Always wondered this. Must have been tried and not worked?
HN user
peterldowns
https://peterdowns.com
https://github.com/peterldowns
https://twitter.com/peterldowns
Always happy to meet a stranger, please reach out any time: hn @ peterdowns.com
[ my public key: https://keybase.io/peterldowns; my proof: https://keybase.io/peterldowns/sigs/9N-85LOZH1eJMXHLR70WroivxJB1is_s3ye5IT5xzxs ]
Keep following this line of thought and you'll end up in the same territory as Nick Land. If you haven't read already, the xenosystems blogs would probably be quite interesting to you.
"completely" in my experience
Yes, we know. Good teams increase the likelihood of success with AI code generation the same way they increased the likelihood of success during hypergrowth: better infra, better devops, better internal abstractions/frameworks/building-blocks/golden-path-tooling that make the "easiest" way the "best" way to do antyhing. Otherwise, you get bogged down in garbage and everything breaks and catches on fire forever.
I'm a huge fan of Charity Majors and the quoted line in the next tweet in the thread is one of our team's rules, too:
Every AI output has to have a human owner. If you don't want your name on it, it's probably not good work.
What kind of cpu/memory do the vms get? Is there a way to define the template that's used, so I can say to a new team member, log in to boxes.dev and all the repos and tools are already there for you? And where do you get the machines, can we bring our own? The orchestration layer and product experience ticks all the boxes for me but where Codex, Claude, and Cursor have fallen down for me in the past is:
- slow and outdated vms
- horrible/no way to standardize environments for my team
- no way to bring our own compute to help resolve these issues ^
I've decided to no longer post here after the incredible amount of spam I started receiving, both in terms of direct email submissions as well as unqualified and outright fraudulent applications to my application tracking system.
By fraudulent I mean: fake resumes, names stolen from real developers who work at well-known companies but either don't have a linkedin/portfolio or do have a linkedin/portfolio without a profile picture. So easily impersonated by a scammer.
It is a real shame, but this thread is now being scraped by plenty of other sites and bad actors.
Inbound hiring for remote teams is basically cooked at this point, signal is completely hidden in the noise. Curious if anyone else has had this experience or if it's just me?
Judson sounds a lot like Henry, my twin brother, in terms of his abilities and profound autism. Growing up I learned to say that Henry is “autistic retarded” but I am sure that’s out of date. Anyway, God bless Judson, his family, and especially his caretakers and teachers. It is a special form of selflessness required to help the severely disabled and I am forever in awe and forever grateful to anyone who does so.
Yes. This is partially why other ecosystems don’t see as many supply chain attacks.
Neutrino research is so cool. SNO+ is entering a new phase this year, with a new scintillator fluid that might allow us to determine their Majorana status. Always cool to realize how much is still unknown, and how tenuously we “know” anything.
This is really good, particularly the async tasks part. Hadn't thought about that. We'll be thinking about these lessons for the next version of our agent CLI.
Oh sweet, thanks Mitch! I was a customer of Buildkite a few years ago, looking forward to working together again.
Founder is active on HN and the service is high quality. Support is reasonable. Machines are fast and work well. There are a bunch of alternatives, the switching cost is extremely low, pick whatever you'd like.
Yup! Still haven't switched off of Github, but considering it at this point. If you're in my shoes, here's some tools we use that help:
- https://github.com/sethvargo/ratchet for pinning external Actions/Workflows to specific commit hashes
- https://www.warpbuild.com/ for much faster runners (also: runs-on/namespace/buildjet/blacksmith/depot/... take your pick)
- soon moving to Buildkite for orchestration of our CI jobs
I still just need a reasonable alternative for the "store our git repo, allow us to make and merge prs" part of things. Hopefully someone takes all the pieces that the Pierre team is publishing and makes this available soon. The Github UI and the `gh` cli are actually really nice and the existing alternative code storage tools are not great IMO.
Agreed! Been working on infra for an early-stage company recently and it's been awesome using OIDC and IRSA (or WIF if you're on google) for as many things as possible. Basically, there are no permanent keys for anything.
Slightly annoying to have to wrap some clis in scripts that generate the short-lived token, but it feels really magical to have services securely calling each other without any explicit keys or password to even store in our vault.
