Hacker Newsnew | past | comments | ask | show | jobs | submit | rossipedia's commentslogin

Yeah I’m not talking about SMS MFA. I’ve been using an Authenticator since god knows when. Had to re-enable it this morning.


This is fine


I see you're being downvoted; I suspect OP is sarcastically referring to the "dog in a burning kitchen" meme..


You're correct. I erroneously thought I didn't need the /s, but alas... I was mistaken.


I downvoted your parent comment not because I didn't catch your meaning, but because I didn't think it contributed meaningfully to the conversation (basically, a throw-away 'ha ha' comment).

Elaborating on your perspective on the situation, sharing how it's affected your behavior or though processes, or engaging others in discussion would have produced a more substantive contribution.

I am very sensitive to HN sliding into a 'Reddit, but for nerds' situation where facile comments dominate the conversation and the signal-to-noise ratio is unbearably low.

Looking at your other comments, in general you do a pretty good job of holding back the tide -- please don't take this as a general comment against you, but more as a signpost for others.


Don't look up


You absolutely can. The issue isn't _using_ the optional chaining operator, the issue is that it wasn't compiled down to something that older platforms can understand. Developer quality of life doesn't have to conflict with what's supported on older platforms.


And what do you do when the only way to support a new feature on a legacy system necessarily introduces a security risk? Special case it?


That's a hard problem to solve, and I don't think there are any easy answers. It depends on many factors. What kind of business, what the risk/threat model is, cost/benefit analysis, all that kind of stuff.


Sounds like a good solution to the posted problem. But the device user should be allowed to upgrade their browser and OS too.


Sometimes users use older browser because of ignorance, they don't know how to upgrade, or because they don't want to.


I think it's spread out here in this instance. The realities of the web are that a non-trivial amount of people are going to be using older, outdated devices. That's just a hard fact.

The web dev's responsibility here (or possibly his manager's) is on deciding what level of support they're going to give for those outdated devices.

Do Apple/Google/etc also bear some responsibility here? Absolutely. They can (and should imo) support older devices, much more than they do. But they're gonna chase profit, and at some point the costs of that support outweigh the benefit. That's just another hard fact of life on the web, one that developers should take into account when deciding what kind of support they want to give to outdated browsers with their code.

Luckily, for most things down-compiling to something like ES5 isn't incredibly difficult and can be automated.


> labor shortage

that's a funny way of spelling "wage"


Try reading the article before commenting.


Yes, you're right. But I don't really expect them to make the "smart" or "usual" play. That would honestly surprise me. Now, pinning it on somebody that was generally disliked because they constantly blocked things that had obvious gaping security holes? Basically sicking law-enforcement on somebody out of pure spite? I can absolutely believe that.


> My guess is their local workstation was compromised

Honestly I don't think it was even that complicated, considering when I needed to spend money on some SaaS product the "chief accountant" (because there was no CFO) straight up sent me a photo of the corporate credit card and said "delete that when you're done".


Sure, but to be fair, credit cards really aren't that dangerous of a credential to wave around. You can cancel your card at anytime, and even dispute the charges. Its like instant key rotation, with a way to also roll back time.


And they can have monthly spending limits too


It should be fine, as long as you keep the db at a reasonable level. Prolonged exposure to as low as 85db or so (I believe) can cause permanent damage. But around 60db shouldn't be a problem. You can get db meters for both iOS and Android, just measure approximately where your ears are going to be.


Remember all this data comes from Stack Overflow. Some of the clusters might look a bit odd, but that's because they're all derived from the relationships we've found in Stack Overflow content.


I'm one of the Ad Server devs that David mentioned in his post. We have plans in the works for allowing a user to specify what technologies/tags they're more interested in seeing jobs for, as well as things like customizing the geographical location (if any) you'd like to see prioritized. We hope to roll those out this year (we're a small team - just got our 3rd dev)


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: