frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Ask HN: How do solo founders handle security?

2•massi24•1h ago
Building a SaaS as a solo founder. Enterprise companies have security teams, pentests, bug bounties. We have... hopes and prayers? Curious how others approach this: - Do you do any security testing before launch? - Ever had a vulnerability reported? How'd it go? - Bug bounty programs seem overkill for small products or are they? Not looking for "just use Auth0" type answers. More interested in the practical stuff indie devs actually do (or skip and regret).

Comments

jqpabc123•20m ago
What I did as a solo SAAS founder over 25 years ago was radical and totally outside the box --- I wrote my own multi-threaded, multi- tenant web server and database.

Why?

Because the security of canned off the shelf all encompassing solutions was horrible at the time.

By doing this, I have nearly full control and can scrutinize, qualify and filter every single request made of my totally unique software. My main concern is an issue with the network stack which I did not write.

After 25 years of being attacked on the open internet on a daily basis, my server security has never been breached to my knowledge. The main issue I have is small scale denial of service type events which I handle by simply blocking the IPs.

The USA Lock-In: When Tech Dependency Becomes Geopolitical Vulnerability

https://blog-e530b5.gitlab.io/posts/usa-lock-in/
1•robtherobber•16s ago•0 comments

Python, Is It Being Killed by Incremental Improvements?

https://stefan-marr.de/2026/01/python-killed-by-incremental-improvements-questionmark/
1•matt_d•53s ago•0 comments

In Pursuit of Production Minimalism (2017)

https://brandur.org/minimalism
1•tosh•2m ago•0 comments

Show HN: Responsive Bento Grid implementation using Tailwind CSS (no heavy libs)

https://veloxweb.gumroad.com/l/launch-ui
1•asliper•2m ago•1 comments

Show HN: Claude Skill Editor

https://github.com/mtct/skill-editor
1•mtct88•3m ago•0 comments

Vibe coding is a hobby. Let me explain

https://medium.com/@wob/vibe-coding-is-a-hobby-let-me-explain-a54949c3b455
4•dham•3m ago•0 comments

I Stopped Creating Package.json Scripts

https://benhouston3d.com/blog/stopped-creating-package-json-scripts
2•bhouston•5m ago•0 comments

Show HN: I built an AI video editor around scenes, not timelines

https://www.roanot.com/app/demo/de745846-87e2-4861-88f2-b91fa8f68a55
1•Vagantem•5m ago•1 comments

Scheme implementation as O'Reilly book via Claude Code

https://ezzeriesa.notion.site/Scheme-implementation-as-O-Reilly-book-via-Claude-Code-2ee1308b4204...
2•kurinikku•6m ago•0 comments

Show HN: Osprey API Tester – VS Code API Testing from NestJS Controllers/DTOs

https://github.com/jeremi-24/osprey-api-tester
1•jeremi-24•6m ago•0 comments

Dynamic Load Balancer in Intel Xeon Scalable Processor

https://danglingpointers.substack.com/p/dynamic-load-balancer-in-intel-xeon
1•blakepelton•7m ago•0 comments

Agentic Code Reviewer

https://github.com/richhaase/agentic-code-reviewer
1•richhhh•7m ago•1 comments

Show HN: D-engine – Embeddable Raft consensus for Rust

https://github.com/deventlab/d-engine
1•joshuachi•7m ago•0 comments

Show HN: cm – a TUI to monitor multiple Docker container logs side-by-side

https://github.com/rehrumesh/cm
3•rehrumesh•11m ago•0 comments

Show HN: APIsec MCP Audit – Audit what your AI agents can access

https://github.com/apisec-inc/mcp-audit
1•rajaramr7•12m ago•0 comments

Show HN: Run4ever – a browser-based long-term running progression game

https://run4ever.win
1•marcosme•12m ago•0 comments

Brush.Q: An Articulated Ground Mobile Robot with Compliant Brush-Like Wheels

https://www.mdpi.com/2218-6581/15/1/3
1•PaulHoule•12m ago•0 comments

11-year streak of record global warming continues

https://news.un.org/en/story/2026/01/1166758
2•yusufaytas•14m ago•0 comments

Creating virtual block devices with ublk

https://jpospisil.com/posts/2026-01-13-creating-virtual-block-devices-with-ublk
1•jiripospisil•15m ago•0 comments

Ask HN: Would you trust a new browser security extension in 2025?

1•linklock•16m ago•0 comments

Postgres Serials Should Be Bigint (and How to Migrate)

https://www.crunchydata.com/blog/postgres-serials-should-be-bigint-and-how-to-migrate
1•enz•18m ago•0 comments

Who Owns Your Data?

https://werd.io/who-owns-your-data/
1•benwerd•19m ago•0 comments

Google's AI Overview Has Been Sending Me the Wrong Customers for 6 Months

https://glama.ai/blog/2026-01-20-bad-google-s-ai-overview
3•punkpeye•19m ago•0 comments

AI boom could falter without wider adoption, Microsoft chief Satya Nadella warns

https://www.irishtimes.com/business/2026/01/20/ai-boom-could-falter-without-wider-adoption-micros...
5•cdrnsf•20m ago•1 comments

Parsing Election Results PDFs Using LLMs

https://openelections.net/spsa2026/
2•m-hodges•21m ago•0 comments

Unconventional PostgreSQL Optimizations

https://hakibenita.com/postgresql-unconventional-optimizations
1•haki•21m ago•0 comments

Show HN: Shadow Report – Why your "black box" redactions aren't hiding anything

1•cd_mkdir•21m ago•1 comments

Show HN: Mother MCP – Manage your Agent Skills like a boss-Auto provision skills

https://github.com/dmgrok/mcp_mother_skills
1•DavidGraca•23m ago•0 comments

Minneapolis software engineers mistaken for ICE agents

https://www.foxnews.com/us/minneapolis-software-engineers-mistaken-ice-agents-eating-lunch-harass...
3•DivingForGold•24m ago•0 comments

The Last Algorithm

https://danielmiessler.com/blog/the-last-algorithm
1•zanjani•24m ago•0 comments