frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Per-table access control for DuckLake lakehouses

https://github.com/berndsen-io/ducklake-guard
1•deezypls•1h ago
DuckLake doesn't ship with an authorization layer. It works through the Postgres catalog, and by default you can query everything. If you have the S3 credentials, you can read every Parquet file in the bucket.

I wanted a cost-effective lakehouse on Hetzner that we can own in the EU. I wrote another repo (ducklake-hetzner) for a deployment under €15/month, but there's still a long way to go for the functionalities to come close to other data warehouses.

Hetzner's Object Storage is also not the easiest to work with, it runs Ceph, but doesn't expose IAM. That means any user has full access by default. You need to create a separate dummy project, and store the s3 credentials in there, and then use an "Allow" policy on those (as they're denied by default, this works).

To help others, I figured I'd package that into a single CLI:

dga allow alice --table customers --read-only

Does two things: PostgreSQL Row-Level Security on the DuckLake catalog, and scoped S3 bucket policies on the storage layer. Still alpha, but the core superuser/writer/reader pattern works.

Would love feedback or ideas, especially from anyone running DuckLake in production or dealing with similar access control gaps on non-AWS object storage.

LLMs they learn what programmers create, not how programmers work

1•noemit•37s ago•0 comments

Russian authorities block paywall removal site Archive.today

https://techcrunch.com/2026/03/23/russian-authorities-block-paywall-removal-site-archive-today/
1•jborichevskiy•1m ago•0 comments

The Immortalism Manifesto

https://immortalism.bryanjohnson.com/
1•Anon84•1m ago•0 comments

NOAA's National Weather Service eyes the cloud for next-gen applications

https://www.noaa.gov/news-release/noaas-national-weather-service-eyes-cloud-for-next-gen-applicat...
2•WalterSobchak•2m ago•0 comments

Show HN: I built an art management platform for visual artists

https://artworkcodex.com
1•contusion1782•2m ago•0 comments

Show HN: Burn Room – ephemeral SSH chat, messages burn after 1 hour

https://burnroom.chat
1•joematrix•4m ago•0 comments

Next-generation electricity is almost here

https://www.gatesnotes.com/work/accelerate-energy-innovation/reader/the-next-generation-of-electr...
1•jonbaer•4m ago•0 comments

How would you attack a local-first password manager?

https://apps.microsoft.com/detail/9p4r9gpcrvhb?hl=en-US&gl=US
1•merimens•5m ago•0 comments

Bets on US-Iran ceasefire show signs of insider knowledge, say experts

https://www.theguardian.com/us-news/2026/mar/23/bets-us-iran-ceasefire-show-signs-of-insider-know...
3•trocado•7m ago•0 comments

Parent sues over likely worthless 'bond' meant to prop up troubled school

https://www.universalhub.com/2026/croft-school-parent-sues-over-likely-worthless-croft-bond-meant...
2•ilamont•9m ago•1 comments

The Long-term decline of the US Job ladder (NBER)

https://www.nber.org/papers/w34981
2•imakwana•9m ago•0 comments

Any experience with the BrailleRap open source Braille embosser?

https://github.com/braillerap/BrailleRap
1•jareds•10m ago•1 comments

CrowdMind – Validate product ideas with AI personas before you build

https://github.com/yasintoy/crowdmind
1•yasintoy•12m ago•0 comments

Bezos wants AI to approve permits in 10 seconds. What 1.8M permits show

https://prevesta.io/blog/bezos-ai-building-permits
2•archiekane•13m ago•0 comments

Amazon is making a new smartphone more than a decade after its Fire Phone

https://sherwood.news/tech/amazon-is-making-a-new-smartphone-more-than-a-decade-after-its-fire-ph...
2•avonmach•13m ago•2 comments

Computers This Week

https://hesnotjoking.substack.com/p/computers-b0a
1•ucla_rob•14m ago•0 comments

Kamal, Rails deployments, and Rega turntables

https://marianposaceanu.com/articles/kamal-rails-deployments-and-rega-turntables
1•dakull•14m ago•0 comments

Tappie-py – A cross-platform Homebrew GUI for macOS and Linux, built with Python

https://www.empiricapps.com/tappie/download
1•mburlac•16m ago•0 comments

Semi-retirement, or, changing my relationship with the BSDs

https://briancallahan.net/blog/20260322.html
1•t-3•16m ago•0 comments

UN warns of record 'climate imbalance' as planetary warming accelerates

https://news.un.org/en/story/2026/03/1167178
3•geox•18m ago•0 comments

Veevo Health – book a CT angiogram to see plaque buildup in your arteries

2•arvindsr33•20m ago•0 comments

American Aviation Is Near Collapse

https://www.theatlantic.com/newsletters/2026/03/aviation-failures-tsa-dhs-shutdown/686505/
13•JumpCrisscross•20m ago•1 comments

Ask HN: Are you also getting more angry with Claude as you use it for longer?

2•kykat•21m ago•0 comments

SpaceX to Expand Starlink's Mobile Coverage

https://sherwood.news/tech/spacex-to-expand-startlinks-mobile-coverage-as-it-seeks-usd1-75-trilli...
1•avonmach•22m ago•0 comments

Show HN: A game to teach teenagers coding in the age of AI

https://prompt-paradox.vercel.app/
1•baristaGeek•23m ago•0 comments

Viral DOGE Deposition Videos Can Remain Online, Judge Rules

https://www.bloomberg.com/news/articles/2026-03-23/viral-doge-deposition-videos-can-remain-online...
4•toomuchtodo•23m ago•1 comments

OpenAI CEO Sam Altman Exits Helion Energy's Board

https://www.reuters.com/sustainability/boards-policy-regulation/openai-ceo-sam-altman-exits-helio...
3•guidoiaquinti•23m ago•0 comments

Cloudflare Details Upgrade to EPYC Turin for 2x Throughput, 50% Better Perf/Watt

https://www.phoronix.com/news/Cloudflare-Gen13-Server-Turin
1•speckx•24m ago•0 comments

Crib: Just Enough Devcontainers

https://fabiorehm.com/blog/2026/03/20/crib-just-enough-devcontainers/
1•TheTaytay•24m ago•0 comments

Housing Advocates Don't Always Get Along

https://www.insidephilanthropy.com/home/housing-advocates-dont-always-get-along-funders-should-pu...
1•viajante1882•25m ago•0 comments