Live data from Hacker News

Viewing profile — greysteil

greysteil

HN member
Joined
Sun, Mar 25, 2012, 1:03 PM UTC
HN karma
1,399
Public activity
187 items

About greysteil

No profile information was provided.

Recent public activity

  1. comment
    Comment #45350164

    Is $2,300 the going rate for an RCE with a totally believable attack vector these days?

  2. comment
    Comment #45349627

    I dunno, I’m still pretty surprised the MCP server auth process could pop a calculator on widely adopted clients. The protocol isn’t perfect but that’s totally unnecessary unsafe. …

  3. comment
    Comment #44152221

    PM at Figma here (for dev tools, not slides). What happened to Allen here sucks. I've messaged the team so we can dig into this specific case. More generally, we know that Slides n…

  4. comment
    Comment #43546624

    I did most of this too! It was great. Do you have recommendations for folks who can only do a shorter trip (say, a long weekend, or a week)?

  5. comment
    Comment #43534186

    Thanks! I haven't used Pulsar, but the general answer is that mentions.us is focussed on sending you alerts for notifications, whereas more sophisticated social listening tools pro…

  6. comment
    Comment #43534125

    For now we use the LinkedIn voyager API's search endpoint

  7. comment
    Comment #43533854

    I put more details in a reply to another comment, but basically I think the number of people willing to pay for email alerts is small, so I’ve made the service free for them. It’s …

  8. comment
    Comment #43533818

    We’re hooking up to the APIs - the goal is to alert you of mentions as quickly as possible, so waiting for Google to index results would introduce (much) too much lag. Interesting …

  9. comment
    Comment #43533787

    Thanks for the feedback! For saved terms we show you the number of matches we’ve notified you about, which always starts at zero, whereas during creating we show you how many you w…

  10. comment
    Comment #43533768

    Hey Julien! I’ve seen you advertising KWatch in lots of places, assume you’re connected to it / know the founder? For LinkedIn monitoring we use the voyager APIs. It’s not perfect …

  11. comment
    Comment #43529860

    I think most of the people who sign up for email alerts would never pay. Lots of them are indie hackers or folks with a side project - I've been there, and know how price sensitive…

  12. comment
  13. comment
    Comment #43528321

    Through the API - in particular the info endpoint[1], combined with the fact that Reddit IDs are base36 encoded sequentially increasing integers[2]. You can get 100 objects at a ti…

  14. comment
    Comment #43527768

    I've been building mentions.us[1] - it sends you alerts when your keywords are mentioned on Hacker News, Reddit, Bluesky, LinkedIn and a few other places. For anyone who uses F5Bot…

  15. comment
    Comment #43450165

    Can we take a moment to appreciate how good the disclosure and coordination process on this were? * Reported to the maintainers privately * Patch published and CVE issued before wi…

  16. comment
    Comment #43407428

    I'm a bootstrapped solopreneur at the moment. I would maybe use this, but I generally DIY everything. For contracts, for example, I'd probably just dust off the YC template, make a…

  17. comment
    Comment #43407402

    I'm building mentions.us. It's a simple idea - alerts for keyword mentions on Hacker News, Reddit, Bluesky, etc., but has been a fun project. I wanted to build something that had b…

  18. comment
    Comment #43172710

    Yeah, it's on my list. When you're scanning sites with high volume (Reddit has ~300 posts per second, Bluesky has ~100) you have to keep things fast and cheap, so I think keywords …

  19. comment
    Comment #43172493

    I've been building https://mentions.us for the last couple of months. It's a little web app that monitors Reddit, Bluesky, Mastodon, Hacker News and a bunch of other sites for keyw…

  20. comment
    Comment #42290253

    I’ve found that everyone learns in different ways, and if having mentors / seniors to absorb knowledge from is how you learn best then I’d agree with the comments suggesting you ch…

  21. comment
    Comment #40851964

    Pincites | Software Engineers | ONSITE (NYC) | Full-time Pincites is automating contract review with AI. We integrate with Microsoft Word to help in-house legal teams review and re…

  22. comment
    Comment #35901569

    Same goal, different strengths / weaknesses. GitHub has really focussed on preventing credential leaks. It's particularly good at scanning for highly identifiable patterns and prev…

  23. comment
    Comment #35897777

    It’s a bespoke scanning setup designed to deal with GitHub’s scale, minimise false positives, and scan fast enough to be in the `git push` request/response cycle. Under the hood it…

  24. comment
    Comment #35897726

    I worked on this before leaving GitHub a couple of months ago. It’s awesome. This release is a repo-level setting, which is nice, but it will be even more useful when the team rele…

  25. comment
    Comment #35869397

    Have hope. There are structural differences between spammy accounts and real ones, because their incentives are different. That will always be the case (it’s pretty much true by de…