frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

GPT-5.2

https://openai.com/index/introducing-gpt-5-2/
531•atgctg•4h ago•425 comments

Denial of service and source code exposure in React Server Components

https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-comp...
88•sangeeth96•1h ago•22 comments

UK House of Lords attempting to ban use of VPNs by anyone under 16

https://alecmuffett.com/article/134925
63•nvarsj•1h ago•26 comments

Rivian Unveils Custom Silicon, R2 Lidar Roadmap, and Universal Hands Free

https://riviantrackr.com/news/rivian-unveils-custom-silicon-r2-lidar-roadmap-universal-hands-free...
133•doctoboggan•3h ago•166 comments

Litestream VFS

https://fly.io/blog/litestream-vfs/
169•emschwartz•4h ago•56 comments

The highest quality codebase

https://gricha.dev/blog/the-highest-quality-codebase
356•Gricha•3d ago•264 comments

An SVG is all you need

https://jon.recoil.org/blog/2025/12/an-svg-is-all-you-need.html
68•sadiq•2h ago•23 comments

Almond (YC X25) Is Hiring SWEs and MechEs

https://www.ycombinator.com/companies/almond-2/jobs
1•shawnpatel•1h ago

React2Shell and related RSC vulnerabilities threat brief

https://blog.cloudflare.com/react2shell-rsc-vulnerabilities-exploitation-threat-brief/
8•unknownhad•33m ago•1 comments

The architecture of “not bad”: Decoding the Chinese source code of the void

https://suggger.substack.com/p/the-architecture-of-not-bad-decoding
26•Suggger•7h ago•13 comments

Show HN: Sim – Apache-2.0 n8n alternative

https://github.com/simstudioai/sim
99•waleedlatif1•4h ago•13 comments

Programmers and software developers lost the plot on naming their tools

https://larr.net/p/namings.html
75•todsacerdoti•4h ago•116 comments

Two new RSC protocol vulnerabilities uncovered

https://nextjs.org/blog/security-update-2025-12-11
7•0xedb•32m ago•1 comments

Craft software that makes people feel something

https://rapha.land/craft-software-that-makes-people-feel-something/
199•lukeio•8h ago•103 comments

My productivity app is a never-ending .txt file (2020)

https://jeffhuang.com/productivity_text_file/
96•simonebrunozzi•2h ago•68 comments

Prove It All Night: With no fame or fortune, what keeps a band onstage? (1999)

https://chicagoreader.com/news/prove-it-all-night/
39•NaOH•1w ago•9 comments

Going Through Snowden Documents, Part 1

https://libroot.org/posts/going-through-snowden-documents-part-1/
145•libroot•3h ago•80 comments

Launch HN: BrowserBook (YC F24) – IDE for deterministic browser automation

54•cschlaepfer•6h ago•30 comments

An Orbital House of Cards: Frequent Megaconstellation Close Conjunctions

https://arxiv.org/abs/2512.09643
71•rapnie•7h ago•38 comments

French supermarket's Christmas advert is worldwide hit (without AI) [video]

https://www.youtube.com/watch?v=Na9VmMNJvsA
141•gbugniot•8h ago•81 comments

Auto-grading decade-old Hacker News discussions with hindsight

https://karpathy.bearblog.dev/auto-grade-hn/
552•__rito__•1d ago•246 comments

Contact Sheet Prompting

https://www.willienotwilly.com/contact-sheet-prompting
6•handfuloflight•3d ago•2 comments

iPhone Typos? It's Not Just You – The iOS Keyboard Is Broken [video]

https://www.youtube.com/watch?v=hksVvXONrIo
359•walterbell•6h ago•267 comments

The Walt Disney Company and OpenAI Partner on Sora

https://openai.com/index/disney-sora-agreement/
91•inesranzo•8h ago•369 comments

Golang optimizations for high‑volume services

https://packagemain.tech/p/golang-optimizations-for-highvolume
29•der_gopher•3d ago•7 comments

Deprecate like you mean it

https://entropicthoughts.com/deprecate-like-you-mean-it
44•todsacerdoti•6h ago•113 comments

