直近1週間の更新
2/6 (金)

The Index: Issue #162
Piccalilli - Everything
Drawing connections with CSS anchor positioningAnchor position is not just for tooltips, as Roland shows really well here.Using your design system colors with contrast-color()It's just really good to see CSS being so bloody useful at fixing problems we've been trying to solve for years.We've got a related article with some good options for you too.The too early breakpointIt's so common to see "mobile" views on larger viewports. Ahmad explains the problem well here, with some nice solutions, but
4時間前

X / Twitter OAuth 2.0 is now available for Supabase Auth
Supabase Blog
You can now add "Sign in with X" to your application using the new X / Twitter (OAuth 2.0) provider in Supabase Auth.
9時間前

Claude Codeを使ったSaaSセキュリティチェックの自動化
28
カミナシ エンジニアブログ
コーポレートエンジニアの @sion_cojp です。 この記事では、Claude Code を使って SaaS セキュリティチェックを自動化した取り組みについて紹介します。 SaaSセキュリティチェックとは? 従業員が新しい SaaS を業務で利用したい場合、その SaaS がセキュリティ面で問題ないかを、コーポレートエンジニアが事前にチェックします。 チェック項目の一部を挙げると以下のような内容です。 公的認証資格を取得しているか(SOC など) MFA(多要素認証)/二段階認証に対応しているか 解約後にデータは完全に削除されるか 準拠法・管轄裁判所の確認 また近年では、SaaS に AI…
9時間前

Quoting Karel D'Oosterlinck Simon Willison's Weblog
<blockquote cite="https://twitter.com/kareldoostrlnck/status/2019477361557926281"><p>When I want to quickly implement a one-off experiment in a part of the codebase I am unfamiliar with, I get codex to do extensive due diligence. Codex explores relevant slack channels, reads related discussions, fetches experimental branches from those discussions, and cherry picks useful changes for my experiment. All of this gets summarized in an extensive set of notes, with links back to where ea...
15時間前

Malicious dYdX Packages Published to npm and PyPI After Maintainer Compromise
Socket
Malicious dYdX client packages were published to npm and PyPI after a maintainer compromise, enabling wallet credential theft and remote code execution.
15時間前

Building a C Compiler from Scratch with AI-Driven Development
MoonBit Blog
How Fastcc, a self-hosting ARM64 C compiler, was built from scratch in 10 days with largely autonomous AI-driven development.
16時間前

A Web Performance Analysis Of Consent Management Platforms
DebugBear Blog
An analysis of the most commonly used Consent Management Platforms and their impact on Interaction to Next Paint.
16時間前

Mitchell Hashimoto: My AI Adoption Journey Simon Willison's Weblog
<p><strong><a href="https://mitchellh.com/writing/my-ai-adoption-journey">Mitchell Hashimoto: My AI Adoption Journey</a></strong></p>Some really good and unconventional tips in here for getting to a place with coding agents where they demonstrably improve your workflow and productivity. I particularly liked:</p><ul><li><p><a href="https://mitchellh.com/writing/my-ai-adoption-journey#step-2-reproduce-your-own-work">Reproduce your ...
16時間前

人間は意図、AIは実装:Codexが導く「要件を伝えるだけ」のAI駆動開発ワークフロー
CyberAgent Developers Blog | サイバーエージェント デベロッパーズブログ
はじめに 特に、OpenAIのCodexに代表される「大規模なコードコンテキストを理解するAIモデル ...
16時間前

Why Monorepos are King in the Age of AI
Nx Blog
Monorepo architecture has evolved significantly in the past few years, yet the landscape remains confusing with inconsistent definitions, rapidly changing tooling, and implementation patterns that vary wildly across organizations. Meanwhile, teams adopting AI coding assistants are discovering that modern monorepo tooling is uniquely suited to solve the exact coordination challenges they're now facing. For engineering leaders navigating this rapidly transforming space, understanding the advantage
18時間前

Opus 4.6 and Codex 5.3 Simon Willison's Weblog
<p>Two major new model releases today, within about 15 minutes of each other.</p><p>Anthropic <a href="https://www.anthropic.com/news/claude-opus-4-6">released Opus 4.6</a>. Here's <a href="https://gist.github.com/simonw/a6806ce41b4c721e240a4548ecdbe216">its pelican</a>:</p><p><img alt="Slightly wonky bicycle frame but an excellent pelican, very clear beak and pouch, nice feathers." src="https://static.simonwillison.net/static/2026/opus-4...
19時間前

