frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: BurnShot v2.0 – Zero-Knowledge ephemeral sharing

https://www.burnshot.app/
3•axaysharma•1h ago
Five months ago, I posted the beta of BurnShot here. It was a simple tool to share self-destructing images.

The top comment immediately pointed out the elephant in the room: "Web based! Receiver can take a screenshot very easily."

They were 100% right. My immediate instinct as a builder was to try and fix it. I looked into CSS hacks, disabling right-clicks, and listening for print-screen keystrokes. But I quickly realized that doing so would be selling snake oil. You cannot reliably implement OS-level screenshot restrictions through a standard web browser. And even if you could, you can never defeat the "analog hole"—someone simply holding up a second phone to snap a picture of their screen.

That single comment forced me to step back and act like a Product Manager. I had to ask: If I can't stop the recipient from saving the image, what is the actual point of this product?

It made me completely redefine BurnShot's threat model.

If you are sending data to a malicious actor you don't trust, don't use BurnShot. Nothing can protect you.

BurnShot is actually built for hygienic sharing with trusted (or semi-trusted) parties. For example in Strategy & Transaction Advisory, I constantly see professionals sharing sensitive M&A evaluations, tax computations, or proprietary trading charts over WhatsApp or Slack. You trust the recipient to read it, but you don't trust the infrastructure. You don't want that sensitive file sitting in their iCloud backup, lingering in your chat history for years, or residing in a central database waiting for a breach.

Once I accepted that I couldn't control the recipient's device, I realized I had to absolutely control the transit and the server.

So, I ripped out the backend and built BurnShot v2.0: A mathematically verifiable, Zero-Knowledge architecture.

Here is what changed under the hood:

- We embraced the web, but killed the server visibility: Payloads are now encrypted entirely locally in the browser using the Web Crypto API (AES-256-GCM).

- The URL Hash Trick: The decryption key is generated locally and appended to the URL as a fragment (#key). Because browsers fundamentally do not send URL hashes to the server, my database only ever receives and stores garbled binary blobs. Even I cannot see your images.

- Atomic Detonation: To prevent "last-view" race conditions (e.g., two people clicking a 1-view link at the exact same millisecond), I wrote custom Postgres RPCs to handle the view-count increments atomically.

- Async Cleanup Failsafe: When a payload hits its view limit or expiry time, the DB immediately revokes access, and an async worker permanently wipes the binary blob from the storage edge.

BurnShot is now live at its permanent home: https://burnshot.app The core product will always remain free, supported only by privacy-respecting, context-based affiliate partners (no trackers, no cookies).

I built this to solve a real problem, but it also served as a masterclass for me in product pivoting, architecture design, and user-centric execution.

I’d love for the HN community to pop open the Network tab, inspect the cryptography, and let me know what you think of the v2 pivot!

Show HN: The CTO Game – Scale your infra in real-time, under pressure

https://thectogame.com/
1•frenchmajesty•38s ago•0 comments

Labubu sues 3D printer maker Bambu Lab for items made by its users

https://www.tomshardware.com/3d-printing/labubu-sues-3d-printer-maker-bambu-lab-for-items-made-by...
1•josephcsible•47s ago•0 comments

Amazon Appears to Be Down

https://arstechnica.com/gadgets/2026/03/amazon-appears-to-be-down-with-over-20000-reported-problems/
2•samizdis•1m ago•0 comments

Feeling the Effects of 260k Federal Jobs Lost

https://www.nytimes.com/2026/03/05/climate/climate-forward-science-federal-cuts.html
1•geox•4m ago•0 comments

Show HN: AI Resume Chatbot – recruiters can chat with your resume

https://airesume.chat
1•hanishabsigh•5m ago•0 comments

Surviving the Streaming Dungeon with Kafka Queues

https://rion.io/2026/02/02/surviving-the-streaming-dungeon-with-kafka-queues/
1•rionmonster•9m ago•0 comments

