Live data from Hacker News

Viewing profile — jamieweb

jamieweb

HN member
Joined
Sat, Mar 03, 2018, 12:44 PM UTC
HN karma
689
Public activity
252 items

About jamieweb

Security Engineer

Email me: blog [at] (my HN username) [dot] net

Read my stuff: https://jamieweb.net/blog

My projects: https://jamieweb.net/projects

[ my public key: https://keybase.io/jamieweb; my proof: https://keybase.io/jamieweb/sigs/3Z1Yj4UoT3Wh1aHF-usg2CGzRzZriqrT-vGRsS5A5FM ]

Recent public activity

  1. comment
    Comment #24746386

    I looked into this a few years ago[1]. The solution I came to involves putting the hash of the most recent Bitcoin block in your document, and then signing the hash of your documen…

  2. comment
    Comment #24606352

    This has been absorbed into an internal repo now, but the original version that I wrote a couple of years ago is here: https://gitlab.com/jamieweb/travis-ci_csp-tester/

  3. comment
    Comment #24606338

    cURL doesn't load subresources or honour Content-Security-Policy headers as this is beyond the scope of what it's supposed to do.

  4. comment
    Comment #24572136

    I use it to test my Content-Security-Policy by crawling my whole site and capturing any violation reports that are sent.

  5. comment
    Comment #24559072

    Cloudflare Registrar - it's one of the only truly security-oriented ones out there, and they offer wholesale rates, which is a nice bonus.

  6. comment
    Comment #24485693

    I use Cloudflare Workers for: * Serving a standard security.txt file for all websites within my account * Automatically rewriting the case of URLs for a CMS that doesn't support ca…

  7. comment
    Comment #24173786

    Feedly lets you 'subscribe' to YT channels, so you can see all of the uploads in your Feedly feed. Just search for a channel when adding a source. If it doesn't come up, paste in a…

  8. comment
    Comment #24161640

    For those who've ended up here, my solution for now is to use Feedly.

  9. story
    Tell HN: YouTube have discontinued email notifications

    I just logged on to my email to find no YouTube notifications for the past 12 hours, which is very rare/unusual. It turns out that they have discontinued the feature, with little t…

  10. comment
    Comment #24147023

    My main reason for disliking Snap is the fact that it allows anybody in the world to publish a package with minimal moderation. This completely undermines the inherent trust that s…

  11. story
  12. story
  13. comment
  14. comment
    Comment #23849224

    Just to confirm, this only seems to relate to popcon/popularity-contest, and not the other data collection features. The other two main ones are Apport for crash reporting, and ubu…

  15. comment
    Comment #23751247

    Allow developers/engineers to use an OS and tooling that they're comfortable with. There must be choice between text editors, IDEs, browsers, shells, etc. Also don't try to control…

  16. comment
    Comment #23557710

    Yes, would love a 'pull' based system. You can usually tell just from the subject/preview whether you actually need an email.

  17. comment
    Comment #23545438

    My favourite one is a CMS, which stands for Crematorium Management System.

  18. comment
    Comment #23530468

    The tk, gq, cf, ml and ga TLDs offer free registration, so they're widely used in scams and fraud. In most cases you can safely block all traffic to/from them, as well as email add…

  19. comment
    Comment #23492099

    My recommendation is Fastmail for personal/business email/mailboxes, and Mailgun for a transactional email API.

  20. comment
  21. comment
    Comment #23435160

    Pop!_OS is what you're looking for IMO.

  22. comment
    Comment #23423211

    You can transfer a domain with no downtime. The name servers will remain during the transfer, so as long as your DNS isn't dependent on the domain registrar, you'll be fine. If you…

  23. comment
    Comment #23423151

    I love your service, I use it every day. :) I find that a lot of phishing sites these days are hosted on legitimate sites that have been backdoored, but are continuing to operate a…

  24. comment
    Comment #23369211

    https://n-o-d-e.net

  25. comment
    Comment #23366116

    As a side note, I was very impressed/delighted by the message on the site when JavaScript is disabled: > Sorry pal, but this won't work without a JavaScript. You are probably doing…