HNHacker News
TopNewBestAskShowJobs

capitol_

515 karma · joined April 17, 2017

submissionscomments
capitol_··on Zig feels more practical than Rust for real-world CLI tools
Just understanding the rules are not enough, you also need to be consistently good so that you never make a mistake that gets into production.

On both your average days and your bad days.

Over the 40 to 50 years that your carer lasts.

I guess those kind of developers exist, but I know that I'm not one of them.

capitol_··on Permeable materials in homes act as sponges for harmful chemicals: study
Why do you need it to be cooler than 18c?
capitol_··on Zoxide: A Better CD Command
Eza is nice, but lsd is a step up imho, since it uses the same arguments as ls so that I don't get confused when I change systems.
capitol_··on SSL certificate requirements are becoming obnoxious
Is this some sort of troll comment?

I'm sure that you are perfectly able to do your own research, why are you trying to push that work onto some stranger on the internet?

capitol_··on Blurry rendering of games on Mac
But how do that relate to their class? The working class desire money just as much as the owning class.
capitol_··on Breaking Git with a carriage return and cloning RCE
I'm confused about the timeline here, the tag for 2.50.1 is from 2025-06-16 ( https://github.com/git/git/tags ). And the date for 2.50.1 on https://git-scm.com is also 2025-06-16.

But it seems like almost no distributions have patched it yet

https://security-tracker.debian.org/tracker/CVE-2025-48386 (debian as an example)

And the security advisory is from yesterday: https://github.com/git/git/security/advisories/GHSA-4v56-3xv...

Did git backdate the release?

capitol_··on How to not pay your taxes legally, apparently
What is legal and what is moral are two circles in a venn diagram.

In a good and just society there is a large overlap between them, and in others there is less overlap.

But it's impossible to build a legal system where there is a 100% overlap, and it would most likely be a broken society in other ways.

I totally agree with your second paragraph, that the government needs to remove loopholes and other ways for people to weasel out of contributing to society. But there will always be some corruption and a lot of money to be earned by only taking from our shared resources and never contributing back.

capitol_··on The first non-opoid painkiller
Maybe they should have said something along the line "replaces the pain with a new one and gives you adrenalin that surpresses it and is addictive"
capitol_··on Containerization is a Swift package for running Linux containers on macOS
I would draw the opposite conclusion from the WSL1 attempt.

It was a strategy that failed in practice and needed to be replaced with a vm based approach.

The Linux kernel have a huge surface area with some subtle behavior in it. There was no economic way to replicate all of that and keep it up to date in a proprietary kernel. Specially as the VM tech is well established and reusable.

capitol_··on Show HN: I rewrote my Mac Electron app in Rust
I thought that (for example) deno executed typescript natively?
capitol_··on CERN gears up to ship antimatter across Europe
So they allowed you to know that you are in the control group? Doesn't that introduce bias ;)
capitol_··on A lost decade chasing distributed architectures for data analytics?
If you only have 1tb of data then you can have it in ram on a modern server.
capitol_··on Why does Debian change software?
It's also easy for people to have the opinion the those who do the unpaid work of packaging software should do even more work for free.

I have sent about 50 or so patches upstream for the 300 packages I maintain and while it reduces the amount of work long-term it's also surprisingly amount of work.

Typically the Debian patches are licensed under the same license as the original project. So there is nothing stopping anyone who feels that more patches should be sent upstream to send them.

Typically the Debian maintai

capitol_··on Dear "Security Researchers"
With that said, there is a long and proven track record of attacks on phones.

But those tend to be against journalists and activists.

What threat model you operate under is a nontrivial problem.

capitol_··on Matrix.org Will Migrate to MAS
The LGPL hits the sweet spot for libraries in my opinion.
capitol_··on Rust Any part 3: we have upcasts
Since rust is popular it naturally attracts a counter movement, so some people will grasp at straws in order to say something negative.
capitol_··on Apple needs a Snow Sequoia
No, there is a lot of us who live in countries that framework doesn't ship to.
capitol_··on Show HN: yknotify – Notify when YubiKey needs touch on macOS
No, the idea behind yk-backed keys are that part of the secret lives on the yubikey and can't be extracted.

So you need to approve the usage of that secret by touching the yubikey.

capitol_··on In Colorado, a marriage of solar energy and farming
The amount of coal that can be captured by planting trees doesn't compare in volume to the amount of coal we dig/pump up.

At best it will make the planet prettier and at worst it will simply be feelgood.

capitol_··on Ruby 3.4.0
A very very long list of CVEs disagrees with that parsers are "not too difficult".
capitol_··on Compiling C to Safe Rust, Formalized
Maybe because zig isn't memory safe.
capitol_··on Botan: Crypto and TLS for Modern C++
I would say that this is true for protocols, tls have been significantly improved by dropping support for many different algorithms.

But its not obvious that the same is true for a library.

The RustCrypto project breaks each algorithm into its own crate, while botan implrments everything.

Its not obvious to me that one approach is clearly superior to the other.

capitol_··on 60k people deactivated their X accounts on average each day in one week alone
I wonder what the ratio of people actively deactivating to people silently never returning to the website/app is.

At least 1 to 10 is my guess.

capitol_··on You can use C-Reduce for any language
How does this protect against dangerous things?

My understanding is that this would just cause the dangerous things to be repeatable.

capitol_··on Stop making me memorize the borrow checker
This sounds like a reasonable complaint, that refactorings are too complex in large programs.

But I have a hard time to envision any other solution than "better tooling for refactoring".

capitol_··on DeepComputing: Early Access Program for RISC-V Mainboard for Framework Laptop 13
My experience with our riscv build deamons in Debian is everything works, but there is some spurious segfaults from time to time.

Check the green build matrix on this page: https://qa.debian.org/developer.php?login=alexander.kjall%40...

capitol_··on Bus Number – The GitHub plugin my coworkers asked me not to write
If you only build things that are so simple that anyone can understand the code on day one and you don't need any domain knowledge, then what is your value proposition?

If the most complex thing you can build is a todo-app, then I think you don't produce much value to society.

capitol_··on Writing secure Go code
Could you share more of your thoughts on why that kind of memory corruption wouldn't be exploitable? Do go have something in place that prevents it?
capitol_··on New iMac with M4
HDMI is really not a very good choice as they try to block open source implementations: https://arstechnica.com/gadgets/2024/02/hdmi-forum-to-amd-no...

It should be kept out of regulations.

capitol_··on Rider is now free for non-commercial use
Wouldn't this make engine version upgrades a nightmare?
← PreviousPage 2 of 6Next →