frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Strix: Autonomous Security Platform

https://www.strix.ai/
1•handfuloflight•1m ago•0 comments

Using Gemini to Manage a Farm

https://blog.google/innovation-and-ai/models-and-research/gemini-models/using-gemini-to-manage-farm/
1•simonpure•5m ago•0 comments

Robot Dogs Are a Security Nightmare [video]

https://www.youtube.com/watch?v=lA8WuXDXfcI
1•Bender•11m ago•0 comments

Couple Stalked by eBay Settle for $56M

https://www.nytimes.com/2026/07/28/technology/ebay-settles-stalking-case.html
3•xnx•13m ago•1 comments

The Cipher Behind QSYRUPWD: Reconstructing IBM i Password Hashes

https://blog.silentsignal.eu/2026/07/28/the-cipher-behind-qsyrupwd-reconstructing-ibm-i-password-...
1•kencausey•13m ago•1 comments

FileGRC: Git and file-based SoC 2

https://github.com/Sunpeak-AI/FileGRC
1•handfuloflight•13m ago•0 comments

Pixar's Layoffs Came Days After Receiving a $26M Tax Credit

https://amidamidi.substack.com/p/pixars-layoffs-came-days-after-receiving
2•ani_obsessive•14m ago•0 comments

Show HN: MKPM – GNU Make Package Manager

https://github.com/fe18m/mkpm
1•f18m•15m ago•0 comments

Show HN: list55.com: Transcribe a list into plain text

https://list55.enzom.dev/
1•emadda•15m ago•0 comments

Show HN: Hamza Mask secrets and PII before Claude Code or Codex sends them

https://github.com/softcane/hamza
1•pradeep1177•15m ago•0 comments

Advantages and disadvantages of Windows NT 3.1

https://dfarq.homeip.net/advantages-and-disadvantages-of-windows-nt-3-1/
1•birdculture•15m ago•0 comments

Running Kimi K3 on a M1 Mac

https://github.com/gavamedia/deltafin
2•tito•16m ago•0 comments

A Vine in the Wind

https://blog.sao.dev/vine-in-the-wind/
1•stuartaxelowen•16m ago•0 comments

Distilling the Moat

https://blog.dshr.org/2026/07/distilling-moat.html
1•gmays•18m ago•0 comments

Wordfence Prism AI Vulnerability Detector Finds Backdoored WordPress Plugin

https://www.wordfence.com/blog/2026/07/wordfence-prism-detected-backdoored-wordpress-plugin-withi...
2•leecoursey•22m ago•0 comments

LLMs Will Benefit from Scratch Workspaces

https://win-vector.com/2026/07/28/llms-will-benefit-from-scratch-workspaces/
3•jmount•22m ago•0 comments

Show HN: CogniKernel; AI Coding with cross session and cross platform memory

https://github.com/KanishkNoir/cognikernel
2•KanishkNoir•23m ago•0 comments

My Personal Software Journey: Self-Hosting Agent-Built Apps on a Mac Mini

https://metedata.substack.com/p/016-my-personal-software-journey
2•young_mete•23m ago•0 comments

The word is not the food

https://thetraces.substack.com/p/the-word-is-not-the-food
3•feldrim•26m ago•0 comments

The consumable space data center

https://networkingnerd.net/2026/07/28/the-consumable-space-data-center/
2•tatersolid•26m ago•0 comments

The Forgetting Machine

https://thetraces.substack.com/p/the-forgetting-machine
2•feldrim•26m ago•0 comments

Visa time limits on foreign PhD students and postdocs will harm U.S. science

https://www.statnews.com/2026/07/28/dhs-visa-policy-change-international-students-scientific-rese...
4•Jimmc414•27m ago•0 comments

Wikimedia Won't Voluntarily Recognize Union a Supermajority of Its Workers Want

https://www.404media.co/wikimedia-waits-until-after-its-massive-conference-to-say-it-wont-volunta...
4•pizzaiolo•28m ago•0 comments

Point AI at a "Proven" Microkernel?

