frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

KV Cache Transform Coding for Compact Storage in LLM Inference

https://arxiv.org/abs/2511.01815
1•walterbell•4m ago•0 comments

A quantitative, multimodal wearable bioelectronic device for stress assessment

https://www.nature.com/articles/s41467-025-67747-9
1•PaulHoule•6m ago•0 comments

Why Big Tech Is Throwing Cash into India in Quest for AI Supremacy

https://www.wsj.com/world/india/why-big-tech-is-throwing-cash-into-india-in-quest-for-ai-supremac...
1•saikatsg•6m ago•0 comments

How to shoot yourself in the foot – 2026 edition

https://github.com/aweussom/HowToShootYourselfInTheFoot
1•aweussom•7m ago•0 comments

Eight More Months of Agents

https://crawshaw.io/blog/eight-more-months-of-agents
3•archb•8m ago•0 comments

From Human Thought to Machine Coordination

https://www.psychologytoday.com/us/blog/the-digital-self/202602/from-human-thought-to-machine-coo...
1•walterbell•9m ago•0 comments

The new X API pricing must be a joke

https://developer.x.com/
1•danver0•10m ago•0 comments

Show HN: RMA Dashboard fast SAST results for monorepos (SARIF and triage)

https://rma-dashboard.bukhari-kibuka7.workers.dev/
1•bumahkib7•10m ago•0 comments

Show HN: Source code graphRAG for Java/Kotlin development based on jQAssistant

https://github.com/2015xli/jqassistant-graph-rag
1•artigent•15m ago•0 comments

Python Only Has One Real Competitor

https://mccue.dev/pages/2-6-26-python-competitor
3•dragandj•17m ago•0 comments

Tmux to Zellij (and Back)

https://www.mauriciopoppe.com/notes/tmux-to-zellij/
1•maurizzzio•17m ago•1 comments

Ask HN: How are you using specialized agents to accelerate your work?

1•otterley•19m ago•0 comments

Passing user_id through 6 services? OTel Baggage fixes this

https://signoz.io/blog/otel-baggage/
1•pranay01•19m ago•0 comments

DavMail Pop/IMAP/SMTP/Caldav/Carddav/LDAP Exchange Gateway

https://davmail.sourceforge.net/
1•todsacerdoti•20m ago•0 comments

Visual data modelling in the browser (open source)

https://github.com/sqlmodel/sqlmodel
1•Sean766•22m ago•0 comments

Show HN: Tharos – CLI to find and autofix security bugs using local LLMs

https://github.com/chinonsochikelue/tharos
1•fluantix•23m ago•0 comments

Oddly Simple GUI Programs

https://simonsafar.com/2024/win32_lights/
1•MaximilianEmel•23m ago•0 comments

The New Playbook for Leaders [pdf]

https://www.ibli.com/IBLI%20OnePagers%20The%20Plays%20Summarized.pdf
1•mooreds•23m ago•1 comments

Interactive Unboxing of J Dilla's Donuts

https://donuts20.vercel.app
1•sngahane•25m ago•0 comments

OneCourt helps blind and low-vision fans to track Super Bowl live

https://www.dezeen.com/2026/02/06/onecourt-tactile-device-super-bowl-blind-low-vision-fans/
1•gaws•27m ago•0 comments

Rudolf Vrba

https://en.wikipedia.org/wiki/Rudolf_Vrba
1•mooreds•27m ago•0 comments

Autism Incidence in Girls and Boys May Be Nearly Equal, Study Suggests

https://www.medpagetoday.com/neurology/autism/119747
1•paulpauper•28m ago•0 comments

Wellness Hotels Discovery Application

https://aurio.place/
1•cherrylinedev•29m ago•1 comments

NASA delays moon rocket launch by a month after fuel leaks during test

https://www.theguardian.com/science/2026/feb/03/nasa-delays-moon-rocket-launch-month-fuel-leaks-a...
1•mooreds•29m ago•0 comments

Sebastian Galiani on the Marginal Revolution

https://marginalrevolution.com/marginalrevolution/2026/02/sebastian-galiani-on-the-marginal-revol...
2•paulpauper•32m ago•0 comments

Ask HN: Are we at the point where software can improve itself?