What’s New in F5 NGINX Gateway Fabric 2.4.0
NGINX Community Blog
We’re excited to announce F5 NGINX Gateway Fabric 2.4.0 has been released. This release represents a major milestone in the Gateway API journey, with the addition of critical production features such as TCP/UDP routing support, Rate Limiting, Session Persistence and many more. The new features will help operators more efficiently and securely deliver AI and modern applications. Summary of changes in this release 2.4.0 contains many new features […]
20時間前

Continuous AI in practice: What developers can automate today with agentic CI
The GitHub Blog
Think of Continuous AI as background agents that operate in your repository for tasks that require reasoning.The post Continuous AI in practice: What developers can automate today with agentic CI appeared first on The GitHub Blog.
1日前

gem.coop Tests Dependency Cooldowns as Package Ecosystems Move to Slow Down Attacks
Socket
gem.coop is testing registry-level dependency cooldowns to limit exposure during the brief window when malicious gems are most likely to spread.
1日前

CSS Bar Charts Using Modern Functions
CSS-Tricks
CSS-only bar charts are one of those things we've tackled a bunch of times in different ways. But how can modern CSS features finally make it not only trivial, but fun?CSS Bar Charts Using Modern Functions originally published on CSS-Tricks, which is part of the DigitalOcean family. You should get the newsletter.
1日前
2/5 (木)

2025 Q4 DDoS threat report: A record-setting 31.4 Tbps attack caps a year of massive DDoS assaults
The Cloudflare Blog
The number of DDoS attacks more than doubled in 2025. The network layer is under particular threat as hyper-volumetric attacks grew 700%.
1日前

The Vercel AI Accelerator is back with $6m in credits
Vercel News
Building an AI business is no small feat. Delivering a great agentic product requires infrastructure that handles deployment, security, and scale automatically, but that's table stakes. Startups also need community support, mentorship, investor connections, platform credits, and visibility. That's why we created the . Last year, we hosted our second cohort of 40 early-stage teams from across the globe. They joined us for six weeks of learning, building, and shipping, hearing from speakers in lea
1日前

Use Claude Opus 4.6 on AI Gateway
Vercel News
Anthropic's latest flagship model, Claude Opus 4.6, is now available on AI Gateway. Built to power agents that handle real-world work, Opus 4.6 excels across the entire development lifecycle. Opus 4.6 is also the first Opus model to support the extended 1M token context window.The model introduces adaptive thinking, a new parameter that lets the model decide when and how much to reason. This approach enables more efficient responses while maintaining quality across programming, analysis, and cre
1日前

The open source design stack
Piccalilli - Everything
FYIScott and Piccalilli are not affiliated with any of the products mentioned in this article. They’re nice tools that we recommend trying out, but we gain nothing from any links or signups. We also haven’t consulted with any of the mentioned products in the process of putting this post together.Design tooling is in a pretty weird place right now. On the one hand, we’ve evolved from the struggle bus days of trying to wrangle Adobe products into doing something useful, and design tools have never
1日前

Web 標準動向 2026年1月版
サイボウズ フロントエンドのフィード
こんにちは! サイボウズ株式会社 フロントエンドエンジニアの mehm8128 (@mehm8128) です。 はじめにサイボウズは 2025 年 4 月より、W3C のメンバーに加入しました。https://blog.cybozu.io/entry/joining-w3c標準化プロセスに関わることができるようになるための最初の一歩として、フロントエンドエンジニアの一部のメンバーは積極的に Web 標準のキャッチアップを行っています。そこで、毎月メンバーが興味を持った Web 標準に関する話題や、実際に標準化プロセスに関わることができた場合にはその報告などを 1 つの記事とし...
1日前

CSS <code>@scope</code>: An Alternative To Naming Conventions And Heavy Abstractions
Articles on Smashing Magazine — For Web Designers And Developers
Prescriptive class name conventions are no longer enough to keep CSS maintainable in a world of increasingly complex interfaces. Can the new `@scope` rule finally give developers the confidence to write CSS that can keep up with modern front ends?
1日前

