David

526 posts

David banner
David

David

@lowvisiondave

visually impaired web developer | lover of punk rock | senior solutions architect @vercel

Ontario, Canada Katılım Nisan 2025
373 Takip Edilen89 Takipçiler
Schlez
Schlez@schniz·
people look for a complete github alternative. a code hosting and a social platform. they want problems to be solved at scale. at this point i think that people should host their tiny git hosts, and have a centralized index/platform for coders. it doesn't have to be coupled.
English
3
0
5
325
David
David@lowvisiondave·
@jacobmparis Only naturally sourced spring model for me
English
0
0
1
11
jacob paris ▲
jacob paris ▲@jacobmparis·
Is it better to use a distilled model or one purified by reverse osmosis?
English
1
0
2
217
David
David@lowvisiondave·
Hot take: I like the new Slack activity feed
English
0
0
0
15
David retweetledi
Malte Ubl
Malte Ubl@cramforce·
Previously there was a bit of a mixture as to whether traffic mitigated by the Vercel Firewall was billed to you based on the type of firewall rule that triggered. Now this traffic is always free.
Vercel Developers@vercel_dev

All firewall-mitigated traffic is now free on Vercel. Starting today, you aren't charged for requests that are denied, challenged, or rate-limited by Vercel Firewall. This extends free DDoS mitigation to rules you configure. vercel.com/changelog/web-…

English
2
2
39
7K
David
David@lowvisiondave·
@anthonysheww Can't stop. Won't stop. At least not for long.
English
1
0
1
19
Anthony Shew
Anthony Shew@anthonysheww·
Friday, April 17 → Tuesday, May 19 22 → 16 -27% since previous update, and -87% since I started. Sorry for the delay. I was doing security work (see 3 posted CVEs). Glad to be back to Issues/features. Passed 15M weekly downloads now, as well. 🚀 x.com/anthonysheww/s…
Anthony Shew tweet media
Anthony Shew@anthonysheww

Friday, April 10 → Friday, April 17 25 → 22 Another 12% decrease. Pretty good for a package that just crossed 13 million downloads this week. x.com/anthonysheww/s…

English
2
1
22
1.3K
David retweetledi
Guillermo Rauch
Guillermo Rauch@rauchg·
You can just render images on the terminal btw: ▲ ~/ npx ai-cli image 'a vercel ai sdk diagram' Run 𝚗𝚙𝚖 𝚒 -𝚐 𝚊𝚒-𝚌𝚕𝚒 and access every image, video & text model from @vercel AI Gateway instantly
Guillermo Rauch tweet media
English
47
39
614
41.3K
David
David@lowvisiondave·
@johnlindquist And then take a picture and upload it to an AI model to parse?
English
0
0
0
72
John Lindquist
John Lindquist@johnlindquist·
My son has a middle school assignment to write HTML by hand...
English
8
0
27
2.2K
David retweetledi
alli
alli@sonofalli·
we are 36 days away from SHIP & u haven't registered yet?? SKILL issue all of the cracked builders in London, NYC, SF, & beyond will be there, & @vercel will be sharing... what we've shipped DM me why ur the most cracked/should attend 4 a promo code vercel.com/ship
English
10
10
82
8.7K
David retweetledi
nader dabit
nader dabit@dabit3·
This is crazy. The hacker installed a dead-man's switch that will wipe your computer if you revoke the GitHub token they stole from you. Revoking the token is what triggers the wipe.
nader dabit tweet media
TANSTACK@tan_stack

SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions total) was published to npm earlier today at approximately 19:20 and 19:26 UTC. Two malicious versions per package. Status: ACTIVE — packages are deprecated, npm security engaged, publish path being shut down. Severity: HIGH — payload exfiltrates AWS, GCP, Kubernetes, and Vault credentials, GitHub tokens, .npmrc contents, and SSH keys. If you installed any @tanstack/* package between 19:20 and 19:30 UTC today, treat the host as potentially compromised: • Rotate cloud, GitHub, and SSH credentials immediately • Audit cloud audit logs for the last several hours • Pin to a prior known-good version and reinstall from a clean lockfile Detection — the malicious manifest contains: "optionalDependencies": { "@tanstack/setup": "github:tanstack/router#79ac49ee..." } Any version with this entry is compromised. The payload is delivered via a git-resolved optionalDependency whose prepare script runs router_init.js (~2.3 MB, smuggled into each tarball at the package root). Unpublish is blocked by npm policy for most affected packages due to existing third-party dependents. All 84 versions are being deprecated with a SECURITY warning, and npm security has been engaged to pull tarballs at the registry level. Full technical breakdown, complete package and version list, and rolling status updates: github.com/TanStack/route… Credit to the security researcher for responsible disclosure.

English
145
1K
9.6K
1.7M
David
David@lowvisiondave·
Thinking and deciding for yourself is an underrated skill.
English
1
0
1
26
David
David@lowvisiondave·
@MarkFaraj1 I'd probably get motion sickness tbh
English
0
0
1
10
David
David@lowvisiondave·
@ajones55555 Same. It was just fun to write code and solve problems.
English
0
0
1
12
joel ⛈️
joel ⛈️@joelhooks·
52, still at least a couple good years left 🎈
English
47
0
119
8.6K
Phil Zona
Phil Zona@philzona·
@lowvisiondave In hockey he would have been justified in punching one of those men
English
1
0
1
15
Phil Zona
Phil Zona@philzona·
The main reason I never got into baseball is because there’s too much emphasis on good sportsmanship and respect for your opponent
English
1
0
1
41