rotating env vars - automatically converts non-sensitive to sensitive... guardrails to prevent mistakes: - checks if dev value matches prod/preview - educates that revoking is still needed - bunch of heuristics on key name/value for mistakes collab w William Boutshow more

JohnPhamous
11,399 просмотров • 4 месяцев назад
I added a new agent to the AI hedge... fund. The Ben Graham agent. Uses Graham's investing principles: 1 • calculates net-net working capital 2 • computes Graham Number 3 • checks earnings stability 4 • analyzes financial strength 5 • demands margin of safety Ben Graham is the godfather of value investing. His most famous student is Warren Buffett. This is one of our most disciplined agents - it only says "buy" when a stock is really cheap. Here is how it works: 1. Net-net analysis: Checks if a stock is so cheap that its liquid assets alone are worth more than its market price. 2. Graham Number: A special formula that tells us if a stock price is a bargain based on earnings and book value. 3. Earnings Check: Makes sure the company has stable, growing profits over many years. 4. Financial Health: Looks for companies with low debt and strong cash positions. 5. Margin of Safety: Only buys when there's a big discount to protect against mistakes. What agent should we add next?show more

virat
66,284 просмотров • 1 год назад
representing ui as a state machine makes it easier... to manually and automatically testshow more

JohnPhamous
124,511 просмотров • 2 месяцев назад
improving nested menus interactions uses a "prediction cone" to... prevent accidentally selecting items when moving a pointer to the nested menu details belowshow more

JohnPhamous
170,474 просмотров • 3 лет назад
visual hash shader - signed distance function determines shape... - key hashes to color, breathing & flickershow more

JohnPhamous
27,008 просмотров • 6 месяцев назад
I had a good meeting with U.S. Special Presidential... Envoy, General Keith Kellogg Keith Kellogg. Ukraine is deeply grateful to the United States for its support, and we value that President Trump President Donald J. Trump is so determined to achieve real peace. It is very important to realize all the results—political, defense, and economic—that were achieved during our meeting together with European leaders in Washington. Undoubtedly, it was a successful Summit, a demonstration of true unity between Europe and America. Ukraine, as always, is uniting the world. We value the United States’ readiness to be part of the security architecture for Ukraine, and our teams are actively working on shaping it. We expect that the key foundations of security will be defined shortly. We discussed how we can influence the Russians, compel them to engage in real negotiations, and end the war. Sanctions, tariffs—everything must remain on the agenda. We are ready to engage in a format of leaders. This is the format needed to resolve the key issues. Now, the same readiness is needed from Moscow. Military cooperation is important for both Ukraine and the United States, and there are two strong opportunities—an agreement on arms procurement and an agreement on drones that could significantly strengthen our arsenals. We are maintaining momentum in our work within PURL. This is an important instrument for procuring American equipment funded by partners, and we are now actively working on engaging additional countries. And, of course, the humanitarian track. The return of all abducted children. We strongly hope that America, President and the First Lady of the United States First Lady Melania Trump will continue to make personal efforts to bring back all children illegally abducted by Russia. Thank you!show more

Volodymyr Zelenskyy / Володимир Зеленський
171,139 просмотров • 1 год назад
In 2025, the AgentFlayer exploit highlighted a new category... of risk in AI systems. It was not a traditional breach involving stolen credentials or broken encryption. Instead, it demonstrated how an autonomous AI agent could be manipulated into executing unintended actions by processing malicious instructions embedded inside content it automatically processes. The incident did not expose a flaw in one specific integration. It revealed a structural weakness in how many modern AI agents are built. Today’s agents are no longer passive language models. They read documents automatically, scan emails, connect to SaaS tools, access cloud storage, and execute actions across multiple systems. To be useful, they are granted meaningful permissions. That capability creates value, but it also expands the attack surface. Most agent environments operate in a trusted, plaintext execution model. Data is encrypted at rest and in transit, but it is typically decrypted during inference so the model can process it. That runtime visibility is where potential risk lies. In a zero-click scenario like AgentFlayer, an attacker can embed hidden instructions inside a document that the AI processes automatically. Because the agent may have access to connected systems such as Google Drive, Slack, or GitHub, it can potentially be influenced to retrieve sensitive information or perform unintended actions. The user does not need to click a malicious link or approve a suspicious request. Therefore, the core issue is that during execution, the system may have access to sensitive data and broad privileges, meaning whoever controls the execution environment ultimately controls access to that data. Now consider a different architectural approach. If a system is designed so that data remains protected during execution, the risk profile changes. On Nesa, privacy is enforced at the execution layer through Equivariant Encryption. Computation can occur on encrypted data, reducing the visibility surface during runtime. Sensitive inputs and models do not need to be exposed in plain text to infrastructure operators for inference to occur. This does not eliminate prompt injection, logic manipulation, or tool misuse. Encryption alone cannot prevent an agent from being instructed to take an unintended action if it has been granted that permission. What it does do is materially reduce confidentiality risk. By limiting access to readable sensitive data during execution and reducing unilateral visibility at the infrastructure layer, the potential blast radius of a successful manipulation attempt is constrained. As AI agents become more autonomous and embedded into enterprise workflows, security must move deeper into architecture. The goal is not to claim invulnerability. It is to reduce trust concentration and contain systemic exposure when failures occur. AgentFlayer was not simply a one-off exploit. It was a reminder that in autonomous systems, execution-layer design determines how risk propagates.show more

Nesa
17,038 просмотров • 5 месяцев назад
r u an engineer that likes finance? San Francisco... Compute is hiring an engineer to build the platform that allows traders trade gpu computeshow more

JohnPhamous
33,679 просмотров • 1 год назад
CĦRISTMAS STOCKINGs 2024 Launchpad is LIVE: Are you ready... for the sweetest FREEMINT & onboarding event of the year?! 🧦🍬 We are beyond excited to announce that the value of the gifts inside the 830 stockings is estimated to be worth around 170,000 $HBAR!!! Check out the launchpad and set your reminders for Christmas Day! 🎄⏳ Comment below if you still don´t have a WL NFT, as we will be giving out some on this post over the coming days. ĦO ĦO ĦO Hedera 🎅show more

CANDY | ℏ/acc
23,744 просмотров • 1 год назад
It is spectacularly easy to get shadowbanned on X... One wrong reply and your reputation can go up in flames Luckily there are a few steps you can take to reduce your odds of getting banned by 10x 🔶First step: Don't reply from notifications Notifications are a minefield because hidden, spammy replies are shown to you as normal replies It's never worth replying from here. You risk replying to low reputation accounts without even knowing it Just reply normally from the posts so you know what's marked as spam 🔶Second step: turn off sensitive content in your settings Engaging with sensitive content could hurt your reputation score Little do you know, but a ton of content that’s not actually sensitive, gets marked as sensitive Turn off sensitive content in your settings, then become shocked when you see how much innocent content is marked as sensitive (tutorial video below) 🔶Third Step: Check for following/follower ratio before hitting reply Easy check to take before every reply This is brought up in the code 100 different times as a reputation destroyer Make sure to hover over people’s name before replying and check for their ratio 60% followers to following is the ratio cut off point 🔶Fourth Step: Don’t feed the trolls There are 100+ labels for toxic behavior in the code Engaging with anyone with these labels hurts your reputation For some of these labels they can be applied just for “insults” Best not to engage with any trolls (also good for your mental health) 🔶Fifth Step: Get the blue checkmark The easiest step of them all It’s coded into the algo that if you have the blue checkmark you can’t be marked as spam Yes it costs money, but if you have any serious interest of growing on this platform, it’s a must have 🔶🔶🔶🔶🔶 I've said this before, but it absolutely stinks you have to take all these steps just to get some reach At times, it can be like walking in a minefield It doesn't exactly make a social media platform feel very 'social' I have high confidence Elon is working to fix this. He's mentioned it before. But in the meantime, take these steps and be careful. It's worth it if you care about being seen on this platform. I'm 100% confident brighter days are ahead. Let me know below if any of these tips helped and what other steps you take to avoid getting banned.show more

Alex Finn
300,115 просмотров • 2 лет назад
Introducing my new OSS framework: OhSnap provides really simple... way to record and reproduce the data your users saw when encountering an issue (bug/crash), integration in your project should take a few minutes at most. Majority of bugs are related to data you have to deal with and often times we have to work with frequently changing data via network API's. Even if you have access to multiple environments (prod/staging/dev) it's still going to be PITA to reproduce a lot of bugs your user saw, since we often get to them a long time after the bug occured... OhSnap allows you to easily record any data your app downloads, pack it and put it on server so that you can replay it on your device later on, while connected to debugger and save hours of development time trying to figure out what exactly they experienced! Here's a demo of 2 app instances running, and me manipulating what server reply I'll be getting, there is 1 line of code needed to record and reply this data (outside of just setting up your framework). I built this so that I can show dev tool building process for the members of which I encourage you to join if you want to put your engineering efficiency at a different level😉show more

Krzysztof Zabłocki
30,484 просмотров • 2 лет назад
dog is animated using a sprite sheet - single... network request for 57kb image to get animation frames - no 3rd party dependenciesshow more

JohnPhamous
243,418 просмотров • 7 месяцев назад
▒░ DR3AM REDPILL VISION ░▒ We are launching a... new feature for holders only. Photon memescope but for pre-bond Virtual agents. Something we have heard across multiple groups is the want to have more visibility into agents before they have red pilled. With DR3AM REDPILL VISION, you get a dashboard on pre-bond agents to: 『•』see market stats 『•』swap into directly from dashboard 『•』get insights from DR3AM AI We're excited to launch this as it hits on several key points. It brings value to holders today, builds on our long term vision as graduated agents will be automatically added to registry, will help feed insights to DR3AM DAO, and increases our moat since gathering this data isn't straightforward (we had to decompile Virtual contracts raw bytecode to get here). We will be exposing access to the DR3AM Validators (early DR3AM supporters) first, with broader holder access planned for next week. A minimum amount of $DREAM will be required, if you hold $FDREAM that minimum amount is lowered. More details TBA.show more