高トラフィックな分散システムのSLO改善事例
PLAID Engineer Blog - 株式会社プレイド
SLO改善の過程で直面した3つの主要な問題と、それらに対する解決アプローチについて紹介します。
2日前

An Over-The-Top Spoiler Design with the Details Element
Frontend Masters Boost RSS Feed
You can style anything you want on the entire page when any given details element is open or closed.
2日前

Spotlighting The World Factbook as We Bid a Fond Farewell Simon Willison's Weblog
<p><strong><a href="https://www.cia.gov/stories/story/spotlighting-the-world-factbook-as-we-bid-a-fond-farewell/">Spotlighting The World Factbook as We Bid a Fond Farewell</a></strong></p>Somewhat devastating news today from CIA:</p><blockquote><p>One of CIA’s oldest and most recognizable intelligence publications, The World Factbook, has sunset.</p></blockquote><p>There's not even a hint as to <em>why</em> they...
2日前

How 1Password is Evolving its Partner Ecosystem
Blog on 1Password Blog
Identity has become the defining security challenge for organizations navigating SaaS sprawl, AI adoption, and an increasingly distributed workforce.As access expands across applications, devices, and identities, customers need trusted partners who can help translate modern identity strategies into practical, scalable outcomes.At 1Password, partners play a critical role in how customers adopt, deploy, and grow with our company. As 1Password’s suite of solutions continues to evolve, so does the o
2日前

ACT Rules Format 1.1 is a Web Standard (W3C Recommendation)
Web Accessibility Initiative (WAI)
Accessibility Conformance Testing (ACT) Rules Format 1.1 is now a web standard (W3C Recommendation). ACT Rules Format defines a format for writing accessibility test rules. The test rules can be used for developing automated testing tools and manual testing methodologies. For an introduction to ACT Rules, see Accessibility Conformance Testing (ACT) Overview.
2日前

For Review: Cognitive Accessibility Research Modules — First Draft Notes
Web Accessibility Initiative (WAI)
Cognitive Accessibility Research Modules are available as first Draft Notes. The documents cover research on accessibility for people with cognitive and learning disabilities for Voice Systems and Conversational Interfaces, Technology Assisted Indoor Navigation / Wayfinding, Online Safety and Wellbeing (Algorithms and Data), and Supported Decision-Making Online. They address user needs, accessibility issues, directions for solutions, and areas for further research. We particularly seek input on
2日前

For Review: W3C Accessibility Guidelines Evaluation Methodology (WCAG-EM) 2.0 — First Draft Note
Web Accessibility Initiative (WAI)
W3C Accessibility Guidelines Evaluation Methodology (WCAG-EM) 2.0 is available as a first Draft Note. WCAG-EM describes a methodology with a step-by-step process to evaluate how well digital products conform to Web Content Accessibility Guidelines (WCAG) 2. WCAG-EM 1 is specifically for testing websites and web pages. WCAG-EM 2 also applies to apps and other digital products. For an introduction to WCAG-EM and more information about the WCAG-EM 2 draft, see WCAG-EM Overview.
2日前

ABEMAのレートリミットシステム紹介
CyberAgent Developers Blog | サイバーエージェント デベロッパーズブログ
こんにちは。AbemaTV のバックエンドエンジニアのユシンです。本ポストでは、複数のマイクロサービ ...
2日前

Voxtral transcribes at the speed of sound Simon Willison's Weblog
<p><strong><a href="https://mistral.ai/news/voxtral-transcribe-2">Voxtral transcribes at the speed of sound</a></strong></p>Mistral just released Voxtral Transcribe 2 - a family of two new models, one open weights, for transcribing audio to text. This is the latest in their Whisper-like model family, and a sequel to the original Voxtral which they released <a href="https://simonwillison.net/2025/Jul/16/voxtral/">in July 2025</a>.</p><p>...
2日前

Nx 2026 Roadmap: Expanding Agent Autonomy, Improving Performance, Better Polyglot and More
Nx Blog
Explore the Nx 2026 roadmap featuring expanded agent autonomy, self-healing CI evolution, synthetic monorepos, improved task distribution, polyglot expansion, and more.
2日前

