steve caldwell 🎉

544 posts

steve caldwell 🎉 banner
steve caldwell 🎉

steve caldwell 🎉

@stevecaldwell

🇺🇸 dad. founder @hellogumbox @sealedflow. building on the web since '99. @heycrawdad keeps me in line.

Louisville, KY Katılım Kasım 2021
839 Takip Edilen1.2K Takipçiler
Sabitlenmiş Tweet
steve caldwell 🎉
steve caldwell 🎉@stevecaldwell·
One of my holiday goals was to get my sh*t together and build myself a proper AI assistant. I spend my day bouncing between multiple Claude Code / Codex sessions and sometimes too many meetings. I've got three kids, two businesses, one wife, and virtually zero time to build systems that make my life better. The data is all there, I just need to bring it together and make sense of it. This week, I stumbled upon this awesome agent workflow writeup by @steipete where he mentions what he's building at clawdis.ai , and I was intrigued. This is a very appealing AI assistant. Seems like exactly what I'm looking for. So I asked Claude Code to set up Clawdis on a headless Mac Mini on my LAN. After I pointed it to some credentials, my Clawdis ("Crawdad" 🦞) quite literally did the rest, setting itself up, all via WhatsApp. I gave it access to my 5 email accounts, calendars, iMessages (via BlueBubbles server), and Granola transcripts. This stuff rarely works the first time. It was awesome. Then, earlier today, we had a real Jarvis moment. I was in my car waiting on my wife to emerge from the store, so I sent Crawdad a voice message. I hadn't configured OpenAI API keys for transcribing my voice, so I asked it to try to install and use whisper.cpp (via WhatsApp), and it *just worked*, and will use this method going forward. Excited to build out more tooling here. I think this is a super important project to watch - seems like it could be the foundation of a unicorn tbh. Thanks for all of your work here Peter - feels like a weight has been lifted for real! 2026 is gonna be lit 🔥
steve caldwell 🎉 tweet media
Peter Steinberger 🦞@steipete

📢 Confession: I ship code I never read. Here's my 2025 workflow. steipete.me/posts/2025/shi…

English
57
90
1.8K
302.2K
steve caldwell 🎉
steve caldwell 🎉@stevecaldwell·
I've built several tech businesses. Some solo and some with other humans. You can't convince me that building solo is better. There's no substitute for being in the trenches with high agency humans who: 1) complement your skills 2) you trust completely 3) build with AI
English
0
0
2
38
Jacob Klug
Jacob Klug@Jacobsklug·
I fully switched to the Claude Cowork train, over OpenClaw. Time for you to do the same.
English
107
2
244
38K
steve caldwell 🎉 retweetledi
OpenClaw🦞
OpenClaw🦞@openclaw·
OpenClaw 2026.3.22 🦞 🏪 ClawHub plugin marketplace 🤖 MiniMax M2.7, GPT-5.4-mini/nano + per-agent reasoning 💬 /btw side questions 🏖️ OpenShell + SSH sandboxes 🌐 Exa, Tavily, Firecrawl search This release is so big it needs its own table of contents. github.com/openclaw/openc…
English
495
519
5.3K
1.3M
Tejas
Tejas@suptejas·
Introducing Dimension. The AI coworker that never sleeps. Set it up in 2 minutes and it gets to work. Morning briefings, meeting prep, email drafts, action items, and more. Get started at dimension.dev
English
85
113
1.8K
259.4K
Garry Tan
Garry Tan@garrytan·
It's my birthday and on my birthday I want to recognize all my haters. Haters do the best marketing. Love your haters.
GIF
English
418
40
2.2K
516.5K
David Herrmann
David Herrmann@herrmanndigital·
How do you all keep up with all the AI shit? Like it's insane.
English
250
5
369
46.8K
Paul Klein IV
Paul Klein IV@pk_iv·
If this is legit - it means that every SOC-2 report from their customers will need to be redone (which will take months). Very thankful to be a Vanta customer right now.
Ryan@ohryansbelt

Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown: > 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in > Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions > All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client > Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months > The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done > Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author > Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper" > When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams > Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved > When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance > Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor

English
64
41
1.9K
304.2K
steve caldwell 🎉
steve caldwell 🎉@stevecaldwell·
Claude Cowork + Dispatch are really cool, but they can't replace a power user's OpenClaw setup natively. With Claude, you can connect exactly one Google Workspace account at a time. I have 6 connected to @crawdad via gog. WhatsApp, Slack, Telegram? Nope.
English
1
0
0
171
steve caldwell 🎉
steve caldwell 🎉@stevecaldwell·
The year was 2005. Starkville, MS. We booked Afroman to play our party. He and his manager walk in with a gallon ziplock bag full of some absolute dank. He rolled the most perfect blunt I've ever seen. I was gonna go to class, but then I got high. Congrats on the W @ogafroman 🤜
GIF
English
0
0
0
34
geoff
geoff@GeoffreyHuntley·
this is my favourite prompt of all time: “how could this be better?” reply with yours and why it rocks!
English
75
16
124
14.9K
steve caldwell 🎉
steve caldwell 🎉@stevecaldwell·
Did you know that you can turn any Claude Cowork conversation into a skill in Claude Desktop? Just click the arrow next to the conversation title, click "Turn into skill" and send the message Claude pre-fills. DRY (Don't repeat yourself) works for non-devs too. Give it a shot.
steve caldwell 🎉 tweet mediasteve caldwell 🎉 tweet media
English
0
0
0
74
Prabhakar Kudva
Prabhakar Kudva@prabhakarkudva·
I see some people using LLMs for buy/sell stock advice on their portfolios. Who is going to tell them how LLMs really work ? They are just next word prediction machines that have no ability to think and are spitting out results from their training, which is pretty much random output in this context. What’s scarier is how confident the LLMs sound making the case for you. The giveaway for these investors should be that if you want it will give you an equally strongly worded opposite recommendation in the very same conversation :) PS: LLMs are very very useful for research.
English
19
11
136
13.2K
Tom Goodwin
Tom Goodwin@tomfgoodwin·
I’m surely being stupid. But if AI is rather unconstrained by expertise or capacity or to some extent speed Why do we need to divide tasks or departments to 9 agents ( the marketing agent, the optimization agent etc ) to each do one thing. And then another agent to manage the swarm. Cant one agent just be doing it all you know. It seems very skeuomorphic. Will we have HR agents to make sure the agent agents are being looked after ? A office canteen manager agent to feed the agents ? Seems daft
English
197
3
190
25.4K
Ryan Carson
Ryan Carson@ryancarson·
100% of dev is going to be done in sandboxes in the cloud, controlled by kanban boards. Trust me, I love my local machine and gorgeous mac apps, but all of it is just a terrible form factor for running a team of agents effectively.
English
131
39
659
203.6K