devdeckard
44,387 просмотров • 1 год назад
What bothers me most about ashley biden, is that... as a little girl, she was subjected to showering with her dad, Joe biden, she then goes on to write that she is ashamed that she was sexually aroused and felt shame because she knew it was wrong. Then she confesses that she was probably molested, which contributed to her hypersexual behavior. It is sad that so many people would read those same words, turn and ignore them, and turn it into a reason to support the child molester that is the head of their party, while giving no value on her innocence. This little girl, through no fault of her own, was sexually abused by this man, and millions deny her pain. At this point, if any sexually abuse survivor is voting for biden still, you have traded your right to claim to be the victim anymore. You are now the same evil you once opposed.show more

Captain Salty
311,928 просмотров • 2 лет назад
"Give value to receive value." We believe that those... who deeply contribute to the community deserve recognition. ✨ In appreciation of their invaluable contributions over recent months, we extended exclusive invitations to a select group of Stellars. These individuals joined our founders Kiat, JJ Lin, and icunucmi for a cosy Fireside chat at 33Club last week. 👉🏻 Team Skrambled7, champions of our InterStellar Quest: JT criticalz 🐉$MON Jun @Chrislhz (Tanguy Girault 🇰🇷🇫🇷 Jo | Joanne Newar we missed you! 🥲) 👉🏻 Our top referrers, who brought in the most Stellars: Collin Seow CFTe tescomilk @ddskiwi Karl 👉🏻 Sophia, who spoke on a panel that we organised with Financial Women Association (FWA) 👉🏻 Bella, one of our key coordinators for Vietnam Blockchain Week They were treated to insights into the founders' medium and long-term visions for ARC, got some alpha on merch 👀, and engaged in candid discussions to share and refine ideas to make ARC even better. If you missed out this time, don't fret—just make sure your contribution game is stronk! Who knows? Next time, it might be YOU sipping tea (or something stronger 😉) with our founders.show more

ARC
202,555 просмотров • 2 лет назад
🇮🇷🇮🇱| A little more to understand... My opinion: The... war may end in a few days or last a lot longer—all depending on whether or not the US joins Israel. Israel is not able to fight against Iran for much longer; its interceptors have a certain capability threshold, and reports already suggest it is rationing its interceptor missiles, and we've seen how 12-17 interceptors were launched, yet Iranian missiles still made an impact. It all comes down to whether the US is willing to go to war with Iran or not; it's likely they will if you consider Trump's administrative behavior since he took office. But honestly, if they are smart, they will not. - A little about Iran's missile situation: Israel says it's conducting operations in northwestern and western Iran to prevent the reactivation of missile bases in Tabriz, Kermanshah, and Khorramabad. A significant portion of the Israeli Air Force is now focused on these 3 sites to prevent further missile launches from those locations. This suggests that the sites they claim they destroyed did not suffer strategic damage, and the destroyed hangars were of minimal value. As a result, Israel continuously carries out operations and remains engaged to prevent Iran from reactivating its capabilities in the west. If these 3 regions are abandoned, Israel will move on to target other strategic sites. These 3 missile bases are among Iran's key assets. The missiles are intact and untouched, it's the launchers that are affected, and they can easily be reactivated, but it's difficult under continuous attacks. Other missile bases in the south remain untouched and have so far not been used, as they are probably being reserved for strikes against the US. Missile launches are mainly launched from the center and north of Iran, some from the western regions as well. The reason for limited and isolated launches these past few days has several explanations, mainly that Iran is testing to recognize new patterns everytime a serious attack is carried out, as Israel continuously changes its defensive behavior to prevent Iran's intelligence from learning it; thus, isolated launches, followed by a bigger, deadlier, and more accurate attack with 30 launches as we saw today.show more

Arya - آریا
55,523 просмотров • 1 год назад
🇺🇸🇷🇺🇺🇦 President Donald Trump argued that Russia came close... to capturing Kyiv in the opening days of the war, claiming the offensive was derailed by a critical tactical mistake and difficult terrain. 🗣️ "Russian tanks were heading toward Kyiv, but they got stuck in the mud. One general decided to take the column through muddy terrain instead of staying on the highway, where they were moving very well. If that hadn't happened, it would have been over." Trump also highlighted the technological superiority of American weapons, stressing the need to protect their most sensitive capabilities. 🗣️ "We have the best weapons in the world, and we have to be careful not to give away the technological secrets behind them. They can't be copied." Drawing a comparison with the private sector, he added: 🗣️ "It's a bit like NVIDIA. They have a chip that simply can't be copied." Trump's remarks emphasize both the importance of battlefield decisions during the opening phase of the war and the strategic value Washington places on safeguarding advanced military technology. As the United States continues supplying sophisticated systems to Ukraine, protecting the technological edge of weapons such as the Patriot remains a key consideration alongside continued military assistance. See the latest updates with us: Visionershow more

Visioner
212,235 просмотров • 22 дней назад