Pick your agent: Use Claude and Codex on Agent HQ
The GitHub Blog
Claude by Anthropic and OpenAI Codex are now available in public preview on GitHub and VS Code with a Copilot Pro+ or Copilot Enterprise subscription. Here's what you need to know and how to get started today.The post Pick your agent: Use Claude and Codex on Agent HQ appeared first on The GitHub Blog.
2日前

Should You Vibe Code a Rich Text Editor?
CKEditor Ecosystem Blog
Vibe coding feels fast, but rich text editors are complex systems. Learn why AI-assisted, shortcut-driven RTE builds often fail in production.
2日前
2/4 (水)

Distributing Go binaries like sqlite-scanner through PyPI using go-to-wheel Simon Willison's Weblog
<p>I've been exploring Go for building small, fast and self-contained binary applications recently. I'm enjoying how there's generally one obvious way to do things and the resulting code is boring and readable - and something that LLMs are very competent at writing. The one catch is distribution, but it turns out publishing Go binaries to PyPI means any Go binary can be just a <code>uvx package-name</code> call away.</p><h4 id="sqlite-scanner">sqlite-scanner</h4...
2日前

Build logs now support interactive links
Vercel News
URLs in build logs are now interactive. Navigate directly to internal and external resources without manually copying and pasting. External links open in a new tab.This eliminates any extra steps you may encounter when investigating build issues or following documentation links.Learn more about accessing .build logsRead more
2日前

Parallel's Web Search and tools are live on Vercel
Vercel News
You can now use LLM-optimized web search and other tools all across Vercel.Parallel'sUnlike provider-specific web search tools that only work with certain models, Parallel's web search tool works universally across all providers. This means you can add web search capabilities to any model without changing your implementation.To use through AI SDK, set in .parallel_search: gateway.tools.parallelSearch()toolsParallel web search extracts relevant excerpts from web pages, making it ideal for agentic
2日前

Parallel joins the Vercel Agent Marketplace
Vercel News
is now available on the with native integration support.ParallelVercel Agent MarketplaceParallel provides web tools and agents designed for LLM-powered applications, including Search, Extract, Tasks, FindAll, and Monitoring capabilities. The Vercel integration provides a single API key that works across all Parallel products, with billing handled directly through your Vercel account.For developers building AI features on Vercel, Parallel enables agents to access the open web for tasks like answe
2日前

The Index: Issue #161
Piccalilli - Everything
Here's how Epstein broke the internetThis will make you angry but it's really important for you to understand what has happened here. Not many people understand and explain the impact of 4chan et al quite as well as Ryan does here.The missing middle of Open SourceThe recent situation with Tailwind CSS funding had people asking a lot of the right questions about open source funding again. Nate has some great points here for you too.Standard.siteThe AT protocol stuff seems to be exploding in popul
2日前

Enhanced AI Management and Analytics for Organizations
Company | The JetBrains Blog
Today, we’re introducing the JetBrains Console, which provides enhanced AI management and analytics for organizations, including new capabilities to manage, observe, and control AI usage and costs across teams. AI is no longer an experiment for most development teams. It’s becoming part of the core toolchain. As usage increases, so does the need for clarity. […]
2日前

Why Do Builds Pass Locally but Fail in CI?
Semaphore
Why builds pass locally but fail in CI, with practical fixes for test automation and CI/CD reliability.The post Why Do Builds Pass Locally but Fail in CI? appeared first on Semaphore.
2日前

Super speed, super quality: lessons from the Aptos Network site launch
Evil Martians
Evil Martians make the impossible possible: launching a new Aptos Network website in just one month!
3日前

The Complete Guide To Ecommerce SEO in 2026
DebugBear Blog
Learn how to optimize your ecommerce website for search engines in 2026. This guide covers keyword research, site architecture, technical SEO, Core Web Vitals, and strategies for AI-powered search.
3日前

カミナシ Tech Night #1 - AWS re:Invent 2025 Recap Specialを開催しました!
カミナシ エンジニアブログ
2026年1月28日に「カミナシ Tech Night #1 AWS re:Invent 2025 Recap Special」を開催!社内外から約15名が参加し、ALB/NLBの最新機能やキャッシュ戦略、Iceberg v3など、re:Inventの最新情報を共有しました。
3日前

