HNHacker News
TopNewBestAskShowJobs

Edmond

2,183 karma · joined August 1, 2008

Working on Certisfy (Certisfy.com)

To reach me use ekemokai with gmail.com

ID Proof:

https://certisfy.com/app#PNTWT1

Private Messaging:

https://certisfy.com/app#enc-b58536f1e5fd376decbfa75b6c0c817463759a56

submissionscomments
Edmond··on GameStop Opened at $300+ Today
I am not sure how guaranteed the gains are...basically there is a common enemy right now in the form of short sellers. Once they're decimated (ie forced to buy shares at higher prices than they anticipated), I suspect a good deal of novice traders are going to still be holding shares at elevated prices. At that point they're basically holding shares worth very little compared to what they likely paid for them.

The same hoard trading phenomenon seems to be happening with Blackberry. A number of insiders have already dumped shares, meaning anyone buying those shares isn't buying shares from a short seller, they're buying from people who recognize the price is outrageous compared to business fundamentals.

Bottom line, short sellers are definitely going to suffer, but so are a lot of robbinhood kiddies.

Edmond··on Evaluating JavaScript in the browser for a low code product
looks nice, similar to retool.
Edmond··on Big O Notation – Explained as easily as possible
Agreed.

The use of "Big O Notation" itself as a way of referring to algorithmic complexity seems like a misnomer, considering that the topic is about analysis rather than the notation used to express the results of such analysis.

Unfortunately academic textbooks have terrible "UX", so students end up dealing with confusing presentation of topics, hence we're stuck with labels such as "Big O Notation".

Edmond··on Have the Tables Turned on NoSQL?
If only the title was intended as a pun :)
Edmond··on Graphtoy
not quite the same but if you're into math as art, try desmos:

https://www.desmos.com/calculator/ccoiiocfbw

Edmond··on The Great Software Stagnation
I think the author has a point, perhaps poorly articulated. There is obviously a large universe of software out there so broadly speaking a lot of innovation has happened since and continues.

However, there is a general crappiness around software innovation (or the lack thereof) these days that hides behind "sexy" CLI tools with a few "sexy" options. Some of these tools are very popular and can be difficult to assail but the smell of mediocrity (or lack of ambition) around them is hard to shake off.

A comment left on the post does in fact hit on one of the reasons: the lack of interest in creating user empowerment technology. The obsession with CLI tools for instance is framed as simply facilitating better integration, while this is true, it is also a convenient excuse to avoid the difficult task of building user interfacing software.

Edmond··on Thai baby elephant hit by motorcycle survives after receiving CPR
care to elaborate on why your toddler needs so much CPR?
Edmond··on I prepared for a decade to graduate in CS in three months
The course collection required for your graduation is fairly good, assuming the student actually learned the topics covered as opposed to simply prepping for exams.

It is however not at all comparable to what's required in traditional programs. You can compare the course requirements between traditional curriculums and this one...the gap is wide.

Of course one can argue that a lot of time and money is wasted pursuing traditional Comp Sci degrees:)

Edmond··on Kazakhstan government is intercepting HTTPS traffic in its capital (again)
A "trusted MITM" is just that, a trusted MITM...You kind of accept the compromises that come with such a setup.

A CA that can issue a certificate to a third-party without the consent of the domain owner is not a trusted CA by definition.

In other words the issue in Kazakhstan should probably not be viewed as a technical issue...authoritarian governments will always get their way if the only recourse against them is a technical solution. In the case of Kazakhstan, they are forcing their citizens to accept the compromised CA, that is not a technical problem to solve.

Edmond··on FrontPage: The Good, The Bad, and The Ugly
As others have noted, the issue isn't a lack of ways to build your own website, it is the capture of the web by the likes of facebook, google, apple.

It feels like a lifetime ago but people forget that one of the things that made myspace so appealing was the ability to "pimp" one's profile page. It was an aesthetic and security disaster but it was also AMAZING.

People who wouldn't know what HTML meant if their lives depended on it were willing to learn the basics in order to personalize their profiles. Then facebook happened.

Even facebook at first was receptive to the idea of some degree of personalizing with facebook apps, but as they grew bigger and powerful it became obvious that total control was the best for their bottom line.

Now people have full blown computers in their pockets all the time and all they can think of doing with them is scrolling down and clicking "like" button. This is great for our "AI" revolution because user interaction/engagement with computers has been dumbed down to its stupidest form thus by comparison the "AI" seems very smart.

Edmond··on The dubiousness of digitized signature services
Send me an email (in my profile), I am interested in your perspective. PKI/Web of trust are just terminology around the usage of asymmetric key cryptography to solve certain problems.

The service relies on third parties to perform verification and issue certificates, just as the domain name certificate authorities do. The difference is that the information on the certificate can be anything, not just domain names.

Users use the Certisfy app to make use of those certificates, by making various claims against their certificates (think: location, age, name, even height:)..etc)

Think of the app as a kind of trust projection and information verification toolkit/client made for ordinary consumers.

Edmond··on The dubiousness of digitized signature services
The use of PKI referred to in the article isn't about domain names. PKI can be used for trust projection and verification beyond domain names, that is what the article refers to.
Edmond··on The dubiousness of digitized signature services
No banking relationships yet, we're just putting it out there for now to prove the concept.

