Live data from Hacker News

Ask HN: What Are You Working On? (December 2025)

news.ycombinator.com

601–610 of 1001 posts

Re: Ask HN: What Are You Working On? (December 2025)

#601
I'm working on headless browser fingerprinting.

We're focusing on "anti-cloaking" for anti-phishing and other Internet security applications at the moment. Phishing sites can "cloak" themselves so that they present malicious content to ordinary users and benign content to bots, and thereby evade detection. Anti-cloaking is doing things to defeat cloaking.

The methodology is to operate a site that logs all requests, and collects information from the JavaScript environment, and looks for signals that a session is being operated by a bot instead of a human. We have 183 unique signals so far.

We've seen fake mobile phone APIs being injected into the DOM, and have been able to read out the source code implementing them. We've seen lots of people running the browser with TLS validation and same-origin policy disabled, which are both easy to probe for. And we've even seen people running services on localhost with CORS headers that allow cross-origin requests, allowing us to read out their server headers and page contents and which would allow us to send arbitrary requests to their local servers. We've seen people using proxies that don't support websockets. We've even seen surprisingly-big companies scanning us from netblocks that just straightforwardly name the company, which would be trivial to block just by IP address.

It turns out that every security vendor that scans VirusTotal submissions or domains from CT logs has major flaws in their headless browser setup which mean it's worryingly easy to cloak from them.

I don't know the best angle for monetisation. Currently we are selling "quick overviews" of what people are doing wrong, but it kind of feels like we're giving away too much value too cheaply. However it's difficult to convince people that there is value worth paying for without telling them what they're doing wrong upfront before they pay. Ideas include:

* automated quick overviews, where we give you a URL to point your bot at, find out all the signals you hit, and give you an automatically-generated report of what you are doing wrong

* or a manual "pentest" of your headless browser, where we do the same thing but spend a few days manually looking harder to see if there are new signals we're not yet spotting automatically

* or we could sell a report of the state of the industry as a whole

* or access to our tooling

* or something else

I have been told that if I say it's for anti-phishing then I have 12 customers max but if I say it's for AI browser agents then someone will give me a billion dollars. So possibly we need to explore other applications, like either telling AI scrapers why they are getting blocked, or else helping sites block AI scrapers (though I am personally opposed to building the apartheid web).

Open problems are:

* what's the best form to sell it?

* how do we satisfy people that if they pay for a test then they will get value from it?

* should we pivot away from anti-phishing?

* for bots that we notice have found us from VirusTotal or CT logs, how do we work out who is operating them so that we can sell to them? Sometimes attribution is easy but in the majority of cases it is not

Re: Ask HN: What Are You Working On? (December 2025)

#602
post #570

I'm working on https://techposts.eu - Hacker News for Europe. Focused on all the interesting and exciting happenings in tech here, from AI to defence to deeptech, and posting the most interesting job openings too. Did you know Europe had two space launch startups? I didn't until I started this project! Feedback very welcome :)

Color scheme is a bit harsh for me. I understand you're going for EU colours, but maybe a softer background like #fcfcfc and a more muted blue would be easier on the eyes?

Re: Ask HN: What Are You Working On? (December 2025)

#603
I've been working on the same business since 2021:

https://notionbackups.com

The first business I started never gained traction, so I sold it in 2021 (which was a completely different time compared to now).

Notion had announced that they'd launch a beta version of their API, so while waiting for the early access, I built a landing page, login/signup, and all other plumbing for the web app.

It was a rather underwhelming launch (both for the API and my business), but I gained my first customer within a month.

Honestly, it's been a slog running this business (Notion's API is surprisingly hard to work with, so it seemed that I was stuck for months on end), so knowing what I know now, I'd probably have started a different business. My burnout didn't help either.

Claude has been incredibly helpful these last few months in solving esoteric undocumented edge cases that were plaguing the codebase for years.

I have a healthy MRR/growth rate right now and the biggest product in the niche, so I'm grateful for that.

Re: Ask HN: What Are You Working On? (December 2025)

#605
i’m working on Canva like app for automated image/pdf/video via API, also connects with n8n, zapier, make, airtable, pipedream etc.

it’s https://orshot.com

it’s being used by agencies and teams to automate pdf invoice/reports, instagram/tiktok/pinterest posts etc.

basically design a template, autofill the layers with your data from anywhere and generate visual content for marketing at scale

Re: Ask HN: What Are You Working On? (December 2025)

#606
post #89

I'm working on "Cargo but for C". It started out as something marginally more useful than vendoring your dependencies as submodules + baking in the knowledge of how to build a bunch of common projects. I realized, though, that there was somehow a huge gap in the insane world of C build tools. There's nothing that: - Lets you pin really precisely and builds everything from source (i.e. no binary repository) - Does not…

is it already in open source? I would like to see and test it. Share it here - on HN, when you will be ready

Re: Ask HN: What Are You Working On? (December 2025)

#607
Plug-That-In [https://plugthat.in] (Mac App; Paid)

An annoying little laptop charging reminder utility that does the job.

---

There are times when I'm deeply immersed in focused work, a meeting, or engaging video content and end up missing the usual low-battery notifications on my MacBook.

When the laptop suddenly shuts down, it's followed by the familiar and frustrating walk to find a charger or power outlet. It can be annoying and occasionally embarrassing, especially when rejoining a session a few minutes later with, "Sorry, my battery died."

Over the past few weekends, I built Plug-That-In, an app that introduces "floating/moving notifications". These alerts follow the cursor, providing a stronger, harder-to-miss nudge regardless of what’s happening on screen.

The app also includes a few critical features:

- Reminder Mode: When the battery reaches critical levels, the app emits a configurable alert similar to a car's seatbelt warning, continuing until the battery is addressed.

- Do Not Disturb Settings: Customize alerts and sounds based on context, such as when system audio is playing, a video is active, or the camera is in use.

It grew out of a personal need, and I'm glad to see it used by over 50 people in the past month.

Re: Ask HN: What Are You Working On? (December 2025)

#608
Mu - a personal app platform that includes chat with AI, news, video, posts and now mail. Solving a personal problem with ads, algorithms, tracking.

Tech is too addictive now. We need to get back to utility value. I'm trying to build an alternative with myself as user 1.

https://mu.xyz https://github.com/asim/mu

Re: Ask HN: What Are You Working On? (December 2025)

#610
post #570

I'm working on https://techposts.eu - Hacker News for Europe. Focused on all the interesting and exciting happenings in tech here, from AI to defence to deeptech, and posting the most interesting job openings too. Did you know Europe had two space launch startups? I didn't until I started this project! Feedback very welcome :)

Great initiative. I was confused by the comment section design. The style of the metadata is not distinct enough from the real comment. And it tooks me too long to understand that the responses to comments were not citations.
Post reply on HN