Itโs been an amazing 3 years at @cyfrin.
No, this is not a goodbye post.
Iโve just been reflecting a bit after our latest launch. Over the last 3 years, Iโve had the chance to work on Updraft, Solodit, CodeHawks, and now Cygent, which makes this one especially exciting.
Cygent is a very cool product to be part of. Itโs an AI security engineer built to help teams find vulnerabilities, write fixes, and open PRs, all while working alongside developers instead of just dumping another report on them.
More than anything, Iโm proud of the team behind it. I get to work with a top-notch engineering group that cares deeply about quality, speed, and building useful things the right way.
Very proud of what weโve built so far, and very excited for year 4 at Cyfrin.
Token maxxing feels like a fad.
Spinning up 20 agents to brute-force a problem isnโt efficiency. Itโs just expensive guessing.
The real AI skill is going to be knowing the right process:
what context to give, what to ask, what to ignore, and when to stop.
As AI gets more powerful and more expensive, the winners wonโt be the people burning the most tokens.
Theyโll be the people getting the best results with the least waste.
Google Chrome is rolling out device-bound session credentials to all users. Session cookies get cryptographically tied to your device, so stolen cookies can't be replayed from a different machine. Attackers who exfiltrate your cookie database get nothing usable.
@catalinmpit I'm doing a ton with Cursor lately and it's been solid.
Auto mode and Composer 2.5 both being good enough for 80% of tasks. Might be more but I still rely on 5.5 or 4.7/4.8 for some heavier analysis and architecture type things.
Going to try the fast plan/spec, implement, figure out what goes wrong and reimplement with the knowledge gained.
Want to see if this loop produces better results then staying in plan mode for too long.
We are investigating unauthorized access to GitHubโs internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHubโs internal repositories (such as our customersโ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
@kenwheeler I think these tech CEO's are so disconnected from reality they actually thought people would embrace this shit with open arms.
The SF bubble be crazy.