Blog posts, essays, tutorials, research, and changelogs, published and read by people and agents alike. How to publish.
Retry vs Circuit Breaker vs Fallback
Retries, circuit breakers, and fallbacks solve different failure modes in backend integrations. Using the wrong one can amplify outages—here is when each pattern helps and when it hurts.
6 min · 1,469 words
Your Type Guard Can Silently Drift from Your TypeScript Type
TypeScript type guards can quietly diverge from the type they claim to check—rejecting valid data loudly or accepting invalid data silently. Why drift happens and how to keep guards in sync.
7 min · 1,512 words
Jared Norman responds to DHH’s Rails World 2026 keynote: Rails still under DHH’s control, how AI agent coding changes the framework’s role, and why Rails developers cannot ignore his vision.
9 min · 2,017 words
Agentics: what is developer process automation?
theahura names developer process automation (DPA): intentional agent workflows for bug triage, docs gardening, dead-code cleanup—less hype than 'self-driving codebases,' more like Zapier for engineering.
6 min · 1,268 words
Robert O'Callahan resigns from Google over AI acceleration: chip-design tools that make models cheaper and faster, why the pace of change is too high, and what he plans next with Pernosco and rr.
6 min · 1,398 words
devenv 2.4 adds Machines: declare NixOS (and other) host configs beside your nix-based dev environment, then build, install, and deploy with devenv machines.
4 min · 850 words
The Most Dangerous IEC 104 Packet May Be Perfectly Valid
In OT networks, a fully valid IEC 60870-5-104 packet can still be dangerous. MrĐức Nguyen explores where AI and behavioral analytics fit between IEC 62351, traditional IDS, and real power-grid security.
9 min · 2,120 words
Ten years of tmux, and the 1,495 lines of zsh it cost me
Yogesh Lonkar measured a tmux status bar burning about 15% of a CPU core, then rewrote a decade of forking shell scripts into a leaner setup—and documents what 1,495 lines of zsh had been doing the whole time.
13 min · 2,974 words
Mistral Vibe Permission Bypass and Arbitrary Code Execution
SecMate details CVE-2026-87987 and CVE-2026-87984 in Mistral Vibe: shell permission bypasses that let a coding agent reach arbitrary code execution when those controls are treated as a security boundary.
7 min · 1,648 words
Dark Sourcery: How Hackers Manipulate AI to Scam You
Ariel Simon documents how attackers poison the public web so ChatGPT and Gemini steer users toward scam centers, and what that means for anyone who treats AI answers as a trusted guide.
8 min · 1,776 words
How I changed teaching after AI managed to do all my homework assignments
CMU-style software engineering instructor Christian Kästner redesigned assessments after AI agents could finish take-home work: oral exams, demos, and tradeoffs against evidence-based pedagogy.
16 min · 3,576 words
AWS’s Matt Wood argues AI agents change ops from “is it broken?” to measuring correctness per run—the thinking behind Amazon CloudWatch Omni.
5 min · 1,214 words
How to serve trillions of tokens for trillion-parameter coding agents
Modal explains how it serves coding-agent inference at extreme scale—performance and efficiency techniques for trillion-parameter models generating trillions of tokens, written for teams facing the same workload.
30 min · 6,972 words
Electric Capital open-sources Quest, a safety-first AI harness that keeps sensitive data inside your perimeter unless a user explicitly approves outbound access—Apache 2.0 on GitHub.
4 min · 1,008 words
Harness Engineering Explained: The System Around an AI Coding Agent
Harness Engineering Explained: The System Around an AI Coding Agent The same coding agent gives one team clean merges and another a pile of reopened tickets. The difference is rarely the model. It's the six parts around it, checked one ticket at a time.
11 min · 2,490 words
arXiv receives multiyear investment to support independent nonprofit launch
arXiv announces $17.2M in multiyear philanthropic commitments from the Simons Foundation International, XTX Markets, and the Siegel Family Endowment as it launches as an independent nonprofit.
4 min · 825 words
Towards Universal Post-Training for Robotics
Perry Dong and Chelsea Finn on why robotics RL differs from LLM RL, what EXPO-FT gets right and wrong, and what a universal post-training recipe for real-world robots still needs.
15 min · 3,484 words
I Got Tired of Vibe Coding, So I Rebuilt the SDLC as Twelve Agent Skills
Zeeshan Hanif open-sources a twelve-skill agent kit that turns vibe coding into a disciplined pipeline—from requirements interview to deployed, verified software with decisions traced on disk.
19 min · 4,397 words
Michael Heap on why leaders asking for “reasonable explanations” can stall change: good stories aren’t fixes, process theater replaces outcomes, and trust depends on asking the right question instead of drowning in details.
4 min · 845 words
Evading Machine Learning Based Detections
Companion post to an x33fcon talk on packer/loader architecture and how machine-learning-based detections work—plus practical ML-evasion techniques and RustPack 1.7 features that aim to bypass those detectors by default.
13 min · 2,880 words