HNHacker News
TopNewBestAskShowJobs

BoiledCabbage

6,885 karma · joined March 26, 2017

submissionscomments
BoiledCabbage··on Lenses in Julia
It's a similar idea to map() but for more complex objects than arrays. When people use "map" in Javascript (or most any other language that supports it) do they do so because "they are terrified of mutability, and are willing to abandon performance?"

Your comment reads like the response of someone who is struggling to understand a concept.

BoiledCabbage··on A century of reforestation helped keep the eastern US cool (2024)
> it is disingenuous to declare that all North American worms are nonnative.

Nobody made that claim. That's the strawman you chose to argue against instead.

BoiledCabbage··on You already have a Git server
It's not "so easy to use without understanding it", it's the opposite it has so much unnecessary complexity (on top of a brilliant simple idea btw), that once people learn how to do what they need, they stop trying to learn any more from the pile of weirdness that is git.

Decades from now, git will be looked back at in a similar but worse version of the way SQL often is -- a terrible interface over a wonderful idea.

BoiledCabbage··on Vibe Coding in the 90s
The problem is with vibe coding a beginner just gives a new prompt to edit it. In the past, the code you got was static so you had no choice but to learn it little by little if you wanted to change it.
BoiledCabbage··on Meta is axing 600 roles across its AI division
> There is plenty of evidence that the technology has plateaued.

What technology? Can you link to some evidence?

BoiledCabbage··on The security paradox of local LLMs
> All of these are incredibly obvious. If you have even the slightest idea of what you're doing and review the code before deploying it to prod, this will never succeed.

Well this is wrong. And it's exactly this type of thinking why people will get absolutely burned by this.

First off the fact they chose obvious exploits for explanatory purposes doesn't mean this attack only supports obvious exploits...

And to your second point of "review the code before you deploy to prod", the second attack did not involve deploying any code to prod. It involved an LLM reading a reddit comment or github comment and immediately executing.

People not taking security seriously and waving it off as trivial is what's gonna make this such a terrible problem.

BoiledCabbage··on BERT is just a single text diffusion step
To me part of the appeal of image diffusion models was starting with random noise to produce an image. Why do text diffudion models start with a blank slate (ie all "masked" tokens), instead of with random tokens?
BoiledCabbage··on Zoo of array languages
> In 1964, the expression READ-EVAL-PRINT cycle is used by L. Peter Deutsch and Edmund Berkeley for an implementation of Lisp on the PDP-1.

If you're arguing that "Read-Eval-Print cycle" doesn't count as REPL, then it pretty strongly undercuts your argument that "dialog approach" is.

And 1964 predates APL implementation.

BoiledCabbage··on Zoo of array languages
>on a serious note, APL (and, by proxy, its descendants) invented REPL (dubbed "dialogue approach") long before the people who coined "REPL" even came to be.

While I have enjoyed learning array languages, and think they are still underrated, Wikipedia seems to disagree with this statement above.

According to wikiepdia, REPL seems to have been coined after Iverson created his notation, but before the first APL was ever written.

https://en.wikipedia.org/wiki/Read%E2%80%93eval%E2%80%93prin...

BoiledCabbage··on What Americans die from vs. what the news reports on
> why do healthy people die

Except the majority of people in the US at least aren't healthy. So why are we elevating that question to be something that should be discussed nightly when it doesn't affect most people (as shown by death rates by cause)?

That's still a specific choice with wide ranging implications. Not saying we should or shouldn't report on it, but saying your question has pretty deeply ground assumptions on "importance". And it is not a given.

BoiledCabbage··on Flock's gunshot detection microphones will start listening for human voices
It boggles my mind how some people can seem to only think in terms of "teams". And can't think critically about their supposed team.

"I'm on their site so I'm on their team... Of course I back everything they do, I'm on their team."

Similarly (and slightly related) when a big part of your motivation is to see the "other" side upset you've lost the plot.

BoiledCabbage··on There is a huge pool of exceptional junior engineers
OP's post was "having custom themes" "bias against people using windows".

These aren't tests if a user can si their job or knows their tools. This is a cultural purity test to see if they have the same quirks as OP. And is a terrible way to judge if someone will perform.

