13,526 karma · joined December 29, 2009
```
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Last Updated: 2025-May-26
Director Engineering @ https://redsift.com/
Blog: https://www.grepular.com/blog/
Code: https://gitlab.com/grepular
Docker: https://hub.docker.com/u/grepular
LinkedIn: https://www.linkedin.com/in/mikecardwell
Email: mike.cardwell([-at-])grepular.com
Matrix: @grepular:matrix.org
Mastodon: @grepular@mastodon.social
BlueSky: https://bsky.app/profile/grepular.com
Websites:
- https://www.emailprivacytester.com
- https://www.parsemail.org
Public PGP Key: https://www.grepular.com/1801A332.txt
Tips:
Paypal: https://www.paypal.me/grepular
Bitcoin: bitcoin:1PQLtWnjUi1itHLG6QCQeHM3Nxua8pRsq1
Monero: xmr:44zg8QFZza5cMBWcEF4VqsU5panam7tMhfB6fFdzWbDpBcaVy7feqQXKD92smbYGy3C7KPA6d7Q6UWY8f11noJLWUrVKJAK
Zcash: zcash:zcAN9ij9YZ7Cc9HMqCfcjpusELTTKQWutgjSRH9Dxx5E4DLTKTxRye5FgFs7vDPn1edSoBNFvLPTxn7byjgwQaMVJeJ64kQ
-----BEGIN PGP SIGNATURE-----
iQEzBAEBCgAdFiEEWazVMy7edA17fJTj0V47FkDmu60FAmg0Z4MACgkQ0V47FkDm
u62HMQf/Zbd4YtnvkHDlmAReYHYfRhq9SfBhuNsoRGPbIUwBjbIFqLDMoDI6yLaR
fxwjneeUnBCiqldfxJsY2YQwYXC4/26vOraItxz1SNWZWkaIaYezRQMZqSI5geyx
XnSbB1sImI/h2KTmWMgsFjosRXy2cKZbO24/wi3pGlC6yhE7ZdfO0Zy6xBAFMD8+
mfZcLgcRrXeAOfIox4qKv7xEkxsk8MZpBC+/dqRoIatFqNFMvINeL+7Nkw9IPIfn
u0yyBJNNpZo8xWSc9/WCigCOlQ+M2toUHKu7dl7egY2Z1t/5dF6nJDuN7RmsWgGI
HHhO5j1hVZIANs4xzHF0YZD16wGyOw==
=dcyi
-----END PGP SIGNATURE-----
```
mike-cardwell.at.hnYesterday I received a new thermometer for my aquarium to replace an old broken one. Both were bluetooth, but different models. I just told claude "I'm going to set up up my new bluetooth thermometer for my fish tank in a few minutes, keep an eye out for it and replace the old broken one with it in Home Assistant" and then walked away and put a battery in it and put it in my aquarium.
When I came back it had found it, replaced all my existing entities for the broken one with the new one, and verified it was all working with my existing graphs and automations.
@ IN MX 0 .
https://datatracker.ietf.org/doc/rfc7505/They don't seem to know or care what is going on with their own email systems.
https://gitlab.com/grepular/foxcage - Runs Firefox inside podman to isolate it from the host. Has some interesting features that I wanted and nothing else gave me.
https://gitlab.com/grepular/claude-sandbox - Yet another Claude sandbox. Runs it inside podman again. Has a pretty powerful proxy system for securing your credentials.
Currently working on a tool for sanitising email. Will be blogging it up at https://www.grepular.com/blog/ when it's ready for others to use. Does things like applying policies to html/svg/calendar/vcard parts to whitelist or blacklist tags/attributes/css/url schemas, clean URLs, fetch remote content at delivery time and attaching to the email to prevent tracking, pgp and smime auto encryption/decryption and a million other features.
RFC 2142 mailbox names (the core list):
postmaster@ — required by RFC 5321; mail systems expect it to always work abuse@ — for reporting spam/misuse hostmaster@ — DNS issues webmaster@ — website issues noc@ — network operations security@ — security/vulnerability reports info@, marketing@, sales@, support@ — business functions
TLS/certificate validation addresses (RFC 8552 / CA-Browser Forum):
admin@, administrator@ ssladmin@, ssladministrator@, sysadmin@ These can be used to validate domain control and issue certificates, so handing them to a random user is a real security risk.
Common automated/system senders people impersonate or that cause confusion:
noreply@, no-reply@, donotreply@ mailer-daemon@ — bounce messages (RFC 5321 sender) root@, daemon@, bin@, sys@ — Unix-style system accounts null@, devnull@
Brand/trust-sensitive ones worth blocking too:
billing@, accounts@, payments@ help@, contact@, service@ legal@, privacy@, dmca@ register@, registration@, signup@ The service's own name (e.g. [brand]@, team@, staff@, official@)
[edit] Re the TLS issue. You should set up a CAA DNS record and also check on crt.sh later to see if anybody managed to get a cert for rootshell.is if you didn't lock down the validation addresses
Your MX TLS configuration supports various anon ciphers. These should be disabled.
Your DANE is broken. Try any of a number of freely available online validators.
The only thing scalpers make possible, is pricing out people that the vendor wanted to sell tickets to.
From: Kushal <kushal@kushalsm.com>
Date: Mon, 18 May 2026 05:03:11 +0000
Saw your question on the Agent Vault thread about websocket-frame auth
(Home Assistant) and the worry about the model reflecting the bearer
token back into its own context.
chrome-relay's answer is structurally different: the credential never
enters the agent's context because the agent never touches it — the HA
session lives in your real Chrome (cookies, WS handshake and all), and
the agent drives the tab over CDP, only ever seeing the rendered page.
URL: https://chrome-relay.kushalsm.com/
For your HA + agent setup today, are you keeping the session alive in a
browser the agent attaches to, or doing the WS auth on the agent side
and managing the token-in-context risk yourself?
Kushal
Read to me like an LLM had written it. It references something I said in a HN comment, but it was clearly just an excuse to spamvertise their product.I looked at the headers and it contained a List-Unsubscribe header pointing to https://api.agentmail.to
So basically somebody wrote a bot to scrape HN for comments related to some software they wanted to push and send targetted spam. agentmail.to is a Ycombinator funded email service for LLMs which can be, and is, used to send targetted spam and impersonate people. They could mostly solve this problem by adding a block of text to every email expaining an "AI" wrote it. They'd lose customers doing that though of course. I reported this abuse but haven't (and don't expect to) received a response.
I don't even get the point anyway. You can get Claude using an SMTP or IMAP server in seconds.
Because there is demand for it. A lot of people like going to live music and theatre events and scalpers make it more difficult and more expensive for them.
Why shouldn't anything be done? Because capitalism is God?
claude-cli executes whatever is in the BROWSER env variable to open your browser at a current URL, so I pointed it at a simple shell script that writes the URL to a named pipe which is mounted into the container. The sandbox tool outside of the container is reading from that named pipe. When it receives a URL to open, it pops up a confirmation dialog with info about the URL. If you accept, it opens it in your host browser.
The second step is, the callback URL after you sign in on the claude website wants to connect back to a port on localhost to complete the sign in. If the sandbox is being run with host networking mode, this just works fine as claude cli has already opened that port so it's listening on the host network. However if it is not running in host networking mode, the sandbox tool figures out what port it need to listen on from looking at the URL, listens to it, and when it is hit, it just podman exec's curl inside the container to complete the callback.