frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Size of Life

https://neal.fun/size-of-life/
1282•eatonphil•8h ago•170 comments

Australia begins enforcing world-first teen social media ban

https://www.reuters.com/legal/litigation/australia-social-media-ban-takes-effect-world-first-2025...
519•chirau•1d ago•796 comments

Getting a Gemini API key is an exercise in frustration

https://ankursethi.com/blog/gemini-api-key-frustration/
169•speckx•4h ago•74 comments

Auto-grading decade-old Hacker News discussions with hindsight

https://karpathy.bearblog.dev/auto-grade-hn/
264•__rito__•7h ago•130 comments

Super Mario 64 for the PS1

https://github.com/malucard/sm64-psx
144•LaserDiscMan•5h ago•45 comments

Rubio stages font coup: Times New Roman ousts Calibri

https://www.reuters.com/world/us/rubio-stages-font-coup-times-new-roman-ousts-calibri-2025-12-09/
121•italophil•1d ago•230 comments

How Google Maps allocates survival across London's restaurants

https://laurenleek.substack.com/p/how-google-maps-quietly-allocates
95•justincormack•1d ago•47 comments

When would you ever want bubblesort? (2023)

https://buttondown.com/hillelwayne/archive/when-would-you-ever-want-bubblesort/
43•atan2•2h ago•20 comments

Common Lisp, ASDF, and Quicklisp: packaging explained

https://cdegroot.com/programming/commonlisp/2025/11/26/cl-ql-asdf.html
28•todsacerdoti•13h ago•4 comments

Qwen3-Omni-Flash-2025-12-01:a next-generation native multimodal large model

https://qwen.ai/blog?id=qwen3-omni-flash-20251201
187•pretext•8h ago•79 comments

Terrain Diffusion: A Diffusion-Based Successor to Perlin Noise

https://arxiv.org/abs/2512.08309
91•kelseyfrog•5h ago•15 comments

Show HN: Automated license plate reader coverage in the USA

https://alpranalysis.com
97•sodality2•6h ago•59 comments

Scientists create ultra fast memory using light

https://www.isi.edu/news/81186/scientists-create-ultra-fast-memory-using-light/
58•giuliomagnifico•6d ago•12 comments

The future of Terraform CDK

https://github.com/hashicorp/terraform-cdk
77•mfornasa•5h ago•79 comments

Sharding to Contain the Blast Radius of Data Breaches

https://www.mimirsec.com/2025/12/05/sharding-to-contain-the-blast-radius-of-data-breaches/
6•jboutwell•2d ago•0 comments

Gundam is just the same as Jane Austen but happens to include giant mech suits

https://eli.li/gundam-is-just-the-same-as-jane-austen-but-happens-to-include-giant-mech-suits
139•surprisetalk•1w ago•103 comments

Valve: HDMI Forum Continues to Block HDMI 2.1 for Linux

https://www.heise.de/en/news/Valve-HDMI-Forum-Continues-to-Block-HDMI-2-1-for-Linux-11107440.html
484•OsrsNeedsf2P•7h ago•283 comments

Is it a bubble?

https://www.oaktreecapital.com/insights/memo/is-it-a-bubble
124•saigrandhi•7h ago•153 comments

Launch HN: InspectMind (YC W24) – AI agent for reviewing construction drawings

36•aakashprasad91•8h ago•42 comments

Largest EV manufacturer is coming to the Western market

https://newatlas.com/motorcycles/yadea-comes-to-europe/
34•breve•4d ago•38 comments

9 Mothers (YC X26) Is Hiring

https://app.dover.com/jobs/9mothers
1•ukd1•7h ago

Show HN: VoxCSS – A DOM based voxel engine

https://github.com/LayoutitStudio/voxcss
20•rofko•1w ago•2 comments

Golang's big miss on memory arenas

https://avittig.medium.com/golangs-big-miss-on-memory-arenas-f1375524cc90
88•andr3wV•6d ago•65 comments

Typewriter Plotters (2022)

https://biosrhythm.com/?p=2143
91•LaSombra•5d ago•6 comments

DeepSeek uses banned Nvidia chips for AI model, report says

https://finance.yahoo.com/news/china-deepseek-uses-banned-nvidia-131207746.html
278•goodway•8h ago•255 comments

Show HN: A 2-row, 16-key keyboard designed for smartphones

https://k-keyboard.com/Why-QWERTY-mini
47•QWERTYmini•6h ago•40 comments

Factor 0.101 now available

https://re.factorcode.org/2025/12/factor-0-101-now-available.html
99•birdculture•13h ago•12 comments

RoboCrop: Teaching robots how to pick tomatoes

https://phys.org/news/2025-12-robocrop-robots-tomatoes.html
61•smurda•9h ago•33 comments

Why the Sanitizer API is just `setHTML()`

https://frederikbraun.de/why-sethtml.html
112•birdculture•2d ago•45 comments

I got an Nvidia GH200 server for €7.5k on Reddit and converted it to a desktop

https://dnhkng.github.io/posts/hopper/
169•dnhkng•5h ago•36 comments
Open in hackernews

Building my npx business card

https://ashley.dev/posts/turning-feedback-into-features/
8•edent•6mo ago

Comments

steele•6mo ago
Ooh, free real estate, let's colonize and gentrify package management
aabhay•6mo ago
Lmao, gentrify cracked me up
neilv•6mo ago
Do these npx business cards run arbitrary code on your computer?
cypherpunks01•6mo ago
npx

Run a command from a local or remote npm package

Description

This command allows you to run an arbitrary command from an npm package (either one installed locally, or fetched remotely), in a similar context as running it via npm run.

neilv•6mo ago
Yes, then is a "command from an npm package" arbitrary code?

And what is this "similar context as running it via npm run"?

Would it be better to answer the question directly?

joshka•6mo ago
Yeah, this seems like a very smart but inherently flawed idea.
cypherpunks01•6mo ago
Yes I agree! OSS package management ecosystems are a great idea, but allowing submissions without any review or vetting is just asking for supply chain attacks.
Xss3•6mo ago
May as well just release an executable tbh.
theamk•6mo ago
Reminds me of JAPH [0] - a tiny Perl program that was used in email/newsgroup signature to give it personal touch.

[0] https://www.perlmonks.org/?node_id=412464

watusername•6mo ago
Terminal business cards are a nice idea, but RCE business cards are just asking for trouble. Instead of npx, what happened to good'ol curl? Something like

$ curl ashley.dev

Some decades ago, we had finger (https://en.wikipedia.org/wiki/Finger_%28protocol%29) which is designed for this very use case. Sadly it's no longer installed by default with most distros:

$ finger @ashley.dev

queezey•6mo ago
This would be a great advertisement for security consulting.

"I was just able to run arbitrary code on your computer. Here is a sample of your recent browser history. Let me tell you help you mitigate your security vulnerabilities."