HNHacker News
TopNewBestAskShowJobs

hashtree

368 karma · joined January 4, 2012

https://github.com/rockymadden
submissionscomments
hashtree··on Ask HN: Where to host a static website (with SSL)
GitHub pages + CloudFront (with SNI) does all three. It costs ~$2 a month and you can deploy via Git. It's lovely.

Example links:

CloudFront: https://rockymadden.com

GitHub pages: https://rockymadden.github.io

Compilation repo: https://github.com/rockymadden/rockymadden.github.io

Source repo: https://github.com/rockymadden/rockymadden-web

hashtree··on Ask HN: Besides coffee, what could help me focus when I need to work?
L-Theanine since you are already drinking caffeine.
hashtree··on Fasting triggers stem cell regeneration of damaged, old immune system (2014)
This is called intermittent fasting (one way to do it), and there is some very interesting research (on mice) that suggests caloric restriction to a few hours a day has positive effects on obesity and diabetes. Science Friday episode with one of the researchers: http://www.sciencefriday.com/segment/12/05/2014/you-are-when...
hashtree··on Ask HN: How do you balance privacy with running a startup?
Spot on with my own observations. My one addendum is that if you do make your email and/or phone available (even in odd places like whois records) that you seriously handle the security implications in regards to hacking vectors. Here is an example: https://ello.co/gb/post/knOWk-qeTqfSpJ6f8-arCQ

Simple measures will possibly save your butt if a serious attempt was made: Do not to answer security question fields truthfully, instead use long, random, high-entropy strings. Do not use text based 2FA, when app 2FA is available. Do not use text based 2FA as a backup to app based 2FA (e.g. Google). Etc.

hashtree··on Clever (YC S12) Gets $30M to Become the Login Layer for Education Apps
BTW, with deeper integrations... you open up some unique opportunities to solve big problems for districts:

Done right, deep integrations mean you, in-effect, have a way to get to all data within a district (data warehouses go for six to eight figures and districts eat it up, as you know). The power of being able to get to data district-wide... You have that obvious route for analytics and reporting now, but what if you were to take the next step... ML/NLP/AI... you can do truly interesting work now. Measure teacher effectiveness, dropout prediction well before it occurs, academic achievement prediction to catch kids before teachers can (because you see the whole picture), recommending interventions that have worked for students in similar scenarios, etc. Now that's cool.

hashtree··on Clever (YC S12) Gets $30M to Become the Login Layer for Education Apps
First, congrats on the raising of funds!

Last time I spoke with higher ups at Clever, it was mentioned that deep integrations were not on the roadmap (e.g. pushing into SISes like Infinite Campus for things like health, attendance, grades, etc). Some of that has to do with how the problem is being approached technically at Clever, IMO. While tackling student logins and thin system integrations is cool, are there yet plans to go deeper?

For a time, I had very seriously considered entering this particular space as a competitor, as I am referred to do integrations, where Clever falls short, for districts on an almost weekly basis (which I decline these days). As a competitor, it was my intention to include extremely deep/bi-directional integrations with all systems (including SISes, like Infinite Campus), purely horizontally scaling infrastructure, process/data isolation (security and privacy is a huge concern for districts), distributed processing so that data never need to leave local district data centers, taking functional/stream programming concepts to allow for fully customized integrations per-district built on the same base for each directional system integration, mock integrations for staff members to play with their rules, etc. It can all be done on a technical front (I did on a per-district basis, many times), but I eventually decided it wasn't a great fit for where I wanted to go in business.