Introducing Deno Sandbox Simon Willison's Weblog
<p><strong><a href="https://deno.com/blog/introducing-deno-sandbox">Introducing Deno Sandbox</a></strong></p>Here's a new hosted sandbox product from the Deno team. It's actually unrelated to Deno itself - this is part of their Deno Deploy SaaS platform. As such, you don't even need to use JavaScript to access it - you can create and execute code in a hosted sandbox using their <a href="https://pypi.org/project/deno-sandbox/">deno-sandbox</a> Pyth...
3日前

End to End Autonomous AI Agent Workflows with Nx
Nx Blog
Learn how Nx bridges the gap between local AI agents and CI, enabling fully autonomous development workflows with the ci-monitor skill and Self-Healing CI.
3日前

What the fastest-growing tools reveal about how software is being built
The GitHub Blog
What languages are growing fastest, and why? What about the projects that people are interested in the most? Where are new developers cutting their teeth? Let’s take a look at Octoverse data to find out.The post What the fastest-growing tools reveal about how software is being built appeared first on The GitHub Blog.
3日前

No Hassle Visual Code Theming: Publishing an Extension
CSS-Tricks
You’d think that publishing a VS Code extension is an easy process, but it’s not. You have to publish your theme in at least two places.No Hassle Visual Code Theming: Publishing an Extension originally published on CSS-Tricks, which is part of the DigitalOcean family. You should get the newsletter.
3日前

Convert & Compress
Frontend Masters Boost RSS Feed
My go-to local app image optimizer has long been ImageOptim. It’s Mac-only (and free), but they suggest alternatives for other platforms. I reach for ImageOptim usually when I want to optimize a whole bunch of images in a batch. For one-offs, you can’t do much better than Squoosh, a great progressive web app (PWA). I […]
3日前

KARTE Message 配信基盤で起きたIP枯渇とその対処
PLAID Engineer Blog - 株式会社プレイド
GKEにおけるPodに割り振るIPの仕組みの簡単な説明と、KARTE Messageの配信基盤で起きたPodのIP枯渇問題とそれにどのように対処したか。
3日前
2/3 (火)

Improve global upload performance with R2 Local Uploads
The Cloudflare Blog
Local Uploads on R2 reduces request duration for uploads by up to 75%. It writes object data to a nearby location and asynchronously copies it to your bucket, all while data is available immediately.
3日前

Debugging with AI: Can It Replace an Experienced Developer?
Developer Way: improve your technical skills with in-depth explanations, practical advices and useful tips and tricks.
Can AI actually debug complex React/Next.js issues? I tested it on three real bugs, investigated the root cause myself and wrote down the results.
3日前

Making agent-friendly pages with content negotiation
Vercel News
Agents browse the web, but they read differently than humans. They don't need CSS, client-side JavaScript, or images. All of that markup fills up their context window and consumes tokens without adding useful information. What agents need is clean, structured text.That's why we've updated our blog and changelog pages to make markdown accessible to agents while still delivering a full HTML and CSS experience to human readers. This works through content negotiation, an HTTP mechanism where the ser
3日前

The Vercel OSS Bug Bounty program is now available
Vercel News
Security is foundational to everything we build at Vercel. Our open source projects power millions of applications across the web, from small side projects to demanding production workloads at Fortune 500 companies. That responsibility drives us to keep investing in security for the platform and the broader ecosystem.Today, we're opening the Vercel Open Source Software (OSS) bug bounty program to the public on . We're inviting security researchers everywhere to find vulnerabilities, challenge as
3日前

Introducing the new v0
Vercel News
Since v0 became generally available in 2024, more than 4 million people have used it to turn their ideas into apps in minutes. v0 has helped people get promotions, win more clients, and work more closely with developers.AI lowered the barrier to writing code. Now we're raising the bar for shipping it.Today, v0 evolves vibe coding from novelty to business critical. Built for production apps and agents, this release includes enterprise-grade security and integrations teams can use to ship real sof
3日前

