Live data from Hacker News

Show HN: I built a website for sharing drum patterns

drumpatterns.onether.com

181–190 of 197 posts

Re: Show HN: I built a website for sharing drum patterns

#181

Earlier quoted context omitted.

Https does nothing for security. Its purpose is to authenticate financial transaction packets, not to be "secure". (Whatever that means.)

> Https does nothing for security. What sort of definition are you using for security? It's obviously not the standard one. Sending passwords in the clear vs not is covered on the first day of security 101.

Any sort of definition of "security" will need to start from the threat model.

Which you don't have, because you're not doing security. Just buzzwords.

Re: Show HN: I built a website for sharing drum patterns

#182

Earlier quoted context omitted.

No, I need exactly 0 seconds to process empty buzzwords in the vein of "add Frobnozz to your TCP/IP, Frobnozz increases security bigly!".

There are zero buzzwords. I was just being vague because again, the cost of just flipping https on is negligible, it's literally more work to have this conversation and work out all of the details of exactly what attacks you're protected against. It is never worth asking "should I even do https?" The only variation worth considering is "is https enough?" And even then, start with https and then build on top.

HTTPS does nothing for security. (Except in very rate and specific cases that aren't important here.)

> The only variation worth considering is "is https enough?"

Enough for what exactly? Since this charade clearly isn't about security, what exactly is the metric for "enough"?

Re: Show HN: I built a website for sharing drum patterns

#183

Earlier quoted context omitted.

> Https does nothing for security. What sort of definition are you using for security? It's obviously not the standard one. Sending passwords in the clear vs not is covered on the first day of security 101.

Any sort of definition of "security" will need to start from the threat model. Which you don't have, because you're not doing security. Just buzzwords.

The threat model is really simple, actually!

"I don't want other people to know my passwords".

Perhaps you don't understand what HTTPS does. Which is totally fine! Lots of people don't really get it (or even need to). But yelling "buzzwords" for the things you don't understand doesn't make the usefulness go away.

For someone so wrong about this, you're very opinionated! It's quite a dangerous mix. Thankfully, not dangerous to me, so I can just have a little chuckle and move on.

Re: Show HN: I built a website for sharing drum patterns

#184
post #150

Earlier quoted context omitted.

That ship has sailed. http has been retired.

It hasn't been retired. Using HTTPS everywhere is cargo cult nonsense. Most sites do not benefit from it, and the push to have it everywhere is obnoxious as hell.

The prevalence of good advice is obnoxious? Or is it the five minutes' labor of setting up https for your services that annoys you?

Re: Show HN: I built a website for sharing drum patterns

#185

Very cool! Reminds me a bit of this visualizer I built a few years ago. https://michaelmior.github.io/rhythm-wheel/

This is actually really cool way to show it. Love it.

Credit for the idea goes to Godfried Toussaint.

https://www.amazon.com/Geometry-Musical-Rhythm-Makes-Second/...

Re: Show HN: I built a website for sharing drum patterns

#187

Earlier quoted context omitted.

There are zero buzzwords. I was just being vague because again, the cost of just flipping https on is negligible, it's literally more work to have this conversation and work out all of the details of exactly what attacks you're protected against. It is never worth asking "should I even do https?" The only variation worth considering is "is https enough?" And even then, start with https and then build on top.

HTTPS does nothing for security. (Except in very rate and specific cases that aren't important here.) > The only variation worth considering is "is https enough?" Enough for what exactly? Since this charade clearly isn't about security, what exactly is the metric for "enough"?

Answered above. :shrug:

Re: Show HN: I built a website for sharing drum patterns

#188

Very cool! Reminds me a bit of this visualizer I built a few years ago. https://michaelmior.github.io/rhythm-wheel/

It's super fun to mess around. I think i found a bug - https://imgur.com/BRwst17 - in this setup kick triggers on red instead of green? Or am i tripping?

Re: Show HN: I built a website for sharing drum patterns

#190
post #188

Very cool! Reminds me a bit of this visualizer I built a few years ago. https://michaelmior.github.io/rhythm-wheel/

It's super fun to mess around. I think i found a bug - https://imgur.com/BRwst17 - in this setup kick triggers on red instead of green? Or am i tripping?

That doesn't seem to happen for me. If you lower the BPM (the value on the right is a non-obvious text input) does it still seem to trigger incorrectly?
Post reply on HN