Exodus: The Helium Sea was quite the page turner. Can recommend for anyone looking for some science fiction to read with great world building.
(It's the second book of two, first one is Exodus: The Archimedes Engine)
Trying to figure out a way to build software that doesn't suck
Biased towards Diversity, Equity and Inclusion
Exodus: The Helium Sea was quite the page turner. Can recommend for anyone looking for some science fiction to read with great world building.
(It's the second book of two, first one is Exodus: The Archimedes Engine)
I'm pretty sure there's a lesson buried in the reactions to LLMs allegedly making it easier to find security vulnerabilities.
The talk is either centered around the use of LLMs themselves or about how maintainers can(n't) keep up with patching. Very little reflection on why software is full of holes in the first place.
Today I had to change ~100 function calls to use a different function in Python. The signature was complex enough that I didn't trust regex, so I picked up my old friend comby (https://comby.dev/) .
But it took a few attempts to get the pattern and replacement right, so I thought it would be neat to have interactive feedback directly in #neovim
Initial prototype:
I'm currently making my way through The Expanse books - had only seen the show before. In one of the books there's a reference to the "Be Angry At The Sun" poem from Robinson Jeffers. In particular this part:
> Be angry at the sun for setting
> If these things anger you.
And it's been on my mind a lot. Still not sure what to make of it
I'm glad to learn that I'm not the only one who isn't happy with conventional commits
https://sumnerevans.com/posts/software-engineering/stop-using-conventional-commits/
This article currently makes the rounds:
https://ergosphere.blog/posts/the-machines-are-fine/
One part that puzzles me a bit is this:
> Schwartz can use Claude to write a paper because Schwartz already knows the physics. His decades of experience are the immune system that catches Claude's hallucinations
Maybe I'm far away from mastery but I still frequently discover that I don't understand something I thought I did.
The notion that you can stop practicing because you've mastered something strikes me as dangerous
I had no idea the situation with Smart TV Apps is that bad.
Glad I don't have a smart one.
Question to folks who create release notes including stuff like:
- chore: Update depXY to 0.11.4
- chore: Update depXY to 0.11.3
- chore: Update depXY to 0.11.2
- chore: Update depXY to 0.11.1
Why?
I'm overall pretty happy with my experience on Mastodon - except for the situation around long threads. With the default UI getting 20+ fragments in reverse order with other random bits inbetween is bad enough that it makes me unfollow or mute people.
Especially odd to me if the people in question also already have a blog for long form posts.
I wish either Mastodon improved the UI for that, or made it easier to raise post length, or people were more considerate for that limitation.
How do people deal with the now very common compromises of packages you might use?
So far on my radar is:
- Lock versions/hash
- Avoid unnecessary deps
- Configure update cooldowns
- Using nitrokey so at least GPG/SSH key can't be extracted
- Run terminal used for editor and builds under systemd-run/bubblewrap with BindPaths so you have a $HOME / env without any credentials.
Any other suggestions?
I had just caused a service outage by triggering a deployment on Digital Ocean which tried to checkout a git repo from Github, but failed due to another Github outage. Unfortunately the DO build process didn't realize the checkout failed and happily continued the build+deployment despite the code missing due to the failed checkout.
Good way to end the week I guess.
In discussions around LLM I've heard the argument that it's a tool like for example a Navi. That comparison felt off, but I couldn't articulate why.
In the latest You're not so smart episode they touched on that - making the distinction between cognitive off-loading (Using a navi, but still reasoning about the road) and cognitive surrender (Using a navi, driving into a lake)
LLMs users are apparently prone to cognitive surrender, with interesting implications.
Starring at an if statement with a condition that spans 7 lines and includes 5 function calls I wonder if the rise of opinionated formatters was the first step towards conditioning programmers to no longer care about how code looks like.
I've been using ZubanLS for a few months now and I'm overall pretty happy with it.
Worth checking out if you're looking for a python language server:
Hadn't seen this one before:
> Overall, the study participants who saw the biased AI text shifted their positions toward those espoused by the AI.
> Interestingly, the people in the study didn’t tend to think the AI autocomplete suggestions were biased or to notice that they had changed their own thinking on an issue in the course of the study
Since the last update the Bluecode Android app crashes on Murena /e/OS. Based on some comments it's due to lack of the full Google Play Services.
A bummer, I was pretty happy with it so far - never had any issues before. And a bit ironic that the "Pay European" payment alternative no longer works with an european Android variant.
The sampling profiler coming in Python 3.15 looks pretty interesting.
Been a while since I've been looking forward to a new feature in Python.
https://docs.python.org/3.15/whatsnew/3.15.html#whatsnew315-sampling-profiler
Github notification emails for PRs or mentions now include a tracking token in the "View on Github" link.
Besides the tracking being a bad thing, the URLs now also no longer fit into one line on my screen, which breaks the URL detection of my terminal.
Glad I already moved some projects off.
The legal dispute between Unknown Worlds and Krafton is almost better than the Subnautica Below Zero story
https://courts.delaware.gov/Opinions/Download.aspx?id=392880
I had been sleeping on qutebrowser's userscripts. So far I used a little custom tool to download and convert web pages to epub and send them to a Supernote Nomad for later reading. One issue with that were sites with lots of JS or where I'm signed in to see the content.
The qutebrowser userscript mechanism calls a process with some QUTE env vars set, one of them contains a path to the HTML of the current page.
Changed my script to use that - so now I can use :spawn --userscript nomad
I might have to reconsider how I feel about CLA requirements. Looks like it's a stepping stone for people spamming repos with LLM generated PRs
In big companies, such tasks are not considered high value
A bit sad. At least to me it communicates a "We don't really care"
I sort of wish source forges like Github wouldn't have encouraged this by making changelog generation from git log so easy.
Received a survey from the Austrian Institute for SME Research. One question was asking for reasons that AI isn't used more/sooner.
Options were things like costs, lack of know-how, regulatory concerns etc. but no option to say that it doesn't work as advertised or that you haven't seen productivity increases, or concerns about quality.
Goes to show how biased the people making the questions are when they don't even consider that as an option.
To give some credit: Ethics was an option
Do you read the changelogs of dependencies whenever you update them?
(Chose what's the rule, even if it's not always)