Hacker News
The End of Effort: why no one is trying anymore [video]
Article URL: https://www.youtube.com/watch?v=XZyE1sSNw8E
Comments URL: https://news.ycombinator.com/item?id=48904828
Points: 1
# Comments: 0
AsyncAPI Supply Chain Compromise via GitHub Actions
Article URL: https://www.wiz.io/blog/m-red-team-asyncapi-supply-chain-compromise-via-github-actions
Comments URL: https://news.ycombinator.com/item?id=48904807
Points: 1
# Comments: 0
Tweak self-hosted SearXNG with Kagi domains (2025)
Article URL: https://old.reddit.com/r/selfhosted/comments/1hs1oxg/appreciation_post_for_searxng/
Comments URL: https://news.ycombinator.com/item?id=48904802
Points: 1
# Comments: 1
Show HN: Pg-jason-validator fastest JSON schema validation via C Macros
Article URL: https://github.com/furstenheim/pg-jason-validator
Comments URL: https://news.ycombinator.com/item?id=48904800
Points: 1
# Comments: 0
The Marketplace of Ideals (2023)
Article URL: https://www.dgtlgrove.com/p/the-marketplace-of-ideals
Comments URL: https://news.ycombinator.com/item?id=48904793
Points: 1
# Comments: 0
The disk that never woke up: The Elasticsearch and Qdrant saga
Article URL: https://www.elastic.co/search-labs/blog/vector-search-benchmark-elasticsearch-qdrant
Comments URL: https://news.ycombinator.com/item?id=48904782
Points: 1
# Comments: 0
Exch: Atomically exchanges paths between two files
Article URL: https://man7.org/linux/man-pages/man1/exch.1.html
Comments URL: https://news.ycombinator.com/item?id=48904781
Points: 1
# Comments: 0
3D Campus Map
Article URL: https://rtnf.substack.com/p/missionmap
Comments URL: https://news.ycombinator.com/item?id=48904780
Points: 1
# Comments: 0
C3 0.8.2 a Modest Improvement
Article URL: https://c3-lang.org/blog/0_8_2_a_modest_improvement/
Comments URL: https://news.ycombinator.com/item?id=48904766
Points: 1
# Comments: 1
PowerBrowsing
Article URL: http://davide.eynard.it/malawiki/PowerBrowsing.html
Comments URL: https://news.ycombinator.com/item?id=48904755
Points: 1
# Comments: 0
Replicant.space: An API-first space exploration game
Article URL: https://replicant.space/
Comments URL: https://news.ycombinator.com/item?id=48904751
Points: 1
# Comments: 0
Enhancing GNU-Pth for m:n threading using Claude and Codex
Article URL: https://medium.com/@dibyendumajumdar/adding-m-n-threading-to-gnu-pth-using-claude-and-codex-92d578a4aa01
Comments URL: https://news.ycombinator.com/item?id=48904750
Points: 1
# Comments: 0
"Is AI Making Faculty More Likely to Retire?"
Article URL: https://karenkelsky.substack.com/p/is-ai-making-faculty-more-likely
Comments URL: https://news.ycombinator.com/item?id=48904741
Points: 1
# Comments: 0
You only need the frontier model for one single edit
Article URL: https://stencil.so/blog/prewalk
Comments URL: https://news.ycombinator.com/item?id=48904730
Points: 1
# Comments: 0
Building an open source chain of trust: new research uncovers key blockers
Article URL: https://canonical.com/blog/open-source-security-research
Comments URL: https://news.ycombinator.com/item?id=48904729
Points: 1
# Comments: 0
Why can't you commit a .env file?
"You can't commit a .env file to Git" is a sentence we've all heard. Most people accepted it and went on with their lives, using other tools to share environment variables.
But the question we should ask is: why can't I commit a .env file to Git?
The honest answer isn't that it's bad practice. It's that Git has no permission system below the repository level. It's all or nothing. You see everything, or you see nothing. The entire secret-manager industry exists to paper over this one missing primitive.
For too long we accepted it as a minor annoyance. That's changed. It isn't a minor annoyance anymore. It's a real problem.
We now have agents monitoring every patch that merges, hunting for security fixes to turn into exploits. The patch itself is the disclosure: it hands people (and increasingly agents) everything they need to reverse-engineer the fix and hit systems that haven't updated yet. We're in the middle of a security crisis, arguing about where to store files to hide them from attackers.
For the last couple of weeks I've been thinking about this: prototyping, trying to find a compelling solution. I want to be honest, I have no idea if I found it. But I think the direction is at least interesting. Permissions, or as I prefer to call them, capabilities, should live at the content level, not the repo level. Commit the .env; just scope who's allowed to decrypt it.
This is just one of the problems I have with Git(Hub), and honestly, I have no idea if anything I built is a good solution. I'd love your feedback, or your rant. If you want to see how I tried to fix it, the repo is here (hosted, sarcastically, on GitHub): https://github.com/thaddeus-run/thaddeus
Comments URL: https://news.ycombinator.com/item?id=48904726
Points: 1
# Comments: 0
Bryan Johnson: The world wants me to die
Article URL: https://xcancel.com/bryan_johnson/status/2076365226354909522
Comments URL: https://news.ycombinator.com/item?id=48904719
Points: 1
# Comments: 0
The Unfair Judge: A Mechanistic Interpretability Account of LLM-as-Judge
Article URL: https://arxiv.org/abs/2607.11871
Comments URL: https://news.ycombinator.com/item?id=48904369
Points: 1
# Comments: 0
Euclid discovers the most ancient quasar in the Universe
Article URL: https://www.esa.int/Science_Exploration/Space_Science/Euclid/Euclid_discovers_the_most_ancient_quasar_in_the_Universe
Comments URL: https://news.ycombinator.com/item?id=48904352
Points: 2
# Comments: 0
Vizro: Upload spreadsheets. Get answers in minutes
Article URL: https://www.vizro.ai
Comments URL: https://news.ycombinator.com/item?id=48904335
Points: 1
# Comments: 0
