Live data from Hacker News

Viewing profile — iancarroll

iancarroll

HN member
Joined
Sat, Apr 27, 2013, 1:35 AM UTC
HN karma
3,378
Public activity
1,067 items

About iancarroll

ian[@]ian[.]sh, seats.aero

Recent public activity

  1. comment
    Comment #49130809

    I agree, I have been in a lot of buildings where the elevators have extremely poor performance due to this. It can be 4AM but they are all configured to rest on one floor or someth…

  2. comment
    Comment #49090634

    Looks great but the CLI output is not particularly interesting while the scan is running. I wish it could show token usage, some kind of progress, etc.

  3. comment
    Comment #49087434

    I've wasted so much money on vendor charging cables in the past 10 years while traveling or moving that I would probably buy this just for the USB-C port, assuming it is actually s…

  4. comment
    Comment #48994053

    We use github.com/go-webauthn/webauthn with no complaints!

  5. comment
    Comment #48799414

    In Shenzhen, they told me that I can take the full test on any visa if my permitted length of stay is 90 days or more. Supposedly the US embassies now issue 90 day visas for Americ…

  6. comment
    Comment #48798008

    Surprised to see this here but happy to answer any questions! Driving across China and getting to use the latest EVs has been quite fun and I hope to do it even more in the future.…

  7. story
  8. comment
    Comment #48633317

    Most apps (on desktop or mobile) open third party auth flows inside the user's default browser, which makes this a non-issue. For one, if you embed the Google login flow into your …

  9. comment
    Comment #48614899

    Apps installed via the MAS have sandboxing applied to them, so this isn't really true.

  10. comment
    Comment #48613744

    The latest FSD does not attempt to check if your hands are on the wheel at all.

  11. comment
    Comment #48612698

    My Cloudflare enterprise order form has costs for overages for Workers and the following language about everything else: > If Customer exceeds any of the Total Quantity for the Ser…

  12. comment
    Comment #48576291

    Your whole account is undisclosed marketing for this service. Fingerprinting in this manner is highly unlikely to be viable - there are too many middleboxes at the TCP layer to try…

  13. comment
    Comment #48423326

    0.5% is a pretty incredibly low interchange rate in any case. But if you are saying that half of it is going to scheme fees, I doubt it is funding rewards programs for consumers.

  14. comment
    Comment #48296114

    Well, OpenAI already sold it (but kept the team), so it’s in someone else’s hands now.

  15. comment
    Comment #47780988

    I know plenty of security researchers who exclusively use Claude Code and other tools for blackbox testing against sites they don’t have the source code for. It seems like shutting…

  16. comment
    Comment #47570419

    It’s pretty interesting to me that Cloudflare is collecting additional client-side data for individual customers. This is not widely done by most anti-bot solutions.

  17. comment
    Comment #47556256

    A bit skeptical of how this article is written as it seems to be mostly written by AI. Out of curiosity, I downloaded the app and it doesn't request location permissions anywhere, …

  18. comment
    Comment #47019091

    Verizon did manage to convince the FCC that this was enough a problem to change their settlement agreement[0] requiring more frequent unlocks. If you believe their numbers, they lo…

  19. comment
    Comment #46651297

    That is a very old article that seems to be outdated now.

  20. comment
    Comment #46560883

    Although I don’t like Flock, I’m a bit skeptical of the claims in the article. Most screenshots appear to be client-side JavaScript snippets, not API responses from this key. In th…

  21. comment
    Comment #46537599

    Chase issues cards on both the Visa and Mastercard network (i.e. certain cobrands and the Freedom Flex), so I doubt this was a serious consideration.

  22. comment
    Comment #46111679

    The GFW is certainly looking for traffic to block, but it is not really going to invade much privacy, as it cannot decrypt anything using HTTPS/TLS.

  23. comment
    Comment #46111488

    I don't think there is any reason to assume they would allow forced code execution just because they allow data residency for mainland accounts. And unfortunately, China is likely …

  24. comment
    Comment #46111206

    Even in mainland China, where iOS does have a large amount of changes to comply with local regulations, Apple does not pre-install any apps from anyone.

  25. comment
    Comment #46017388

    It’s great that you have coverage across multiple countries. I’ve noticed most budget apps cannot handle multiple currencies at all, much less automated sync across multiple countr…