539 karma · joined August 4, 2014
--
about me & contact: https://dadario.com.br
best pic ever: https://jayub-intercomm.weebly.com/uploads/6/0/2/8/60283505/1443822731.png
--
I kinda like to code. I more or less like to do product management. But I'm always delighted to ship products that people love.
--
"If you want to set off and go develop some grand new thing, you don't need millions of dollars of capitalization. You need enough pizza and Diet Coke to stick in your refrigerator, a cheap PC to work on and the dedication to go through with it." - John Carmack (quote stolen from HN user nchelluri)
--
"when the rubber meets the road", love this quote
--
"(...) you want to do projects that are inspiring and that make people excited about the future. my life's got to be about more than just solving problems who want to get up in the morning and say yes I'm looking forward to that thing happening (...)" mr musk
-- loginwithhn
wX4oPqNdLt
1) it's a response to a user's request, i.e., not initiated by the repo author
2) it depends on consensus of the user.
3) it's not automated (most of the items from the policy are related to automation).
4) the repo author has no obligation whatsoever of maintaining the project. He is not paid or forced to do it.
5) if the user really wants to apply this change or disagrees with this practice, he/she can always fork it.
That said, I understand that it may still not feel "fair" compared to other projects that don't follow this practice. Or the feeling of "wanting to help but you're asked to do some things first".
Companies already do that to accept your pull requests though [0], which takes way longer than giving a star - and I didn't see a complaint about it on HN
This is unfortunately the reality in many companies because cybersecurity is implemented as a subset of a high level information security framework without qualified people to connect the high and low level requirements.
In the past, security departments were the "firewall gatekepeers", choosing who to allow or deny access. They started to change over time from gatekeepers to support the business but this transition is not complete as we know from experience.
The CISO has also has the dillema of having to support the business but will also be held accountable for any hack, which increases the tension on reducing friction vs increasing friction (and increasing control).
This is not an easy problem to fix, but I particularly think it's very productive to see posts like this so we can bring this topic to light and find the right balance.
And for those interested in learning how to add security to their organizations with minimal friction (security by design, especifically), I'm creating some webinars (free on youtube) here: https://devops.security/webinars.html
sry for the stupid question, but does anyone have a good breakdown/video/article/explanation on the market change? I have some idea, but I'm not a pro.
If you're in a "tourist destination" area, then no worries, I'm sure they will offer credit card as a payment option to keep you in business, but it's likely to be more expensive than paying using PIX.
When I was in the south of Brazil I used the "iFood" app (biggest food delivery app in Brazil) and I could only pay using PIX. In other regions, other options were available such as credit card.
Even if you need to do a PIX as a traveller, you can simply pay in cash to some person (hotel recepcionist I guess) so they can use their account to pay the PIX for you. Technically this person will scan a QR code and pay using their bank account.
If you want to have a PIX account yourself, at the moment you need to have a bank account in brazil afaik. After having your account, you have to register it using specific types of identifier, for example your mobile phone. Non-brazilian numbers are accepted in the standard, but not all banks accept them for now. It certainly will go over changes. It's a relatively new technology.
Src (pt only) https://www.poder360.com.br/economia/bc-libera-mecanismo-de-... and https://www.in.gov.br/web/dou/-/resolucao-bcb-n-103-de-8-de-...
The President of Brazilian Central Bank recently said that "credit cards will soon cease to exist" src (pt only) https://www.poder360.com.br/economia/campos-neto-diz-que-car...
If it's for developers or engineers, I've been working on the approach that you get security awareness when working with security engineers. The idea to have a security person close to your team that will teach in practice what it's hard to absorb with some courses out there. Not a replacement for a course, but another way to learn. For more details on this, the info is on my profile.
When I wrote my last website (https://kakugo.ch) I factored in how to balance in trying to making it interesting yet presentable for the everyday audience. I don't know if I achieved that but I tried. A few things one can notice there: two easter eggs, a text written from the heart and some peculiar images. If you also have any more ideas, let me know, thanks :)
Recently I've also stumbled upon three.js which is awesome to build sites like this https://bruno-simon.com/. 3D modeling for websites is pretty neat. As the owner of this website said "i like to build websites that look like videogames".
Surprised not to see "recruiter getting in touch" as an option