BoiledCabbage··on How to stop functional programming (2016)
> I worked at a functional / typescript heavy shop where when I had parsed what a complicated set of steps was doing discovered multiple redundant queries and a library that was parsing strings into code. But damn some of those functional paradigms chef kiss /s

And I've worked at a place where the imperative code was crap. Should we abandon all imperative code because I had that experience?

People can write bad code in any paradigm - that's not what decides how we should code.

Nobody says we should throw away all imperative code because of one poorly implemented code base. But for some reason I see that targeted at FP all the time.

BoiledCabbage··on Disney+ cancellation page crashes as customers rush to quit
> I find it hard to take that threat seriously.

Based on everything that has gone one that seems to me at least very naive. There was practically a textbook length document outlining what the administrstion planned to do if they got in power and they are going step by step through it.

The president said there are 4 comedians (who make fun of him) that he wants to get off the air. After this event he posted something along the lines of "2 down, 2 to go." Followed by "Why don't you just force the other two out now?".

There was nothing wrong about what was said - they just already have a plan and pick any small item to claim is the cause.

For example they want to defund left leaning non profits and think tanks. They don't have a reason to. But now they are trying to claim they motivated the Kirk killing - not because they think it did, but because it's what is already their plan.

People still thinking they are being objectives or that there are "norms" left, in my opinion haven't been paying attention.

BoiledCabbage··on What's New in C# 14: Null-Conditional Assignments
Your summary is almost correct but replace where you used "get" with "set".
BoiledCabbage··on Repeat creepy meat problems at Boar's Head plants draw congressional scrutiny
> Regulatory capture at work.

Regulatory capture here on HN is turning into a meaningless phrase. Whenever a business does something wrong, rather than actually say what's wrong someone just claims it's regulatory capture. It's turned into it's own thought terminating cliche.

Say what the issue is, don't just blame an assumed regulatory capture. In this case state that it's insufficient regulation of the meat processing industry, infrequent inspections of processing plants, or understaffed agencies.

Say what the issues were, not a nebulous "regulatory capture" claim.

Businesses lobby to get FDA regulations weakened - state that's the problem, not a vague "regulatory capture" phase.

BoiledCabbage··on Strong Eventual Consistency – The Big Idea Behind CRDTs
Im guessing generating unique ids instead of incremental numbers?

Maybe not as long as uuids, but long enough to be comfortable they won't conflict withing your table/db.

Those will merge fine as two separate "rows".

BoiledCabbage··on China claims AI breakthrough '100 times faster than traditional models'
The paper appears to list the 100x speed-up as time to first token. As I understand that doesn't imply 100x in throughout. Is there more listed in the paper itself?
BoiledCabbage··on Tesla changes meaning of 'Full Self-Driving', gives up on promise of autonomy
> Well I wish this was true. But loads of DEVs on here will claim LLMs are infallible.

No the don't. You're making a straw man rather than trying to put forth an actual argument in support of your view.

If you feel can't support your point, then don't try to make it.

BoiledCabbage··on A staff engineer's journey with Claude Code
This is what's so funny about this. In some alternative universe I hope that LLMs never get any better. Because they force so much of good things.

They are the single closest thing we've ever had to objective evaluation on if an engineering practice is better or worse. Simply because just about every single engineering practice that I see that makes coding agents work well also makes humans work well.

And so many of these circular debates and other best practices (TDD, static typing, keeping todo lists, working in smaller pieces, testing independently before testing together, clearly defined codebase practices, ...) have all been settled in my mind.

The most controversial take, and the one I dislike but may reluctantly have to agree with is "Is it better for a business to use a popular language less suited for the task than a less popular language more suited for it." While obviously it's a sliding scale, coding agents clearly weight in on one side of this debate... as little as I like seeing it.

BoiledCabbage··on What Are Traces and Spans in OpenTelemetry?
Traces and spans can be extended from or added to existing logging, but they aren't the same.

Logs are point in time, spans are a duration. Logs are flat, spans have a hierarchy.

It's the difference between logging a message in a function, and logging the beginning and end of a function while noting the specific instance of the fn caller.

