Related posts
scanning plugins
The the words it uses that this site has seen
least often elsewhere. Posts are matched on those words alone —
nothing here is a summary of this one.
Sources
All
Writing
Blog x.com GitHub Recommends Mastodon
Top people
Kaspars Dambis
Luke Wroblewski
Simon Willison
Hamel Husain
Wes Bos
Daniel Lemire
Tom MacWright
Xe Iaso
Andrej Karpathy
swyx
Jon Seager
Nelson Elhage
Showing
Profile →
Show everything
Hiding
Show them again
Show them again
Further back ↓
Hiding
Show them again
18 September
Product designer and entrepreneur; author of Mobile First and Web Form Design; formerly a product director at Google; now building AI products.
16 September
Co-creator of Django and creator of Datasette; writes daily at simonwillison.net.
datasette 1.0a40 Release: datasette 1.0a40 Same security fix as 0.65.5, plus some neat new features and bug fixes: Plugins can now launch and manage background tasks using the new datasette.add_background_task() method. Thanks, Alex Gar…
Related
11 September
Machine learning engineer and independent AI consultant. He writes about LLM evaluation, tooling and applied ML at hamel.dev, and previously worked on machine learning at GitHub.
It's cool that there is more interest in eval tools! Some opportunities for improvement: 1. Right now, this workflow tries to quiz you up front about your recollection of your experience with a plugin. It would be better if it was more "in-situ", meaning you could give feedback on the plugins as you are using them. 2. It goes off and builds datasets and judges automatically based on what you tell it in up front as well as what's documented in the plugin. I would like to see it try to do error discovery with you first to allow you to annotate real traces / session history etc so you can figure… Quoting @ClaudeDevs New in Claude Code: claude plugin eval See what value your plugin is adding, or if it needs more work. You can create test cases, run your plugin or skill against those test cases, score those runs, then run each case again without the plugin to see the differences. Related
Canadian full-stack web developer who makes JavaScript and CSS video courses and co-hosts the Syntax podcast.
Omarchy plugins to help my cmd tab addiction. Reimplemented the Mac OS app and space switcher. Omarchy Addiction Related
4 September
Latvian full-stack WordPress developer and course creator at WPElevator; blogs since 2007 about the open web, electronics, home automation and sustainable living.
With Agent Pilot you can create and manage agent skills in WordPress (just like blog posts) and publish them as standard Agent Plugins. Now with OAuth Pilot you get one-click authentication for all the MCP clients (Claude, ChatGPT, etc). No more application passwords! MCP Anthropic Related
7 August
Latvian full-stack WordPress developer and course creator at WPElevator; blogs since 2007 about the open web, electronics, home automation and sustainable living.
There is now a standard for bundling agent skills and MCP configurations as portable plugins (zip files) https://t.co/eAxXQQXWZg This is amazing for self-hosting your AI tools and not needing to publish to individual vendor marketplaces. MCP Related
2 August
Computer science professor who works on fast data processing; co-author of the simdjson parser and a weekly blogger about software performance since 2004.
How fast is C++26’s std::hive? C++26 adds a new container to the standard library: std::hive. It is meant to occupy the ground between std::vector and std::list. Like a vector, it keeps its elements in contiguous blocks of memory, so scanning it does…
Related
13 July
Software engineer and writer; worked on Mapbox and built Placemark and Simple Statistics, and blogs at macwright.com.
6 July
Technical educator, conference speaker and developer relations engineer based in Ottawa, Canada. Author of the Anubis bot filter and of over 400 articles at xeiaso.net.
31 March
Founding member of OpenAI and former director of AI at Tesla; creator of nanoGPT and the term "vibe coding".
New supply chain attack this time for npm axios, the most popular HTTP client library with 300M weekly downloads. Scanning my system I found a use imported from googleworkspace/cli from a few days ago when I was experimenting with gmail/gcal cli. The installed version (luckily) resolved to an unaffected 1.13.5, but the project dependency is not pinned, meaning that if I did this earlier today the code would have resolved to latest and I'd be pwned. It's possible to personally defend against these to some extent with local settings e.g. release-age constraints, or containers or etc, but I thin… stepsecurity.io
Quoting @feross 🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downl… Related
6 August 2025
swyx Recommends
6 Aug 2025
Writer and developer. He runs the Latent Space newsletter and podcast about AI engineering, and writes essays on software and careers at swyx.io.
Their words
my goal is to replace as many small utilities i used to use, with raycast plugins
Show the whole quote
swyx.io
24 June 2025
Software engineer and engineering leader at Canonical, working on Ubuntu; writes about his homelab, Nix and tooling at jnsgr.uk.
Their words
I switched to zsh around 2013 and have used it every day since: starting with the infamous Oh My Zsh, powerlevel9k, and subsequently powerlevel10k, and finally settling on Starship with a couple of zsh plugins such as zsh-autosuggestions and zsh-syntax-highlighting.
Show the whole quote
jnsgr.uk
5 March 2025
Software engineer who writes the blog Made of Bugs about performance, debugging and understanding computer systems. Previously worked at Anthropic on interpretability, at Stripe on Sorbet, and at Ksplice.
https://bughunters.google.com/blog/5424842357473280/zen-and-the-art-of-microcode-hacking Shot: "This opens up the potential for hardware attacks (e.g., reading the key from ROM with a scanning electron microscope), side-channel attacks (e.g., using Correlation Power Analysis to leak the key during validation), or other [...] attacks" Chaser: "We noticed that the key from an old Zen 1 CPU was the example key of the NIST SP 800-38B publication and was reused until at least Zen 4 CPUs." Google Related
Nothing matches. Show everything
What is a korrent?
A korrent is a belief a person has stated in their own words: one
sentence stating the claim, backed by a quote and a source, kept at
korrents.com .
Under a name here, the quoted block is what they actually said.
The korrent beneath it is the claim those words support, in
korrents' wording — tap it to see the record, its source, and who
else holds it.
Nobody here wrote their own korrents. They are compiled from public
statements, and a person can change their mind, which is recorded too.
Got it
About the English under a post
Some people here publish in a language other than English. Where they
do, this site shows a machine translation beneath the post, in
this typeface — the site's own, not theirs.
The post itself is never changed, moved or hidden: what is set in the
serif above is exactly what the person published, and it is what to
quote them on. A translation can be wrong in ways that matter,
especially about tone.
Only the post's own words are translated. A quoted post, a linked
article and a belief on korrents.com
are left in their original language.
Got it