HNHacker News
TopNewBestAskShowJobs

mkarrmann

88 karma · joined October 9, 2022

submissionscomments
mkarrmann··on What Meta got right with Muse
I've read through those comments and I see more interesting concerns being raised ("interesting" as in "not completely confused for trivial reasons", I'm not conceding anything).

Like I mentioned I don't work on Muse, and I suppose it'd wouldn't be appropriate for me (self-identified Meta employee) to publicly speculate on what defenses do and don't exist or what is intended. (sorry kinda a cop-out, I know).

Thanks for providing specific links to the specific concerns being raised.

mkarrmann··on What Meta got right with Muse
I remembered what you said and I genuinely don't understand what I mischaracterized.

TBH I saw none of those comments by scrolling forward or backwards from the original link. Now it turns out I supposed to be checking quote tweets, not just scrolling like you said above? (tbf I'm not familiar with the neuromatch UI, could be user error on my part).

Again, I think this would've gone smoother if you actually articulated the problem you're concerned about, instead of linking to a "personal notepad" which you acknowledge has mistakes and isn't easily intelligible, and then blaming me for missing the actual point.

I'll look through these new comments later.

Edit: I see from your original comment what you meant by "top-level". I originally assumed you just meant top of the thread. I'll take the L here.

mkarrmann··on What Meta got right with Muse
The things I see beneath that in the thread

a) More being surprised the muse will just provide internal details (which again, as intended) b) the bash scripts are ugly (okay? I don't think that's what we're arguing about) c) surprise that muse runs as root (then realizing this is explained by the VM-in-VM model and linking to the blog which explains this) d) surprise that muse can run as a seed box (idk is this supposed to be the security concern?)

Could you please be more specific about which part you're concerned about? I think that'd be more productive than linking to a long thread, me responding to what I see, then being told that it's just a scratch pad and I'm silly for taking it seriously but also if I look closer I'll see the deeper truth.

mkarrmann··on What Meta got right with Muse
> Not prior beliefs. From prior actions.

I think you're saying that prior actions justify the beliefs you hold. Fair enough, I'll concede that for the sake of argument.

My above comment still stands. Even if your beliefs are justified, that doesn't mean you should treat non-evidence as evidence supporting your beliefs. (Tbh my point is kinda trivial/pedantic. But I feel like folks just always want to double down that every criticism of meta is correct).

mkarrmann··on What Meta got right with Muse
> So we should judge each piece of evidence in a vacuum?

You're free to believe whatever you want about Meta. But no, you shouldn't point to non-evidence, interpret it through the lens of your prior beliefs, and then claim that it's actually evidence supporting your beliefs.

> Aside, if “a skill file organizing purchase history in markdown format” is the only thing you took away from that thread, you might want to take a closer look.

That's what that specific quote I was referencing was referring to. I already responded to the supposed prompt injection/security concerns above.

mkarrmann··on What Meta got right with Muse
Totally fair if that's just a public stratch pad (which happens to make several specific, unsubstantiated claims). Not hating on that guy.

But if someone posts the thread with no other context than "check this out", then it seems appropriate explain this missing context.

And for the record, I did scroll back read through what he's saying as you suggested. The broader context is exactly what makes it clear he's just a bit confused about what he's "uncovered". (Obvious caveat: I haven't read through everything this guy has written, I could be missing something)

mkarrmann··on What Meta got right with Muse
NGL I understand the above comment, but I'm not sure what you're implying. So I guess no I don't understand
mkarrmann··on What Meta got right with Muse
I understand what is being implied. I'm saying that the provided example is poor evidence of what's being implied.

We all know Meta can already track things like certain purchases. A skill file telling AI how to format purchase history in markdown format is not going to help any of Meta's ads or RecSys systems.

You can believe Meta does bad things without thinking everything Meta does is an example of said bad things

mkarrmann··on What Meta got right with Muse
> What's being implied is that your nefarious company is building another product that exists solely to suck up people's attention and time inorder to build a profile to sell them garbage that they don't need and use their personal data to manipulate them.

You're free to speculate that Meta is lying about what it will or won't use the data for. I won't argue over that. That's an important topic and I'm not gonna persuade anyone via an HN comment. Skepticism is fine

But the example linked to in the above comment is not evidence of that at all. A skill explaining how to format purchase history in markdown format is not evidence of hidden motivations.

In general the entire thread is nothing-burger, and that's all I'm getting at.

mkarrmann··on What Meta got right with Muse
There's no "prompt injection" like the OP claims. You can just ask Muse for all the info for its dedicated VM, and Muse will tell you. Meta has confirmed this it intended behavior.

And idk what's even being implied by that quote. (Yes, it tries to help you shop. And? Or is the critique just that OP doesn't like the prose in that markdown file?)