2•RantyDave•28m ago•0 comments

Anthropic publishes a practical key-recovery attack on HAWK-256

https://github.com/anthropics/cryptography-research-demo
7•bakigul•28m ago•0 comments

Farmers Are Getting Control of Their Equipment Back

https://www.eff.org/deeplinks/2026/07/farmers-are-getting-control-their-equipment-back
6•Jimmc414•29m ago•0 comments

Iran Has Figured Out How to Overwhelm U.S. Air Defenses

https://theintercept.com/2026/07/28/iran-missiles-drones-us-air-defenses/
10•Jimmc414•30m ago•3 comments

AI Shi(f)ts the Cost to the Reader

https://aloutfi.com/writing/ai-shifts-the-cost-to-the-reader
3•anloutfi•31m ago•1 comments

FBI Seeks AI for Political Watch List

https://reason.com/2026/07/28/minority-report-fbi-seeks-ai-for-political-watch-list/
9•devonnull•33m ago•1 comments

Why Rocq is better than Lean for program verification

https://joomy.korkutblech.com/posts/2026-07-28-why-rocq-is-better.html
2•joomy•34m ago•1 comments
Open in hackernews

No as a Service

https://github.com/hotheadhacker/no-as-a-service
64•radeeyate•1y ago

Comments

Haeuserschlucht•1y ago
:)
artogahr•1y ago
:)
blahaj•1y ago
> Rate Limit: 10 requests per minute per IP

I understand that one wants some rate limiting so that others don't just use this as a backend for their own service causing every single request for their service to also create an API request. But this is as simple and resource unintensive as it gets for an HTTP server. 10 requests per minute is just silly.

Also could it be that the limit isn't enforced against the origin IP address but against the whole Cloudflare reverse proxy?

jaywcarman•1y ago
10 requests per minute per IP is plenty enough to play around with and have a little fun. For anything more than that you could (should!) host it yourself.
blahaj•1y ago
So it is just purposefully made to be less useful? Is that part of the joke?

The rate limit still pretty surely isn't applied per IP.

arp242•1y ago
Mate, it's a joke, not a serous service. The only silly thing here is going off on a tangent about the rate limit.
mindtricks•1y ago
If it helps you, think of the rate limiter as the "no" final boss.
choult•1y ago
Well this is something... someone creating a service off the back of a meme that's been flying around my networks for the past two days...
ziddoap•1y ago
Fun idea. I wonder why the rejection messages are repeated so often in the "reasons" file.

"I truly value our connection, and I hope my no doesn't change that." shows up 45 times.

Seems like most of the rejections appear between 30 and 50 times.

khanan•1y ago
Was wondering the same thing.. Probably cruft so it looks impressive at a glance.
Retr0id•1y ago
If you ask LLMs for a long enough list of things, they often repeat entries.
MalbertKerman•1y ago
There are 25 unique responses in that 1000-line file.
justin_oaks•1y ago
Once you remove the duplicates that are different only because of the typos in them, yes, that's correct.
mikepurvis•1y ago
A single large file is also sadness for incorporating suggestions from collaborators as you're always dealing with merge conflicts. Better might be a folder of plain text files, where each can have multiple lines in it, and they're grouped by theme or contributor or something.
varun_ch•1y ago
> {"error":"Too many requests, please try again later."}

I guess it still works.

lgl•1y ago
Bug report: when the server is overloaded, the No's are no longer random :)
kenrick95•1y ago
Classic Hacker News hug of death
xnorswap•1y ago
It looks like it's limited to 10 requests per minute, it's less of a hug and more of a gentle brush past.

It's documented as "Per IP", but I'm willing to bet either that documentation is wrong, or it's picking up the IP address of the reverse proxy or whatever else is in-front of the application server, rather than the originator IP.

Why do I think that? Well these headers:

    x-powered-by Express

    x-ratelimit-limit 10

    x-ratelimit-remaining 0

Which means it's not being rate-limited by cloudflare, it's express doing the rate limiting.

And I haven't yet made 10 requests, so unless it's very bad at picking up my IP, it's picking up the cloudflare IP instead.

egberts1•1y ago
Probably all those cookies tipped and triggered the connection rate limiter.
xnorswap•1y ago
Retr0id•1y ago
It could be genuinely useful for testing HTTP clients if it had a wider array of failure modes.