Ultimately the goal is to create a service that can serve as a generic and scalable solution for internet information trust. Everything from dating/social-media profiles to academic credentials can be authenticated with a service like this, all while preserving user privacy.

Edmond··on The dubiousness of digitized signature services
This is mainly an app design issue...Certify makes cryptography including the question of keys completely transparent to the user.

The user just needs to learns how to perform some simple operations with the app, they never have to know about private/public keys.

Edmond··on The dubiousness of digitized signature services
Developer of the Certisfy service here.

>I find it interesting that a couple people on their partners list are Notaries Public--adding digital signature to the list of functions a Notary can perform would make the migration to digital signatures easier.

That's the main idea here, to delegate trust generation to appropriate entities...this would scale to meet the need of the internet. Today, unless you have hundreds of billions in the bank like facebook, information verification is not practical.

Edmond··on The dubiousness of digitized signature services
Developer of Certisfy here. Happy to address questions.

Also send me an email (in profile), I can issue you a short lived trustworthy certificate to try out the service :)

Edmond··on Ok Google: please publish your DKIM secret keys
I like the idea of non-repudiation, let the chips fall where they may when such authentic email is maliciously dumped.

Perhaps a simple timestamped based appendage can be added for the sake of email client authentication. In other words reject the email if the signature is older than a few hours/minutes.

Edmond··on Startups that have hit more than $1K MRR in about 12-24 months
Or it could just be that so many of them are fishing in the same pond?

A lot of them seem like run of the mill productivity software, it is a crowded market with big incumbents.

The ones with unique offerings may just be too marginal to garner a large enough customer base, business customers ultimately want full feature suite products.

Edmond··on Going from $0 to $2M ARR in 2 years
If one has to explain a joke then either they're bad at it, it's a bad joke or they have the wrong audience....I'll leave the conclusion as to which is it to the readers :)

The article is about making money (even from the title)..the commented upon line is insinuating that if you think the article isn't for you (ie you just randomly stumbled upon it), then you obviously are not interested in making money...sarcasm :)

Edmond··on Going from $0 to $2M ARR in 2 years
seems like dry humor :)
Edmond··on Privacy-preserving features in the Mobile Driving License
This reads a lot like simply another way to tie users up into a smartphone specific Eco-system, not to mention the privacy implications.

There is a much better approach that doesn't have the privacy problems that the proposed solution has: https://certisfy.com

Use good old PKI with the verification process for generating certificates delegated to suitable third-parties.

Edmond··on Why most African countries are not prospering
Painting with such a broad brush is not particularly meaningful. Africa is huge and it's challenges and triumphs equally myriad.

Patronage is hardly unique to African countries.

Edmond··on No-Code and the IKEA Effect: Software lock-in evolved to make us never churn
Agreed.

The primary reason the software development field has evolved to be preoccupied with saving/re-using/inter-op code is because of the difficulty of building even the most trivial piece of software.

Unfortunately code hoarding is simply a reflection of the age-old human flaw of wanting to recoup sunk cost, you assume if you've invested a lot of time into something, it must be worth holding on to for as long as possible :)

If software was as easy to make as a piece of office stationary is easy to write on, no one would care about code reuse/saving/interop...you don't see anyone saving post-it notes or even excel docs for indefinite reuse.

Edmond··on Low-code vs model-driven: are they the same?
They are the same, if you ignore the VC-driven buzzword use of it...there are far more products that have nothing to do with developing applications being called low-code than there are actual development platforms.

Basically any solution that gives you a decent amount of configuration options is increasing falling under the low-code banner.

Edmond··on Launch HN: Doppler (YC W19) – Easily manage your env vars and secrets
For folks looking for alternatives, there is also confighub:

https://www.confighub.com/

Edmond··on How I bypassed Cloudflare's SQL Injection filter
Obviously the correct solution for SQL injection is to use prepared statements or "proper" input validation.

I however wouldn't call WAF solutions snake oil...Web security in general follows an approach of layering Swiss cheese with holes in them, you hope that if you layer enough protection you can plug all the holes.

Leading WAF solutions have pretty decent coverage for SQLi and other payload attacks. If you're not sure of security in your code then your next best choices is a WAF.

Edmond··on Who Watches the Watchmen? Sybil-Resistance in Proof of Personhood Protocols
Keep reading, you'll see that these are not problems except for "perfect being enemy of good" rigidity.

The fact is the internet is in need of a privacy-friendly information verification solution that scales...when it comes to approaches for achieving this I think the more the merry.

Edmond··on Who Watches the Watchmen? Sybil-Resistance in Proof of Personhood Protocols
https://certisfy.com

uses plain PKI certificates to solve identity and information verification in general.

Edmond··on Show HN: Commodify Internet Information Trust with PKI Certificates
Discussions around how to build an information trust solution that can operate at internet scale and is usable appear regularly on HN.

This is an attempt at such a solution. Happy to answer questions.

Edmond··on Pulse oximeters give biased results for people with darker skin
The article notes that the devices inaccurately report higher oxygen levels for darker skin tones. Meaning if someone dark skinned reports a result that falls into the 94-100% range, they may in fact be at lower oxygen levels that put them at risk.
← PreviousPage 4 of 24Next →