non-profit software company, and we run some of our jenkins servers, which do continuous integration builds, publicly available so that community contributors and users can see build failures. Google has a number of open source projects that probably have similar goals.

1. https://cloud.google.com/beyondcorp/

I don't believe you. Either that or I've never in my life encountered a "neurotypical" child. Figuring out which behaviors are appropriate/inapproriate and changing accordingly, through self awareness and peer feedback, is most of what growing up is. Some people don't outwardly display as much effort, but it requires effort from everyone.

This seems like it's going in circles, but, if you selfsign modern browsers display a big scary warning. If you're making a device or software meant to live behind a firewall and to be accessed from a browser, users will either have to install your CA in their browsers, or deal with the big scary warning. Both of which are bad.