frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

OpenShot 4.0: Record, Edit, and Color Like Never Before

https://www.openshot.org/blog/2026/08/30/openshot-40-record-edit-color-like-never-before/
191•metrofun•3h ago•55 comments

“I just chose words carefully”

https://unsung.aresluna.org/i-just-chose-words-carefully/
931•zdw•14h ago•246 comments

Agent Memory as a File Format

https://calpaterson.com/memoryfields.html
29•ingve•1h ago•20 comments

Breaking Claude Code Opus 5 Auto Mode

https://embracethered.com/blog/posts/2026/breaking-claude-code-opus-5-and-automode/
146•Recursing•5h ago•48 comments

What I Learned About AI Trust from Reconciling over 100B Transactions

https://engineering.moniepoint.com/what-i-learned-about-ai-trust-from-reconciling
13•Cellz•1h ago•7 comments

Malleable software = solid bases and custom code

https://www.mdubakov.me/malleable-software-solid-bases-custom-code/
16•tablet•2h ago•6 comments

uv: Deduplicate all files in the wheel cache

https://github.com/astral-sh/uv/pull/21327
87•tosh•7h ago•26 comments

My hobby of building miniatures and taking pretty pictures

https://sandyuraz.com/blogs/tiny-cafe/
206•thecsw•2d ago•33 comments

P99 0 ms* autocomplete for 240M domain names

https://ruurtjan.com/articles/p99-0ms-autocomplete-for-240-million-domain-names
162•dbalatero•9h ago•69 comments

Notes on Private Trackers

https://www.jenn.site/notes-on-private-trackers/
5•surprisetalk•4d ago•0 comments

A CVE Dispute

https://daniel.haxx.se/blog/2026/06/24/a-cve-dispute/
69•theanonymousone•1h ago•9 comments

I Think the Military Commissary's Freezers Were Hacked

https://signalandsilence.substack.com/p/i-think-someone-hacked-the-commissary
47•jcurbo•1h ago•36 comments

I built a hardware-bound local password vault hidden in a photo

https://blindlock.app/en/
10•BlindLock•2h ago•3 comments

Using floci to emulate Cloud platforms (GCP, AWS, Azure)

https://flowg.cloud/blog/using-floci-local-emulators
12•linkdd•3d ago•2 comments

The startling 1960s theory that Stonehenge was a prehistoric computer

https://www.bbc.com/culture/article/20260828-the-startling-1960s-theory-that-stonehenge-was-a-pre...
9•dabinat•3h ago•2 comments

A 12TB Steam "teraleak" spills more than a decade of lost PC gaming history

https://arstechnica.com/gaming/2026/08/a-12tb-steam-teraleak-spills-more-than-a-decade-of-lost-pc...
213•WithinReason•6h ago•36 comments

The AI-Native SDLC Starts with Your Infrastructure

https://metalbear.com/blog/ai-native-sdlc-infrastructure/
7•aviramha•2h ago•0 comments

Matrox: Graphics for Professionals

https://www.abortretry.fail/p/matrox
146•BirAdam•13h ago•48 comments

Haiku R1/beta6 has been released

https://www.haiku-os.org/news/2026-08-26_haiku_r1_beta6
341•metrofun•21h ago•95 comments

What 2000 Buried Underpants Revealed About Where Soil Is Most Alive

https://studyfinds.com/what-2000-buried-underpants-revealed-about-where-soil-is-most-alive/
52•mdp2021•4d ago•9 comments

Understanding ChatGPT Work

https://simonwillison.net/2026/Aug/30/understanding-chatgpt-work/
230•gmays•11h ago•125 comments

The Universe as a Minified Bundle

https://andrewarrow.dev/2026/moons/2/day/9/the-universe-as-a-minified-bundle/
3•cs1996•1h ago•1 comments

How to build a diffusion language model

https://kuleshov-group.github.io/blog/blog/2026/how-to-build-a-diffusion-language-model/
124•volodia•13h ago•16 comments

AI-Written Code Is Still *Your* Code. Are You OK with That?

https://martiansoftware.com/articles/ai-written-code-is-still-yours
34•martylamb•56m ago•45 comments

Study: Blue light impairs the eye's ability to distinguish fine detail most

https://research.uga.edu/news/blue-light-has-a-surprising-effect-on-your-eyes-study-finds/
16•giuliomagnifico•4h ago•13 comments

The British state has lost the argument

https://jonathancook.substack.com/p/the-british-state-has-lost-the-argument
14•hackandthink•51m ago•1 comments

Creepy Crawlies

https://people.kernel.org/monsieuricon/creepy-crawlies
1250•zdw•1d ago•627 comments

ReactOS 0.4.16

https://reactos.org/project-news/reactos-0416-released/
12•marttt•4h ago•0 comments

Show HN: NFC Energy-Harvesting PCB Business Card with an MCU

https://wilsonharper.net/projects/businesscard/
193•WilsonHarper•2d ago•21 comments

Highlighting My Code Based on How Much I Care

https://hank.bond/posts/highlighting-my-code-based-on-how-much-i-care/
90•hankbond•2d ago•49 comments
Open in hackernews

Building my npx business card

https://ashley.dev/posts/turning-feedback-into-features/
8•edent•1y ago

Comments

steele•1y ago
Ooh, free real estate, let's colonize and gentrify package management
aabhay•1y ago
Lmao, gentrify cracked me up
neilv•1y ago
Do these npx business cards run arbitrary code on your computer?
cypherpunks01•1y ago
npx

Run a command from a local or remote npm package

Description

This command allows you to run an arbitrary command from an npm package (either one installed locally, or fetched remotely), in a similar context as running it via npm run.

neilv•1y ago
Yes, then is a "command from an npm package" arbitrary code?

And what is this "similar context as running it via npm run"?

Would it be better to answer the question directly?

joshka•1y ago
Yeah, this seems like a very smart but inherently flawed idea.
cypherpunks01•1y ago
Yes I agree! OSS package management ecosystems are a great idea, but allowing submissions without any review or vetting is just asking for supply chain attacks.
Xss3•1y ago
May as well just release an executable tbh.
theamk•1y ago
Reminds me of JAPH [0] - a tiny Perl program that was used in email/newsgroup signature to give it personal touch.

[0] https://www.perlmonks.org/?node_id=412464

watusername•1y ago
Terminal business cards are a nice idea, but RCE business cards are just asking for trouble. Instead of npx, what happened to good'ol curl? Something like

$ curl ashley.dev

Some decades ago, we had finger (https://en.wikipedia.org/wiki/Finger_%28protocol%29) which is designed for this very use case. Sadly it's no longer installed by default with most distros:

$ finger @ashley.dev

queezey•1y ago
This would be a great advertisement for security consulting.

"I was just able to run arbitrary code on your computer. Here is a sample of your recent browser history. Let me tell you help you mitigate your security vulnerabilities."