Yasha

970 posts

Yasha banner
Yasha

Yasha

@Yasha_br

Indie Hacker | AI Enthusiast | Building FlowHunt to 7 figures and sharing everything I learn along the way working on https://t.co/yKwKLkNCg6 https://t.co/sfRkWzLJ2N

Katılım Aralık 2022
202 Takip Edilen111 Takipçiler
Sabitlenmiş Tweet
Yasha
Yasha@Yasha_br·
I really believe AI Flow Engineering is going to be the future of AI apps. Simple calls to LLMs or even smarter Agents (I-JEPA) won't be enough for sophisticated AI Apps. Flows are the way 🚀 flowhunt.io
Yasha tweet media
English
4
2
12
1.2K
Yasha
Yasha@Yasha_br·
Time to go home...
Yasha tweet media
English
0
0
0
7
Yasha
Yasha@Yasha_br·
UPDATE: we were one minor version away from being affected by the new malware: the scary part is, this was the default frontend vibe-coding stack that claude chose for the dashboard 🙂 So, next time, when you see a vibe coded app being hacked, don't be suprised...
Yasha tweet media
English
0
0
0
76
Yasha
Yasha@Yasha_br·
After making a heatmap of github being down, someone should actually make a heatmap from how many times a major vulnerability has happened from 2026
TANSTACK@tan_stack

SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions total) was published to npm earlier today at approximately 19:20 and 19:26 UTC. Two malicious versions per package. Status: ACTIVE — packages are deprecated, npm security engaged, publish path being shut down. Severity: HIGH — payload exfiltrates AWS, GCP, Kubernetes, and Vault credentials, GitHub tokens, .npmrc contents, and SSH keys. If you installed any @tanstack/* package between 19:20 and 19:30 UTC today, treat the host as potentially compromised: • Rotate cloud, GitHub, and SSH credentials immediately • Audit cloud audit logs for the last several hours • Pin to a prior known-good version and reinstall from a clean lockfile Detection — the malicious manifest contains: "optionalDependencies": { "@tanstack/setup": "github:tanstack/router#79ac49ee..." } Any version with this entry is compromised. The payload is delivered via a git-resolved optionalDependency whose prepare script runs router_init.js (~2.3 MB, smuggled into each tarball at the package root). Unpublish is blocked by npm policy for most affected packages due to existing third-party dependents. All 84 versions are being deprecated with a SECURITY warning, and npm security has been engaged to pull tarballs at the registry level. Full technical breakdown, complete package and version list, and rolling status updates: github.com/TanStack/route… Credit to the security researcher for responsible disclosure.

English
0
0
1
40
Yasha
Yasha@Yasha_br·
When someone asked me how did you start 2026?
Yasha tweet media
English
0
0
0
6
Claude
Claude@claudeai·
New in Claude Code: agent view. One list of all your sessions, available today as a research preview.
English
1K
2.2K
29K
5.9M
Yasha
Yasha@Yasha_br·
Claude's first design was shipped today:
Yasha tweet mediaYasha tweet media
English
0
0
0
11
Yasha
Yasha@Yasha_br·
Github's down again ffs
Yasha tweet media
English
0
0
0
16
Yasha retweetledi
Anthropic
Anthropic@AnthropicAI·
New Anthropic research: Natural Language Autoencoders. Models like Claude talk in words but think in numbers. The numbers—called activations—encode Claude’s thoughts, but not in a language we can read. Here, we train Claude to translate its activations into human-readable text.
English
584
1.7K
16.5K
2.4M
Yasha
Yasha@Yasha_br·
Holy shit. the new goal feature is a banger...
Yasha tweet media
English
0
0
0
21
Yasha
Yasha@Yasha_br·
@MrGolden_1 thanks god that didn't happen ffs
English
0
0
0
22
Yasha
Yasha@Yasha_br·
Agree. As part of the new generation of dev, I’ve been coding for 7 years now. Started around the time of GPT2. My analogy to this, is like assembly and programming language. You at least should have an understanding of the basic to move on to the next abstraction layer to take the most out of it
English
1
0
1
252
Mosh
Mosh@moshhamedani·
Calling me a gatekeeper is laughable. I’ve spent the last 12 years building courses to help people become software engineers. I just released a course on Claude Code and how to use it the right way. This isn’t gatekeeping. Just an honest concern. We have a new generation of devs who don’t read books, don’t finish 30% of a course, spend hours on IG and TikTok, and now lean on AI agents to write code they don’t understand. No review. No quality check. They can’t even tell quality from garbage. They just hit Enter like they’re pulling a slot machine. Some may say: “Mosh, why do you care? It’s their app, let them build it however they want.” Here’s why: 1/ It’s not just their app. Their code holds real users’ data (payments, messages, health info, etc). People who never agreed to be test subjects pay the price when things break. 2/ The talent pipeline is a commons. Every senior was once a junior who learned the fundamentals. Skip that for a generation and in 10 years there’s no one left who actually understands the systems everything runs on (banks, hospitals, infrastructure, etc) 3/ They’re being sold a lie. Influencers profit from “you don’t need to learn, just vibe-code.” The devs buying that pitch are the ones who’ll be unemployable when the market corrects and companies realize they need people who can debug, architect, and reason. This isn’t gatekeeping. It’s the opposite! I want this generation to make it. So if you’re starting out: learn the fundamentals, finish what you start, and use AI to amplify real skill, not replace it.
Mosh@moshhamedani

As funny as it sounds, I wish Anthropic wouldn't allow people with less than five years of programming experience to use Claude Code, just like you can’t drive at age 10.

English
35
81
441
22.4K
Yasha
Yasha@Yasha_br·
Just shipped harnext 1.3.0 — 🔒 New Secure Mode that runs every prompt through a local PII model before sending it to your LLM. 📦 165 MB ONNX downloaded once, install here harnext.dev
English
0
0
0
25
Yasha
Yasha@Yasha_br·
huge shoutout to @MaziyarPanahi for training this: huggingface.co/OpenMed/OpenMe… I needed for harnext to implement "Secure" mode for harnext coding agent. after tinkering and fine-tuning to make the phone number masking work, I gave up. but now harnext has secure mode. try at harnext.dev -- useful for Enterprise Customers...
English
1
0
3
171
Yasha retweetledi
Maziyar PANAHI
Maziyar PANAHI@MaziyarPanahi·
OpenAI's privacy-filter, retrained on @nvidia's Nemotron data. PII Masking leaderboard: → openai/privacy-filter: #10 → privacy-filter-nemotron: #4 → OpenMed-PII-SuperClinical: #1, #2 Six places gained from retraining. Demo on web + iPhone:
English
11
18
233
18K
Yasha
Yasha@Yasha_br·
@mattpocockuk POV: Using AI slop to de-slop the slop 🙂
English
0
0
2
202
Matt Pocock
Matt Pocock@mattpocockuk·
AI helps you move faster, but it just accelerates software entropy. Here's how to de-slop a codebase ruined by AI, with one skill:
English
44
75
1.3K
74.9K
Yasha
Yasha@Yasha_br·
@MaziyarPanahi @nvidia this is great. seems the smaller model doesn't work good with the phone numbers in general: But the larger model nailed it.
Yasha tweet media
English
1
0
1
35