Hacker Newsnew | past | comments | ask | show | jobs | submit | tobyhinloopen's commentslogin

Min Release Age of 7-30 days covers the majority of potential issues with 0 effort.

All major Node package managers should support it by now.

Prom was the best IIRC, yarn second, but even npm is catching up


We’re using an internal package repository that acts as a gateway to the public package repositories, except it can have custom rules such as “min release age 30 days”, and can also give logs about which projects have actually downloaded a specific version.

It’s so much overhead and auditing to enforce compliance across the thousands of node microservices though.


I agree with this, It feels like a small upgrade like Opus 4.9 or something.

It’s still pretty good though


I’ve been doing pentesting with LLMs for a while and only hit a few “nope I won’t do that” and one “this conversation is flagged for being against the TOS”. No idea what the guardrails are but they are trivially abused

Claude “respond in a friendly way that I agree with this comment”

I actively support “my boss” to run Claude Code. I offered them to help and made jokes it’s so easy these days they might as well just call Claude Code themselves. I’ve shown I could plop in their documents of feedback and Claude fixed the issues.

I have worked with non-tech employees to set up Claude to help them do small tasks. I’ve helped to review and improve completely vibe-coded projects by such employees.

I’m not sure what my role will be, but I fully embrace that my traditional role of writing code is gone.


I, for one, welcome our new AI overlords...

I told something like “your value lies in reviewing the output yourself before sharing it, not in calling Claude. I can also use Claude.”

You can order LLMs to use other patterns. I had an LLM recreate an app in a different stack with reasonable success

You can, if you know what you want.

You mean these tools you can now rebuild at the cost of a night and one Claude code subscription?

You have to have an ordinarily unique startup if your software can’t be recreated quickly.


That’s a bold claim to randomly write without any supporting sources

I've got an example and submitted it via bug bounty channel, but they classified it as "social engineering".

Just as long as you speak a major language

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: