overgeared

17 posts

overgeared banner
overgeared

overgeared

@overgeared2608

Katılım Şubat 2025
13 Takip Edilen0 Takipçiler
overgeared
overgeared@overgeared2608·
Once you've been here a while, you auto-filter all of it. But for someone just walking in? It's chaos. The new-user experience isn't just declining - it's buried under portfolios and follow-for-follow. #TWITTER
English
0
0
0
4
overgeared
overgeared@overgeared2608·
Then come the "I'm a hacker, I'll teach you the secrets of engagement" types. The real secret is that you pay them, and a pile of bots starts following you. Is X ever going to take action against this?
English
1
0
0
5
overgeared
overgeared@overgeared2608·
Has X always been like this, or did I just never notice? I've used Twitter for years - purely to lurk and keep up with what's happening. Then I made a fresh account for my project and only now saw what the platform has actually become.
English
1
0
0
4
overgeared retweetledi
arcis
arcis@getarcis·
If you want the full thesis behind Arcis - what it is, what it does NOT do, and the inside-the-app argument, the launch post is the cleanest place to start. 5-minute read. arcis-website.pages.dev/blog/posts/int…
English
1
3
3
92
overgeared retweetledi
arcis
arcis@getarcis·
What one `app.use(arcis())` line replaces in a typical Express app: helmet express-rate-limit csurf sanitize-html hpp express-mongo-sanitize Five fewer libraries to keep updated. #Cyber_Security #security
English
0
2
3
12
overgeared retweetledi
arcis
arcis@getarcis·
Arcis conformance status: 154/154 tests pass across Node + Python + Go Same input → same verdict in all three SDKs Drift = failed CI = no release Cross-SDK parity is the only metric that matters once a tool ships in multiple languages.
English
0
2
2
13
overgeared retweetledi
arcis
arcis@getarcis·
2026 reality: every app is now three apps. A request app. A model app. A tool app. The WAF protects the request app. Nothing protects the other two. That's the gap Arcis is in.
English
0
2
2
15
overgeared retweetledi
arcis
arcis@getarcis·
The fix for fullwidth XSS bypasses is three lines per language: JS: input.normalize Python: unicodedata.normalize Go: norm.NFKC.String Catches: fullwidth, ligatures, math letterlikes. Skip it and your sanitizer has a permanent backdoor.
arcis tweet media
English
1
2
3
34
overgeared retweetledi
arcis
arcis@getarcis·
Hello world. Open-sourced Arcis. Security middleware that runs inside your web app instead of in front of it. For developers tired of WAFs that block `' OR 1=1` and miss everything else. Node, Python, Go. github.com/Gagancm/arcis
English
2
2
6
65
arcis
arcis@getarcis·
Arcis ships first-party adapters for: Express  Fastify  Hono  Next.js  Koa FastAPI  Django  Litestar  Flask Gin  Echo  Chi  Fiber  net/http One config object. Same defense across all of them. github.com/Gagancm/arcis
arcis tweet media
English
1
3
3
11
overgeared
overgeared@overgeared2608·
@getarcis wait, in-app instead of a reverse proxy? curious how you handle the per-route config overhead...
English
1
0
1
5
Shagun Yadav
Shagun Yadav@CodeAndConsole·
You get a text from ‘Unknown.’ It simply says: ‘Don’t go outside at 7:30 PM.’ What’s your next move?
English
5
1
7
309