frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Understand Your Dependencies

https://deps.dev/
34•dedalus•9mo ago

Comments

recursivedoubts•9mo ago
no dependency is more understandable than the dependency that doesn’t exist
bluGill•9mo ago
That is a trade off as if you need something you either need to depend on it, or write something to do it yourself. One way you have a dependency, the other way a lot more code to maintain.

I go back and forth on what is best. I constantly hit issues that make me regret which ever choice I made for that one thing.

recursivedoubts•9mo ago
Please forward all complaints to the hospital in which you were born.
agwa•9mo ago
deps.dev does an absolutely terrible job with Go dependencies. It thinks modules are the unit of dependency rather than packages. Consequentially, it reports vulnerabilities in packages that are never even imported. For example, https://deps.dev/go/filippo.io%2Fsunlight shows a "9.1 CRITICAL" vulnerability in a supposed SSH dependency from a project that has nothing to do with SSH.

Google ought to be embarrassed by this, especially when govulncheck <https://pkg.go.dev/golang.org/x/vuln/cmd/govulncheck> exists and actually checks whether vulnerable code is reachable.

r1chardnl•9mo ago
I don't know how well this makes you understand your dependencies. As for C/C++ a lot of people probably depend on stb single header files libraries. There's stb_truetype but it specifically mentions not to use it on any untrusted/outside .ttf files which I do like but you have to keep in mind to bake to bitmaps or only use your own .ttf provided files, thus I would put this dependency in another place like tooling. Is there a way to do this in other languages like JS and NPM? Maybe carefully choosing which dependencies you include is better?

https://github.com/nothings/stb/blob/master/stb_truetype.h#L...

codr7•9mo ago
Maybe :)

Dependencies is something you learn to be VERY careful with, sooner or later.

simonw•9mo ago
Surprising that Click https://deps.dev/pypi/click/8.1.8 is listed as "license unknown" - https://pypi.org/project/click/ knows that it's BSD.

DoNotNotify is now Open Source

https://donotnotify.com/opensource.html
214•awaaz•4h ago•36 comments

Dave Farber has passed away

https://lists.nanog.org/archives/list/nanog@lists.nanog.org/thread/TSNPJVFH4DKLINIKSMRIIVNHDG5XKJCM/
23•vitplister•55m ago•4 comments

Why E cores make Apple Silicon fast

https://eclecticlight.co/2026/02/08/last-week-on-my-mac-why-e-cores-make-apple-silicon-fast/
12•ingve•1h ago•1 comments

Matchlock: Linux-based sandboxing for AI agents

https://github.com/jingkaihe/matchlock
44•jingkai_he•4h ago•8 comments

Show HN: LocalGPT – A local-first AI assistant in Rust with persistent memory

https://github.com/localgpt-app/localgpt
249•yi_wang•11h ago•123 comments

Reverse Engineering Raiders of the Lost Ark for the Atari 2600

https://github.com/joshuanwalker/Raiders2600
16•pacod•3h ago•1 comments

Haskell for all: Beyond agentic coding

https://haskellforall.com/2026/02/beyond-agentic-coding
148•RebelPotato•10h ago•44 comments

(AI) Slop Terrifies Me

https://ezhik.jp/ai-slop-terrifies-me/
41•Ezhik•2h ago•23 comments

SectorC: A C Compiler in 512 bytes (2023)

https://xorvoid.com/sectorc.html
325•valyala•18h ago•66 comments

LLMs as the new high level language

https://federicopereiro.com/llm-high/
138•swah•5d ago•260 comments

Rabbit Ear "Origami": programmable origami in the browser (JS)

https://rabbitear.org/book/origami.html
16•molszanski•3d ago•3 comments

The Architecture of Open Source Applications (Volume 1) Berkeley DB

https://aosabook.org/en/v1/bdb.html
47•grep_it•5d ago•8 comments

Software factories and the agentic moment

https://factory.strongdm.ai/
243•mellosouls•21h ago•404 comments

Curating a Show on My Ineffable Mother, Ursula K. Le Guin

https://hyperallergic.com/curating-a-show-on-my-ineffable-mother-ursula-k-le-guin/
4•bryanrasmussen•2h ago•0 comments

Modern and Antique Technologies Reveal a Dynamic Cosmos

https://www.quantamagazine.org/how-modern-and-antique-technologies-reveal-a-dynamic-cosmos-20260202/
11•sohkamyung•5d ago•0 comments

Speed up responses with fast mode

https://code.claude.com/docs/en/fast-mode
196•surprisetalk•18h ago•202 comments

uLauncher

https://github.com/jrpie/launcher
42•dtj1123•5d ago•11 comments

Hoot: Scheme on WebAssembly

https://www.spritely.institute/hoot/
199•AlexeyBrin•1d ago•37 comments

Stories from 25 Years of Software Development

https://susam.net/twenty-five-years-of-computing.html
217•vinhnx•21h ago•26 comments

The Legacy of Daniel Kahneman: A Personal View (2025)

https://ejpe.org/journal/article/view/1075/753
8•cainxinth•3d ago•0 comments

Vocal Guide – belt sing without killing yourself

https://jesperordrup.github.io/vocal-guide/
378•jesperordrup•1d ago•121 comments

Brookhaven Lab's RHIC concludes 25-year run with final collisions

https://www.hpcwire.com/off-the-wire/brookhaven-labs-rhic-concludes-25-year-run-with-final-collis...
86•gnufx•17h ago•66 comments

LineageOS 23.2

https://lineageos.org/Changelog-31/
92•pentagrama•7h ago•25 comments

Wood Gas Vehicles: Firewood in the Fuel Tank (2010)

https://solar.lowtechmagazine.com/2010/01/wood-gas-vehicles-firewood-in-the-fuel-tank/
59•Rygian•3d ago•29 comments

In the Australian outback, we're listening for nuclear tests

https://www.abc.net.au/news/2026-02-08/australian-outback-nuclear-tests-listening-warramunga-faci...
20•defrost•2h ago•4 comments

First Proof

https://arxiv.org/abs/2602.05192
158•samasblack•21h ago•97 comments

Show HN: I saw this cool navigation reveal, so I made a simple HTML+CSS version

https://github.com/Momciloo/fun-with-clip-path
119•momciloo•18h ago•29 comments

Start all of your commands with a comma (2009)

https://rhodesmill.org/brandon/2009/commands-with-comma/
623•theblazehen•3d ago•224 comments

Substack confirms data breach affects users’ email addresses and phone numbers

https://techcrunch.com/2026/02/05/substack-confirms-data-breach-affecting-email-addresses-and-pho...
86•witnessme•7h ago•38 comments

Al Lowe on model trains, funny deaths and working with Disney

https://spillhistorie.no/2026/02/06/interview-with-sierra-veteran-al-lowe/
114•thelok•20h ago•28 comments