Jemalloc

https://github.com/jemalloc/jemalloc
1•flykespice•10m ago•0 comments

AdonisJS 7.0.0 Has Been Released

https://adonisjs.com/
2•krthr•10m ago•0 comments

U.S. Capabilities Are Showing Signs of Rot

https://www.theatlantic.com/ideas/2026/03/military-failures-trump-iran/686244/
2•Jtsummers•10m ago•1 comments

Sam Altman Wants Elected Officials, Not OpenAI, to Decide How Military Uses AI

https://www.wsj.com/tech/ai/sam-altman-wants-elected-officials-not-openai-to-decide-how-military-...
2•ndkap•10m ago•0 comments

I trained an LLM from loss 11.47 to loss 2.35 on one TPU v5e for $1.16

https://github.com/2001sameersharma/twodollarllm
1•twodollarllm•10m ago•0 comments

The Glaring Oversight in the U.S. War Plan

https://www.theatlantic.com/national-security/2026/03/iran-war-drones-ukraine-pentagon/686249/
2•Jtsummers•10m ago•1 comments

AI Safety Has 12 Months Left

https://mhdempsey.substack.com/p/ai-safety-has-12-months-left
1•gmays•13m ago•0 comments

Imagination Is Work

https://seths.blog/2026/03/imagination-is-work/
2•herbertl•13m ago•0 comments

Show HN: TrueLock – secure messages as encrypted files with unlock rules

https://truelock.pro/
2•dkatsura•15m ago•1 comments

GitHub Having Issues

https://www.githubstatus.com/incidents/g9j4tmfqdd09
5•ZeWaka•15m ago•2 comments

Labor Market Impacts of AI

https://www.anthropic.com/research/labor-market-impacts
3•jjwiseman•18m ago•0 comments

Tapadas Limeñas: Lima's Mysterious Women Revealed

https://blog.viajesmachupicchu.travel/en/tapadas-limenas-limas-mysterious-women-revealed/
2•petethomas•20m ago•0 comments

Shipping System Fonts to Github.com

https://markdotto.com/blog/github-system-fonts
2•rbanffy•20m ago•0 comments

Show HN: Bus Core – a local-first ERP for small manufacturing shops

3•True-Good-Craft•20m ago•0 comments

Show HN: Fitopoly – a fitness app that turns workouts into territory conquest

https://www.fitopoly.app
2•63labs•21m ago•0 comments

Cluely CEO Roy Lee admits to publicly lying about revenue numbers last year

https://techcrunch.com/2026/03/05/cluely-ceo-roy-lee-admits-to-publicly-lying-about-revenue-numbe...
8•minimaxir•23m ago•2 comments

Show HN: Presage – Real-time insider detection for prediction markets

https://www.usepresage.com/
3•Jonsh92•24m ago•0 comments

Opik – An Observability Layer for OpenClaw

https://github.com/comet-ml/opik-openclaw
2•calebkaiser•24m ago•0 comments

(Science paper) Researchers 3D-print elephant figure inside a living, human cell

https://advanced.onlinelibrary.wiley.com/doi/epdf/10.1002/adma.202519286
1•Muhammad523•25m ago•0 comments

ChatGPT 5.4 Pro: A simple 'Hi' cost me $80

https://xcancel.com/Yuchenj_UW/status/2029645361548251271?s=20
3•doener•26m ago•0 comments

Tech firms pledge to pay for AI data centre power costs. But will they?

https://www.bbc.com/news/articles/cx244kdplnzo
3•inaros•26m ago•0 comments

Cognitive Task Partitioning: an architecture for AI-assisted development

https://github.com/UglyEgg/cognitive-task-partitioning
3•majeric•28m ago•0 comments

Netflix is buying Ben Affleck's AI startup

https://www.theverge.com/streaming/889973/netflix-ben-affleck-interpositive-ai
3•ripe•29m ago•0 comments

A Darkly Modern Guide to Betting on War

https://www.bloomberg.com/news/articles/2026-03-03/iran-war-tests-insider-trading-death-wagers-on...
4•smcin•30m ago•1 comments