Patterns.dev

https://www.patterns.dev/
547•handfuloflight•20h ago•125 comments

EFF launches Age Verification Hub

https://www.eff.org/press/releases/eff-launches-age-verification-hub-resource-against-misguided-laws
165•iamnothere•1d ago•145 comments

Show HN: Local Privacy Firewall-blocks PII and secrets before ChatGPT sees them

https://github.com/privacyshield-ai/privacy-firewall
93•arnabkarsarkar•2d ago•38 comments

Encountering Japanese ellipses in English translations (2013)

https://legendsoflocalization.com/articles/japanese-ellipsis-usage/
16•tosh•1w ago•0 comments
Open in hackernews

You can now directly sync Postgres with Redis

https://github.com/redfly-ai-org/redfly.ai
22•vijaymohan1979•7mo ago

Comments

yohannparis•7mo ago
No Pricing information nor an open-source project. I don't know what to do with this product.
jasonlotito•7mo ago
Assuming the link to the repo is correct: it's open source.

https://github.com/redfly-ai-org/redfly.ai/blob/main/LICENSE

bradleyjkemp•7mo ago
I believe this is another case of abusing GitHub for visibility, not actually doing anything meaningful open source

The code in the repo just seems to be connection code ("provides a way for anybody to test our Redis synchronization service on demand") rather than the sync service itself

vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A
maxmcd•7mo ago
Since db cache consistency is a complex research space with things like https://readyset.io/ and https://www.usenix.org/system/files/conference/nsdi13/nsdi13... it would be great to hear more specifics about what this is giving up in order to sidestep all that complexity.
_1tem•7mo ago
There’s also Polyscale as a service.
vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A
vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A
henning•7mo ago
It'd be nice to see documentation of how it works. Is it using a replication channel for Postgres? The write-ahead log? It looks like it does schema introspection and then works off that. How does it handle schema changes? How does this work in scenarios where you have multi-master replication? What's the compatibility with popular Postgres extensions like PostGIS? What happens if the database is rebooted or crashes? Yes I realize the source is there.
porridgeraisin•7mo ago
> Yes, I realize the source is there

It isn't actually. The codein the repo just seems to be some scaffolding.

vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A
hangonhn•7mo ago
Did you really mean to leave your AES key in the code in RedflyEncryptionKeys?

> public const string AesKey = ...

Also, the way AES is used in the code is not good practice. It seems to be using plain AES ( https://learn.microsoft.com/en-us/dotnet/api/system.security... ), which isn't meant to be used bare like that. It needs to be coupled with a digest algorithm to protect the ciphertext. Maybe use AesGcm instead?

foxyv•7mo ago
The reason for this is that AES is not an authenticated algorithm so there is no way to determine if the ciphertext has been modified since encryption. The ciphertext could be modified/corrupted and you wouldn't know.

Also, AES is deterministic and will encrypt the same data the same way every time. This means if you are encrypting a lot of fields you will be able to do statistical attacks. Using an initialization vector with AES GCM is similar to salting a hash. This way there is no statistical method to determine the contents of the ciphertext.

vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A
solatic•7mo ago
Can someone ELI5 where this is going to be valuable?

If you set up Postgres read replicas, make sure your queries are covered by appropriate indexes, and your hot queries are handled by Postgres from RAM anyway - do you really need a separate Redis cache?

I feel like anytime I'm going to pull in Redis for a cache, it's going to be for data that I'm not interested in having guaranteed persistency for, like session tokens, and so it'll be for data that I wouldn't be storing in Postgres anyway?

lotharcable•7mo ago
Probably useful for sharing stuff with services that already have access to redis, but you don't want to add SQL client dependencies for and/or don't want to give access to your database.

But you want to be able to store/have single source of authority and update them using a SQL database.

This would then eliminate the need to maintain a separate lambda or cron job or something like that to keep them in sync.

vijaymohan1979•7mo ago
https://github.com/redfly-ai-org/redfly.ai/wiki/Q-&-A