Some ideas:

- All the different HTTP status codes

- expired/invalid TLS cert

- no TLS cipher overlap

- invalid syntax at the TLS and/or HTTP level

- hang/timeout

- endless slowloris-style response

- compression-bomb

- DNS failure (and/or round-robin DNS where some IPs are bad)

- infinite redirect loop

- ipv6-only

- ipv4-only

- Invalid JSON or XML syntax

zikani_03•1y ago
Not exactly what you are asking for, but reminded me that Toxiproxy[0] exists if you want to test your applications or even HTTP clients against various kinds of failures:

[0]: https://github.com/Shopify/toxiproxy

deanputney•1y ago
Not sure why, but reasons.json is mostly duplicates (as many as 50!) of the same 25 responses: https://gist.github.com/deanputney/4143ca30f7823ce53d894d3ed...

It'd be easier to add new ones if they were in there a single time each. Maybe the duplication is meant to handle distribution?

finnh•1y ago
ah, yes, the "memory is no object" way of obtaining a weighted distribution. If you need that sweet sweet O(1) selection time, maybe check out the Alias Method :)
justin_oaks•1y ago
Knowing that there are only 25 responses, it makes it all the more funny that rate limiting is mentioned.

And you can host the service yourself! Hard pass. I'll read the 25 responses from your gist. Thanks!

thih9•1y ago
Example responses:

https://raw.githubusercontent.com/hotheadhacker/no-as-a-serv...

anonymousiam•1y ago
Looks impressive, but out of the 1000 possible responses, only 26 are unique.
qrush•1y ago
Oh great, it's Balatro's Wheel of Fortune card as a Service (WoFaaS)
hombre_fatal•1y ago
I made a lot of things like this as a noob and threw them up on github.

As you gain experience, these projects become a testament to how far you've come.

"An http endpoint that returns a random array element" becomes so incredibly trivial that you can't believe you even made a repo for it, and one day you sheepishly delete it.

blahaj•1y ago
I don't think things have to be impressive to be shown. A funny little idea is all you need, no matter how simple the code. Actually I find exactly that quite neat.
TehCorwiz•1y ago
I think you'll enjoy this better: https://github.com/EnterpriseQualityCoding/FizzBuzzEnterpris...
seabass•1y ago
{"error":"Too many requests, please try again later."}

a missed opportunity for some humor

richrichardsson•1y ago
{"error":"Computer says no."}
readthenotes1•1y ago
Beats "I have a headache"
n8m8•1y ago
inb4 someone genuinely doesn't understand why you wouldn't do this with an LLM
macleginn•1y ago
A worthy spiritual disciple of the Journal of Universal Rejection (https://www.universalrejection.org/)
svilen_dobrev•1y ago
nice. Reminds me of BOFH (Bastard operator from Hell) . And those box-like calendars with page-per-day with some excuse^w^w tip on each :)

https://bofh.bjash.com/bofh/bofh1.html

hotheadhacker•1y ago
The API rate limiting has been removed.
spiffyk•1y ago
A folder of plain text files will be sadness for performance. It's a file with basically line-wise entries, merge conflicts in that will be dead easy to resolve with Git locally. It won't be single-click in GitHub, but not too much of a hassle.
Retr0id•1y ago
It's ~fine for performance if you load them once at service startup. But I agree, merging is also no big deal.
mikepurvis•1y ago
In fairness, I doubt most of these kinds of meme projects have a maintainer active enough to be willing to conduct local merges, even if it's "dead easy" to do so.

Maybe then this is really a request for Github to get better/smarter merge tools in the Web UI, particularly syntax-aware ones for structured files like JSON and YAML, where it would be much easier to guess, or even just preset AB and BA as the two concrete options available when both changes inserted new content at the same point. It could even read your .gitattributes file for supported mergers that would be able to telegraph "I don't care about the order" or "Order new list entries alphabetically" or whatever.

cf. https://github.com/jonatanpedersen/git-json-merge

KTibow•1y ago
It might be a weighted random.
ziddoap•1y ago
Might be!

Not the way I'd approach it, but as a joke service, if it works it works.

I'm not following you at all?
NotMichaelBay•1y ago
It's so elegant. Even in failure, it's still operational.
riquito•1y ago
Love it, it's brilliant, but I think the rate limiting logic is not doing what the author really wants, it actually costs more cpu to detect and produce the error than returning the regular response (then my mind goes on how to actually over optimize this thing, but that's another story :-D )
hotheadhacker•1y ago
Rate limiting has been removed