I mention all this because I hope someone, perhaps you Clever (knowing you are HNers), addresses this huge need by the districts. So much energy is being spent on things that shouldn't be issues at all... It's a horrible joke that districts have to spend energy on unified login systems, but it is also a joke that moving grades/attendance back and forth between systems for state reporting, for instance. It is not something teachers should have to spend time on. Syncing of student accounts, teacher accounts, admin accounts, enrollments for each, courses, sections, permissions, grades, attendance, health, ILPs, RtI, etc.. it goes on and on. You have the funding and man-power to pull it off, I'd love to see it.

hashtree··on When to quit?
Your thoughts as to why the changes came about would have been my own first guesses, without knowing the situation. You are right, it might be a lost cause but I still see a longshot pitch due to the "opportunities" I've seen you describe (e.g. recently occurred, Java productivity vs Ruby productivity, new devs don't know Spring, scrapping codebase(s), etc). Some thoughts:

  - Determine/guess the costs of the outsourcing and use it as the base for your
  pitch. (i.e. what can I do with ~200k for my own pitch)

  - They are open to shifting things off-site, use this to your advantage. Rails
  devs are hard to find? What about a distributed team of talented Rails
  developers? No longer are you restricted to a ~50 mile radius. Depending upon
  your location, you might have a higher cost of living than remote developers
  which is in your favor. Your candidate pool is now huge. Etc

  - Fewer/more talented developers over more/less talented developers who
  don't even know the framework (Spring).
In all honesty, I'd expect the pitch to fail given the number of seemingly poor decisions made up higher to date. I am curious, is the software being developed an expense for the company or does it make money for the company? I'd expect the former, given the descriptions. Tip: If you can, work for projects that make companies money and are not seen as an expense. That subtle difference has huge impacts on management, pay, decision making, etc.
hashtree··on When to quit?
I'd go with your gut on this one and get out of there as quickly as possible, without something else lined up. I say this knowing this cannot always be the right answer for every dev in this scenario, but if you are one of those who is unwilling to settle in life/career, are talented, and are confident in your ability to get hired if you set your mind to it, well...

I've been there myself, and it is hard to go against the herd telling you to play safe and stay for the security/money. Life is short, make yours worth while and take risks on yourself. Jobs, money, and titles are fungible for those who are truly great practitioners of their craft. This might sound like anti-advice, but a great way to ensure you have all the job prospects in the world going into the future is truly falling in love with practicing your craft and be uncompromising for things that get in your way of that.

One thing I would mention before you fully depart is to go for a "longshot" pitch to your superior(s). Put together a plan for how the department could be put back on track and show you can help reach that vision. Find out why the Rail to Springs change was made, why outsourcing is being preferred, what the department's goals are, your thoughts on moving forward, and how you can lead such a change, etc. Worst case, you know for sure this isn't the right fit. Best case, you get a promotion to lead and bring the change the department needs. If you have plans to be more than an employee someday, you might also enjoy finding out how the series of events lead to a poor outcome came about. Something to take insight of, if you ever venture off on your own (plus, it is interesting to know how the world "works").

I wish you the best in life and career!

hashtree··on Marking HTTP as Non-Secure
This is a really interesting observation. Can you expand upon what "shrinks the pool of competing bidders significantly" means? For instance, when creating an Ad Words campaign, is there a setting/option that they must opt-in to and if they do not they won't be considered for secure-only advertising?
hashtree··on OVH raises $327M to accelerate its international development
To anyone who wants to see a damn cool modular datacenter implementation they have, and how your server fits into it, checkout this video of their newish DC up in Canada: https://www.youtube.com/watch?v=Fnarvq0XpkA#t=100

When you use said DC for your servers and you see the severing naming conventions and routing paths involved... its cool to kinda be able to visualize how it physically is laid out.

hashtree··on OVH raises $327M to accelerate its international development
There is some back and forth on the "best" approach to hosting infrastructure, but there is no silver bullet or always right answer. There is a full spectrum for hosting infrastructure options, and each company has to pick the hue/tier(s) that delivers for them best a particular point in time and realize that it will likely change as time moves on. At each hue/tier, you trade man-hours and in-house expertise for cost. Typically, you see companies move backwards down the choices as time goes on to find that optimal spot.

  - Multi DC colocation, building your own servers/network equipment
  - Multi DC colocation, buying servers/network equipment
  - Single DC colocation, building your own servers/network equipment
  - Single DC colocation, buying servers/network equipment
  - Dedicated servers
  - VPS servers
  - Virtualized servers as a service with barebone supporting 
  infrastructure (e.g. Digital Ocean)
  - Virtualized servers as a service with robust supporting 
  infrastructure (e.g. AWS)
  - Platform as a service (e.g. Heroku)
You do see companies get into "trouble" where they might have picked the right hue/tier but haven't reflected upon the choice in some time. In those cases, you might see a startup dropping 60k a month on AWS services when they would have no earthly business spending more than 10k amortized on a multi-DC/added hires approach (I've observed this exact scenario).
hashtree··on Reimplementing “git clone” in Haskell from the bottom up (2013)
As to your question, I think it is both. The author's ability to walk you through his thought processes in a clear and concise manner, his general strength as a writer, the fact that he added diagrams and models to help the reader, and that this did not seem to be written only for Haskellers to read... well they all add up to what you are describe. Kudos to the author.
hashtree··on New Startup Sets Out to Bring Google-Style AI to the Masses
A solid group of talent, welcome to the club. I am interested to see where the "deep learning" start-ups end up in ten years time with such a wide-array of problem sets and industries.
hashtree··on Amazon Echo
I'd still be interested, if and only if, the "wake word" processing is done locally and it THEN sends the recording that occurred after the wake word up to the cloud. If it is the case that even the wake word processing is done in the cloud, non-starter for all the reasons you state.
hashtree··on Amazon Echo
I believe you get to pick the name you want to call it (called the wake word), per the video.
hashtree··on Amazon Prime Members’ Newest Benefit Is Free, Unlimited Photo Storage
As a, hopefully useful to someone, aside you can use icloud shared photo streams for nearly unlimited storage of casual photos/videos. You are limited to 5000, per stream. You can have 100 streams total: http://support.apple.com/en-us/HT4858 Be aware, there is some downsizing that occurs: http://support.apple.com/en-us/HT5902 (see: `Which photo and video formats and sizes does iCloud Photo Sharing support?`)

Works nicely to get the most of your iOS device storage, share with family, mild private social interactions (e.g. commenting), OSX integration (e.g. you can have one central repo for wallpapers for all devices), etc.

hashtree··on What’s Behind the Great Podcast Renaissance?
Spot on for me as well. The workflow you mention of Mac iTunes, discovery, download, change settings, plug in your iOS device, sync over USB 2, etc changed into simply opening up the Podcasts app on your iOS device. Settings are synced, I can steam, I can download, I can discover, etc all within the same easy to use app made by Apple.

Add that there are numerous exceptional podcasts out there, such as Science Friday, Radio Lab, This American Life, Serial, etc -- it's lovely combination. Plus, most content producers have seemed to have finally gotten over the gimmicky delivery methods like video podcasts. It works when the content lends itself, but this is not common.

I suppose some of it even has to do with the cell/isp network speeds we are all accustomed to now. The thought of streaming or downloading podcasts over a cell network years ago meant frustration and long delays.

hashtree··on Show HN: Closing Call – Hacker News for Sales
I'm all for niche HN clones, but looking at the articles on the homepage.. yowza. Are they simply poor selections or are they truly top-notch articles?
hashtree··on Your friends are lying to you. For $10, I wont.
Here is a free one: The "See More Creatives" link 404s hitting against makers.html
hashtree··on Why I changed my mind about Node.js
It's an absolute dream come true for Haskell-ers. Doing server-side in Haskell and client-side/small services in PureScript is... just wow. Anyone in the Colorado area, we have quite a few amazing FP folks here (e.g. Brian McKenna) and there is a PureScript meetup Oct 1st: http://www.meetup.com/Boulder-Haskell-Programmers/events/199...
hashtree··on Why I changed my mind about Node.js
Heck yeah, be sure to also check out:

  - https://github.com/puffnfresh/bilby.js
  - https://github.com/fantasyland/fantasy-land
  - https://github.com/baconjs/bacon.js
  - https://github.com/kriskowal/frb
  - https://github.com/swannodette/mori
  - And essentially all things PureScript: https://github.com/purescript/purescript
hashtree··on [dead]
Working: http://highscalability.com/blog/2014/8/27/the-12m-opssec-red...
hashtree··on Ask HN: GitHub journals?
GitBook may or may not meet your needs. I'd say so, personally: https://www.gitbook.io/
hashtree··on Ask HN: Which Markdown editor do you use?
Atom: https://github.com/atom/markdown-preview https://github.com/atom/language-gfm

and

Gitbook editor: https://github.com/GitbookIO/editor

hashtree··on The world's hardest CAPTCHA
No actual captcha checking going on (submit button in own form doing a GET, Flash does no external network calls verified via MITMProxy), as many have noted it seems to be a joke.

However, this would be one of the easier captchas from a bot standpoint. You have the source image and only need to create the equivalent in another format (Flash)? Assuming no fancy bot checks in Flash, the process of duplication is trivial. The bot doesn't have to guess what it is, just duplicate and machines are great at that. In fact, this is more like an anti-captcha (hard for humans, easy for bots).

hashtree··on A chrome extension to copy stylelessly
You are absolutely correct. My critique wasn't directed at this extension, but Chrome in general. In this instance, I'd love to see:

  - Access to your data on all websites (when directly activated)
  - Access data you copy and paste (when directly activated)
It is my understanding that Chrome does not have this level of granularity in permissions currently.
hashtree··on A chrome extension to copy stylelessly
Am I the only one who finds the broad permissions that are required by many Chrome extensions crazy from a security perspective? This one can:

  - Access to your data on all websites
  - Access data you copy and paste
Talk about a non-starter, even if I were to trust the developer. Chrome is all too happy to auto-update extensions by default. All it takes is one extension developer compromised to have a nice little copy/paste and bank-website logger that phones home. I could have trusted the developer. I could have reviewed the source code. I could do a number of things and still open up myself to risk for such things. I understand this particular extension needs said permissions, but there has to be a better way. Many extensions ask for permissions they have no need for. Looking at the install numbers, people are all to happy to hand them out. I imagine some of the trust comes via proxy of being on the Chrome store.
hashtree··on WordPress on Heroku
Where content is semi-static (e.g. blogs, informational sites like WebMD, sites in which the information updates infrequently on a per-page level), we have flipped the approach/architecture and it has proven to be a HUGE boon for us. With the approach, we get performance that is essentially unmatched via any traditional server setup, nearly unlimited read scalability, vastly reduced infrastructure costs, improved usability for end users with direct benefits to engagement and SEO, and much more. It certainly is not a fit for every site. For instance, Twitter could not work at all this way. But, for semi-static sites it works like a charm:

  - Host all content via CDNs, which is dynamically managed via backend servers (see
  below).

  - Allow user interactivity via events being pushed to pub/sub event servers. On the
  other side, in other DCs entirely, are the more traditional servers
  which await said events. Said events are processed, aggregated, and then pushed back
  up, via CDN APIs, to the CDN servers.

  - Use eventual consistency concepts to simulate real-time interactivity for users.
  For instance, when a user posts a review/comment we show it client-side to them,
  knowing that the CDN update should be coming momentarily.
Besides the pub/sub servers, servers can be housed just about anywhere across the globe (latency isn't a huge issue any longer). If you are based in the US, you might be surprised to find out just how competitive/cheap the European market is for servers. Previously, it would have been insane to consider them, but now we can leverage them for a large reduction in costs. For example, compare Rackspace dedicated servers to OVH dedicated servers. It is roughly one order of magnitude less costly.
hashtree··on OS X Yosemite public beta starts tomorrow
As you mentioned, there are still a handful that currently have GCC issues, namely Haskell (GHC) and MongoDB.

https://github.com/Homebrew/homebrew/issues/29845

hashtree··on OS X Yosemite public beta starts tomorrow
It worked at beta 3 for me :)
← PreviousPage 2 of 8Next →