If you have many threads or callers to the same function that difference is critical in tracing causality of failures or any other type of action of note.

BoiledCabbage··on Enrollment at trade schools is expected to grow
> All relevant and recent evidence points to logarithmic improvement,

Any citations for this pretty strong assertion? And please don't reply with "oh you can just tell by feel".

BoiledCabbage··on Enrollment at trade schools is expected to grow
> Today I asked it for the name of a French restaurant that closed in my area a few years ago. The first answer was a Chinese fusion place… all the others were off too.

What's the point of this anecdote? That it's not omniscient? Nobody is should be thinking that it is.

I can ask it how many coins I have in my pocket and I bet you it won't know that either.

BoiledCabbage··on AI models need a virtual machine
Agreed they are thinking about it backwards.

The model is simple and LLM agent js a user. Another user on the machine. And given the context it is working it, it is given permissions. Ex. It has read/write permissions under this folder of source code, but read only permissions for this other.

Those permissions vary by context. The LLM Agent working on one coding project would be given different permissions than if it were working on a different project on the same machine.

The permissions are an intersection or subset of the user's permissions that is is running on behalf of. Permissions fall into 3 categories. Allow, Deny and Ask - where it will ask an accountable user if it is allowed to do something. (Ie ask the user on who's behalf it is running if it can perform action x).

The problem is that OSes (and apps and data) generally aren't fine grained enough in their permissions, and will need to become so. It's not that an LLM can or can't use git, it should only be allowed to use specific git commands. Git needs to be designed this way, along with many more things.

As a result we get apps trying to re-create this model in user land and using a hodge-podge of regexes and things to do so.

The workflow is: similar to sudo I launch and app as my LLM Agent user. It inherits its default permissions. I give it a context to work in, it is granted and/or denied permissions due to being in that context.

I make requests and it works on my behalf doing what I permit it to do, and it never can do more than what I'm allowed to do.

Instead now every agentic app needs to rebuild this workflow or risk rogue agents. It needs to be an OS service.

The hacky stepping stone in betwern is to create a temporary user per agent context/usage. Grant that user perms and communicate only over IPC / network to the local LLM running as this user. Though you'll be spinning up and deleting a lot of user accounts in the process.

BoiledCabbage··on SynthID – A tool to watermark and identify content generated through AI
And what happens when someone uses their digital signature to sign an essay that was generated by AI?
BoiledCabbage··on Turning Claude Code into my best design partner
Roughly how many test on average would you write before beginning implementation?
BoiledCabbage··on Colombian Black Hawk downed by drone is a glimpse of what's to come
> That's like asking if bullets made infantry obsolete

You sure it's not asking if bullets made spears obsolete"?

BoiledCabbage··on Self-driving cars begin testing on NYC streets
By driving in the rest of the country.
BoiledCabbage··on VHS-C: When a lazy idea stumbles towards perfection [video]
That's incredible - what a project!
BoiledCabbage··on "Remove mentions of XSLT from the html spec"
So if in reading the two threads correctly essentially Google asked for feedback, essentially all the feedback said "no, please don't". And they said "thanks for the feedback, we're gonna do it any way!"?

The other suggestions ignored seemed to be "if this is about security, then fund the OSS, project. Or swap to a newer safer library, or pull it into the JS sandbox and ensure support is maintained." Which were all mostly ignored.

And "if this is about adoption then listen to the constant community request to update the the newer XSLT 3.0 which has been out for years and world have much higher adoption due to tons of QoL improvements including handling JSON."

And the argument presented, which i don't know (but seems reasonable to me), is that XSLT supports the open web. Google tried to kill it a decade ago, the community pushed back and stopped it. So Google's plan was to refuse to do anything to support it, ignore community requests for simple improvements, try to make it wither then use that as justification for killing it at a later point.

Forcing this through when almost all feedback is against it seems to support that to me. Especially with XSLT suddenly/recebtly gaining a lot of popularity and it seems like they are trying to kill it before they have an open competitor in the web.

https://github.com/whatwg/html/issues/11523

← PreviousPage 5 of 34Next →