Lots of cool benefits --- for instance, we ran the compromised Trivy github action a few weeks ago, but our Github Actions had 0 keys for it to leak! Also really great that I don't have to worry about rotating shared credentials on short notice if an engineer on my team decides to leave the company.
Would make way more sense to just use verification claims backed by government issued IDs, rather than relying on a third party like World(coin).
For instance, something like https://self.xyz. It's strictly better than the alternatives:
- already works with existing government-issued ids
- doesn't require submitting scans of your ID to third parties that can then be stored and leak
- allows privacy-preserving verification like "is this person older than 18" without requiring sharing of the person's exact age
I see it the same way. Interesting times…
Ah ok thanks very much!
Oh no not in the public domain, I better not build something cool!
I've been meaning to build ~exactly this experience, but for the 1952 Encyclopedia Brittanica Great Books of the World collection and its experimental index Syntopicon [0]. Would love to know more about how you OCR'd or otherwise ingested and parsed the raw material. I have a physical copy of the books, and I found some samizdat raw-image scans and started working on a custom OCR pipeline, but wondering if maybe I could learn from your approach...
Why come here to just post AI comments? I don't get the point.
This post is garbage slop. Read BLIT instead
https://www.infinityplus.co.uk/stories/blit.htm
Or my favorite of his basilisk stories, different kinds of darkness: https://www.lightspeedmagazine.com/fiction/different-kinds-o...
My very first real tech job in the bay, my new boss recommended I study up on Armin's open source code in order to get better as an engineer. It's been very interesting following his work over the years. I'm extremely curious to see how Earendil goes — no surprise if it's a success.
Congratulations Armin, and Mario, and good luck.
Dug up the email, here's what my boss said directly:
In terms of tech to keep up on, it might be worth while to play around with node.js a bit as we've been doing a few small projects using the Express MVC framework. A great reference for js, (which I remember chatting with you briefly about) is Javascript the Good Parts (Douglas Crockford). You may also consider seeking enlightenment on Armin Ronacher's github page (he's a python master, leader of flask, genshi, pocoo, long time python contributor) https://github.com/mitsuhiko. His code is pretty top notch. I follow Kenneth Reitz quite a bit too (Armin and he often work on projects together). Kenneth is know for le*git and python's request library.
are there any tricks you'd suggest, or starter prompts, for using claude to analyze my own company's services for security problems?
Thanks for sharing this, going to modify a bit and give it a try.
If you're not injured you're probably fine, most of the time there's not a big difference. The reason I recommend a local running store is that they can usually help people who are out of shape to get the right shoes, which sometimes requires gait analysis. And they're usually nice people who can connect you to local running clubs, races, etc. If you know what you're doing you absolutely don't have to go to a running store. I still go because I know the people at mine and they're nice.
That's cool. The double watch is smart. I never run longer than a half marathon in training so I don't bother with headphones but most of my serious running friends insist, makes sense when they're running 80-100mi weeks.
If you're thinking about getting into running, I'd say the first piece of gear to buy is a good pair of shoes from your local running store. Don't worry about fancy watches or gels or arm sleeves or whatever.
I did finally buy a smartwatch (coros) last year, after training my whole life with just a casio. It's made me a lot more adventurous as having the GPS tracking means I can run offroad and even off-trail without worrying about keeping accurate track of my distances and paces. This is probably the second piece of gear I'd recommend buying and I wish I had done it sooner. The numbers are useful, it makes it easier to do the hobby, and it means I can use Strava which is a fun way to stay in touch with my fitness friends.
Third piece of unsolicited advice is that you absolutely don't have to run marathons.
t. slow, but ran the fastest mile of my life last year, good friends with many semi pros.
I listened to TMBG early on in my music life and eventually came to "not particularly enjoy" them. Talking Heads, on the other hand, have only gotten better and better in my opinion.
I mean COME ON https://www.youtube.com/watch?v=xphLY5ucIpQ
llm garbage
I own a copy, never fails to weird people out when they flip through. Highly recommend.
I was just looking for a linear CLI earlier today. Awesome that the CLI converter uses that as an example. Nice!