1•ManuelKiessling•33m ago•2 comments

Binance Gives Trump Family's Crypto Firm a Leg Up

https://www.nytimes.com/2026/02/07/business/binance-trump-crypto.html
1•paulpauper•33m ago•1 comments

Reverse engineering Chinese 'shit-program' for absolute glory: R/ClaudeCode

https://old.reddit.com/r/ClaudeCode/comments/1qy5l0n/reverse_engineering_chinese_shitprogram_for/
1•edward•33m ago•0 comments

Indian Culture

https://indianculture.gov.in/
1•saikatsg•36m ago•0 comments

Show HN: Maravel-Framework 10.61 prevents circular dependency

https://marius-ciclistu.medium.com/maravel-framework-10-61-0-prevents-circular-dependency-cdb5d25...
1•marius-ciclistu•36m ago•0 comments
Open in hackernews

Show HN: Whisper – AI code reviewer that catches security issues and bugs

https://www.usewhisper.dev/
1•alameenpd•2w ago
Hi HN, I'm building Whisper (https://usewhisper.dev), an AI code reviewer that does both code quality and security analysis. It traces execution flow to catch SQL injections, auth bypasses, and race conditions that standard PR reviewers miss.

The Problem

AI code reviewers catch style issues. Security scanners only check dependencies. But logical security flaws in YOUR code slip through. The SQL injection that happens because user input flows through three functions before hitting your database. The race condition in payment processing. The auth bypass hidden in middleware.

I've shipped these bugs. Your PR reviewer said "looks good." Your security scanner was green (only checks deps anyway). Two weeks later, a pentester finds the vulnerability that was visible in the PR all along.

Why Compete Against Well-Funded Startups?

Fair question. Greptile raised millions. Codacy, SonarQube, Snyk are giants. Here's my thesis: they're solving the wrong problem.

Most AI reviewers are linters with GPT. They look at the diff and comment on style. Security scanners either only check dependencies or dump 1000+ false positives. The ones that do both? Separate products that don't talk.

I'm building something different: execution flow tracing with semantic understanding. Whisper traces data from user input through your logic to find where it reaches sensitive operations.

The big players can't easily copy this. They're built on pattern matching. Tracing execution flow requires different architecture. And I have advantages:

- Speed: I ship features in days vs their enterprise compliance process - Focus: One problem (security in PRs) vs everything to everyone - Pricing: $30/dev vs their $100-300/seat enterprise model - DX: 2-minute setup vs 45-minute enterprise onboarding

They optimize for enterprise contracts. I optimize for devs who want PRs to stop shipping bugs.

How It Works

Example: Standard reviewers say "looks good"

const user = await getUser(req.headers.auth); const data = await db.query( `DELETE FROM users WHERE id = ${user.id}` );

Whisper traces user.id from JWT payload through getUser() to the SQL template literal. Flags SQL injection. Suggests parameterized queries.

Race condition example:

async function processPayment(userId, amount) { const balance = await getBalance(userId); if (balance >= amount) { await charge(userId, amount); await updateBalance(userId, balance - amount); } }

Whisper spots concurrent requests could cause double-charging between check and update.

Status

Private beta with early engineering teams. 2.4M+ lines analyzed, 1,247 bugs caught, 47s avg scan time. Supports all major languages with deep framework understanding for Next.js, React, and tRPC.

What I Want

Feedback from engineers who: - Are drowning in false positives from scanners - Keep shipping bugs visible in PRs - Think competing here is crazy (tell me why!)

Building mostly solo, no VC. Just solving a problem I kept hitting.

Try free: https://usewhisper.dev

Comments

evs91•2w ago
the name...almost like we have been here before...https://openai.com/index/whisper/
alameenpd•2w ago
i could not come up with a better name to be honest . im sorry but have you tried the product? would seriously love to hear your review .