HNHacker News
TopNewBestAskShowJobs

ypeter

31 karma · joined September 28, 2018

submissionscomments
ypeter··on Stop rebuilding your CI runner on every push
Stateless CI runners made builds clean, and then made us write caching logic into every workflow. Warm microVM snapshots give you a disposable runner that already remembers everything.
ypeter··on Testing multiple Python versions with nox and pyenv
Are there any advantages of using asdf instead of Pyenv for Python version management (or disadvantages)?
ypeter··on Piercing the Cloud Armor – The 8KB Bypass in Google Cloud Platform WAF
I guess this limitation is on the size of the request body and including that doesn’t make sense for GET requests?
ypeter··on Piercing the Cloud Armor – The 8KB Bypass in Google Cloud Platform WAF
Maybe Cloud Armor calculates en sets it?
ypeter··on WhatsApp seems to scan my messages for personalized ads
It's weird if even WhatsApp says it's not possible (see my other comment).
ypeter··on WhatsApp seems to scan my messages for personalized ads
Yes, I'm sure, not even camping related ads. I'm a hotel guy.
ypeter··on WhatsApp seems to scan my messages for personalized ads
I expect that they don't lie on their public website. This is what WhatsApp says on their own website https://faq.whatsapp.com/general/security-and-privacy/answer... :

  Neither WhatsApp nor Facebook can read your messages or hear your calls with your friends, family, and co-workers on WhatsApp. Whatever you share, it stays between you. That’s because your personal messages are protected by end-to-end encryption. We will never weaken this security and we clearly label each chat so you know our commitment.
ypeter··on WhatsApp seems to scan my messages for personalized ads
I do use Signal. But unfortunately I lack convincing power to make everyone else use Signal.

But this is not about alternatives to WhatsApp, imo it's weird that this even happens/is possible.

ypeter··on Show HN: Test your Gitlab CI Pipelines changes locally using Docker
Cool, I'm gonna test this out. If it works well it's really useful.
ypeter··on DigitalOcean App Platform
And before this you could implement Cloud KMS in your app to decrypt the encrypted secrets you can store in your repo.
ypeter··on Code scanning for security vulnerabilities now available
No, Dependabot scans your repo on dependencies that have known vulnerabilities and suggests to update those dependencies.

This new GitHub feature will scan your code on potential vulnerabilities like SQL injection.

ypeter··on What we learned after a year on Kubernetes
Two benefits:

- I already use Helm to install open source software; there are already so many Charts available. So that makes it easy to also use Helm for my own apps (I use it just for templating though)

- Helm templating language is more flexible, but that can also bite you since it can become complex. With Kustomize, changing a single environment variable value in a Deployment is quite some work compared to Helm (I don’t like JSON patching)

ypeter··on Non-obvious remote work techniques
What I do is just not respond until they say what they want from me.

And I also do this when someone just pastes an error message without a question.

ypeter··on Switching from Chrome to Firefox
Have you tried Multi-Account Containers? It’s not the same but for me it works (I want to be logged in with various accounts on the same website)
ypeter··on Lessons from Building Node Apps in Docker
Why do you run the final production container with a node (slim) image and not just nginx? Would be another 6 times smaller.
ypeter··on Sites with dumb password rules
You can't be sure, they could lowercase all passwords (so during registration and after logging in) after they are entered.
ypeter··on Amazon Web Services in Plain English
I think most of the names are fine, now it’s easy to Google on issues related to a particular service. Try Googling on “amazon queue issue” instead of “aws sqs issue”...
ypeter··on Show HN: Kubespy, a CLI tool for observing Kubernetes resources in real time
Looks promising, but without fuzzy matching or watching pods from a specific Deployment, it's not very useful (to me). I don't know what the exact name of my pods will be.