AI Gateway and one-click deploys now available on TRAE
Vercel News
ByteDance's coding agent now integrates both and direct Vercel deployments, bringing unified AI access and instant production shipping to over 1.6 million monthly active developers. Teams can now access hundreds of models through a single API key and deploy applications directly to Vercel from the TRAE interface.TRAEAI GatewayAI Gateway provides unified access to models from Anthropic, OpenAI, Google, xAI, DeepSeek, Z.AI, MiniMax, Moonshot AI, and more without managing multiple provider accounts
3日前

Turbo build machines by default for new Pro projects
Vercel News
Turbo build machines are now the default for all new Pro projects and projects upgrading from Hobby to the Pro plan.Turbo build machines were introduced in October for all paid plans, delivering 30vCPUs and 60GB of memory for faster build performance.Teams adopting Turbo build machines have seen significant build time improvements:Learn more in or customize your build machine in .the documentationsettingsRead moreup to 30% faster for builds under 2 minutesup to 50% faster for builds that take 2-
3日前

Copy visual context to agents from Vercel Toolbar
Vercel News
Vercel Toolbar now includes "Copy for Agents" functionality that captures complete visual context from comments, providing coding agents with the technical details they need to understand deployment feedback across your application.When teams copy comments using this feature, agents receive structured context including page URL and viewport dimensions, selected text and node path information, React component tree details, and the original comment text. This helps agents understand exactly where
3日前

Workflow 4.1 Beta: Event-sourced architecture
Vercel News
changes how workflows track state internally. Instead of updating records in place, every state change is now stored as an event, and current state is reconstructed by replaying the log. This release also adds support for provider-executed tools and higher throughput.Workflow 4.1 Beta is a persistence pattern where state changes are stored as a sequence of events rather than by updating records in place. Instead of storing "this run is completed," the system stores "run_created, then run_started
3日前

Zero-configuration support for Koa
Vercel News
Vercel now supports applications, an expressive HTTP middleware framework to make web applications and APIs more enjoyable to write, with zero-configuration.KoaBackends on Vercel use with by default. This means your Koa app will automatically scale up and down based on traffic, and you only pay for what you use.Fluid computeActive CPU pricingVisit the for more details.Koa on Vercel documentationRead more
3日前

Deno Deploy is Generally Available
Deno
Deno Deploy is now generally available, plus some highlights of new features and tools.
3日前

Introducing Deno Sandbox
Deno
Instant Linux microVMs with defense-in-depth security for running untrusted code.
3日前

Some CSS only contrast options until contrast-color() is Baseline widely available
Piccalilli - Everything
For as long as I’ve been making things on the web, getting a foreground color to “just work” with any given background color has been a persistent wish of mine.Initially I thought this would be helpful with prototyping because I could choose a single color for the background, and the foreground color could automatically update to become at least readable. This reduces the number of decisions I need to make and allows for faster development.You can probably imagine how this might be helpful in pr
3日前

Combobox vs. Multiselect vs. Listbox: How To Choose The Right One
Articles on Smashing Magazine — For Web Designers And Developers
Combobox vs. Multi-Select vs. Listbox vs. Dual Listbox? How they are different, what purpose they serve, and how to choose the right one. Brought to you by Design Patterns For AI Interfaces, **friendly video courses on UX** and design patterns by Vitaly.
3日前

BKND joins Supabase
Supabase Blog
Dennis Senn, creator of BKND, is joining Supabase to build a Lite offering for agentic workloads.
3日前

January sponsors-only newsletter is out Simon Willison's Weblog
<p>I just sent the January edition of my <a href="https://github.com/sponsors/simonw/">sponsors-only monthly newsletter</a>. If you are a sponsor (or if you start a sponsorship now) you can <a href="https://github.com/simonw-private/monthly/blob/main/2026-01-january.md">access it here</a>. In the newsletter for January:</p><ul><li>LLM predictions for 2026</li><li>Coding agents get even more attention</li><li>Clawdbot/Moltbo...
3日前

Quoting Brandon Sanderson Simon Willison's Weblog
<blockquote cite="https://www.youtube.com/watch?v=mb3uK-_QkOo&amp;t=832s"><p>This is the difference between Data and a large language model, at least the ones operating right now. Data created art because he wanted to grow. He wanted to become something. He wanted to understand. Art is the means by which we become what we want to be. [...]</p><p>The book, the painting, the film script is not the only art. It's important, but in a way it's a receipt. It's a diploma. T...
4日前