Disclaimer: I work at Meta, not on Muse

mkarrmann··on Tell HN: OpenAI keeps re-enabling the 'allow training' setting
I also have not seen this, the checkbox has stayed off for me.
mkarrmann··on Apache Burr: Build reliable AI agents and applications
Builder pattern isn't only used in Rust, but I agree it's hideous to use in Python.
mkarrmann··on Mexico City is sinking so quickly, it can be seen from space
Ya if anything the real take away is that our satellites are very impressive!
mkarrmann··on Mexico City is sinking so quickly, it can be seen from space
It is very fast, Mexico City has serious problems.

My point is that "can be seen from space" is an awful way to communicate that. It provides no useful intuition for the scale of "10 inches per year".

mkarrmann··on Mexico City is sinking so quickly, it can be seen from space
Referring to "25 centimeters per year" as "so fast it can be seen from space" is so funny to me.

We have very good satellites! Lots of things can be seen from space. "can be seen from space" is an awful way to provide readers intuition for the scale of something.

mkarrmann··on Wisconsin communities signed secrecy deals for billion-dollar data centers
Idk why it's hard to believe another company would try to outbid.

Discovering good locations for data centers is genuinely a difficult problem. They're relatively scarce. Bidding wars seem completely plausible.

mkarrmann··on Logging sucks
I broadly agree with the article.

The described pattern is standard in Meta. This, along with the infrastructure and tooling to support it, was the single largest "devx quality of life improvement" in my experience moving to big tech.

mkarrmann··on Microservices should form a polytree
Microservices should have clear owners reflected in the org chart, but the topology of dependencies should definitely not be isomorphic to your org chart.
mkarrmann··on Idempotency keys for exactly-once processing
And a single producer! i.e. it breaks down if you add support for fault tolerance
mkarrmann··on Vibe coding has turned senior devs into 'AI babysitters'
Horace He at Thinking Machines just dropped an awesome article describing exactly this: https://thinkingmachines.ai/blog/defeating-nondeterminism-in...

TL;DR: assuming you've squashed all regular non-determinism (itself a tall ask), you either need to ensure you always batch requests deterministically, or ensure all kernels are "batch invariant" (which is absolutely not common practice to do).

mkarrmann··on Show HN: Vicinae – A native, Raycast-compatible launcher for Linux
Thank you so much for making this!
mkarrmann··on Making a watch from scratch
> In case you haven't seen it before... > Shares amazing link there was a 0% chance I'd ever see in my life if not for this comment
mkarrmann··on Docker Compose Isn't Enough
Ty, all good points
mkarrmann··on Docker Compose Isn't Enough
I'm pretty confused by this article.

It says docker compose is at the "wrong-level of abstraction", but I kept feeling the author was instead expecting docker compose to solve different problems that it was ever meant to solve.

In fact, they seem to be expecting a highly-opinionated, high-level interface which solves problems that I don't think anyone using docker compose in prod should even be worried about.

A lot of concerns seem to be around avoiding spinning up duplicate instances of reverse proxies, databases, and caches. First of all, why is this a concern? Idle threads have basically no impact on a system, so this generally isn't a concern. This is a nuanced and context-dependent issue, but generally it won't even make the list of top-100 performance bottlenecks for most applications. Yet the article takes for granted that the benefits of solving this problem outweigh the many cons of coupling them together.

Even if you wanted to enforce your applications sharing a postgres instance under the hood, why would you want that to be black-magic performed by the container orchestrator?

Other stuff like DB backups just don't seem like issues docker compose users have. If you need to orchestrate across multiple nodes in order to meet your SLOs, then don't use docker compose.

Finally, it seems like the actual solution is significantly under-discussed. I both have tons of questions about how it's supposed to work, and I see lots of shortcomings with the parts that I do understand.

Beyond the specific issues I see, the fundamental attitude seems to be "force everyone to architect their applications in a very specific way, and don't even try to support any use cases which fall outside of it". You need a damn good reason to be that opinionated about these sorts of things, and it by definition will only work well in specific contexts. I'd be interested to read an article which tried to articulate why such an opinionated API would improve SDLC-considerations over docker-compose, but I don't think that's the article I just read.

mkarrmann··on Terence Tao on O1
I actually like that analogy. It's somewhere in between. Enough that LLMs can help in many ways, but the current models are still far away from doing everything.
mkarrmann··on Terence Tao on O1
Is most code being written the equivalent of high-art or Shutterstock?
mkarrmann··on Notes on Taylor and Maclaurin Series
Why do you think a series which absolutely converges but whose first few terms are a poor approximation is related to a series which diverges but whose first few terms match the empirically expected value?

Not only is it a stretch to wonder about parallels between a basic Calc II concept and Quantum Field Theory, but is seems like the exponential function is the exact opposite of the example you provided.

mkarrmann··on Ollama now supports AMD graphics cards
I've recently taken to calling it llama.cpp plus ollama
mkarrmann··on Compiling Rust is testing
They specifically said "compiling only proves correctness for the code being compiled, and for the properties covered by the type system".
mkarrmann··on Building an early warning system for LLM-aided biological threat creation
What makes you think that the "selling point" of AI today is that it is significantly better at everything than humans?
Page 1 of 2Next →