KubernetesのPod終了時に発生するエラーの調査とリリース戦略の改善
CyberAgent Developers Blog | サイバーエージェント デベロッパーズブログ
はじめに みなさんこんにちは、東京大学大学院工学系研究科修士1年の海野 大輔です。 2026年1月の ...
4日前

Release Notes for Safari Technology Preview 236
WebKit
Safari Technology Preview Release 236 is now available for download for macOS Tahoe and macOS Sequoia.
4日前

How to build secure agent swarms that power production-grade autonomous systems
Blog on 1Password Blog
If one autonomous agent is useful, it is natural to ask whether many agents working together could be dramatically more effective. Over the last few weeks, the AI community has been testing this idea in practice by running large numbers of agents in coordinated swarms. The early results are clear: swarms can be far more capable than individual agents, but only under the right conditions. Two distinct patterns have emerged. There are controlled swarms, such as Cursor’s web browser demo, that oper
4日前

So, your developers use AI now—here's what to know
Evil Martians
Research-backed insights into what AI-assisted developers can actually deliver: when productivity improves, when it doesn’t, and how setting realistic expectations means best quality results.
4日前

Performance-Optimized Video Embeds with Zero JavaScript
1
Frontend Masters Boost RSS Feed
Putting a YouTube video inside a closed details element means it won't load until that details element is opened. We can use that.
4日前

BuriKaigi 2026 にスポンサー参加しました
CyberAgent Developers Blog | サイバーエージェント デベロッパーズブログ
はじめに こんにちは、株式会社 AI Shift でフロントエンドエンジニアをしている久保 (@he ...
4日前

Introducing the Codex app Simon Willison's Weblog
<p><strong><a href="https://openai.com/index/introducing-the-codex-app/">Introducing the Codex app</a></strong></p>OpenAI just released a new macOS app for their Codex coding agent. I've had a few days of preview access - it's a solid app that provides a nice UI over the capabilities of the Codex CLI agent and adds some interesting new features, most notably first-class support for <a href="https://developers.openai.com/codex/skills">Skills</a>, a...
4日前

Open VSX Begins Implementing Pre-Publish Security Checks After Repeated Supply Chain Incidents
Socket
Following multiple malicious extension incidents, Open VSX outlines new safeguards designed to catch risky uploads earlier.
4日前

How to maximize GitHub Copilot’s agentic capabilities
The GitHub Blog
A senior engineer's guide to architecting and extending Copilot's real-world applications.The post How to maximize GitHub Copilot’s agentic capabilities appeared first on The GitHub Blog.
4日前

A Social Network for A.I. Bots Only. No Humans Allowed. Simon Willison's Weblog
<p><strong><a href="https://www.nytimes.com/2026/02/02/technology/moltbook-ai-social-media.html?unlocked_article_code=1.JFA.kBCd.hUw-s4vvfswK&amp;smid=url-share">A Social Network for A.I. Bots Only. No Humans Allowed.</a></strong></p>I talked to Cade Metz for this New York Times piece on OpenClaw and Moltbook. Cade reached out after seeing my <a href="https://simonwillison.net/2026/Jan/30/moltbook/">blog post about that</a> from the other day....
4日前
2/2 (月)

No-Hassle Visual Studio Code Theming: Building an Extension
CSS-Tricks
I've always thought that creating a VS Code theme was a lot of work. But lo and behold, it took less than six hours to get it working, then a day or two to polish up my final tweaks.No-Hassle Visual Studio Code Theming: Building an Extension originally published on CSS-Tricks, which is part of the DigitalOcean family. You should get the newsletter.
4日前

Tradeoffs in Engineering Identity
Playful Programming's Atom Feed
Finding your engineering identity is a journey of balancing tradeoffs. Let's explore the key tradeoffs that shape your path.
4日前

Python 3.13 and 3.14 are now available
Vercel News
Builds and Functions now support Python 3.13 and Python 3.14 alongside the previously supported Python 3.12. Projects without a specified Python version continue using Python 3.12 by default.The default will switch to Python 3.14 in the coming months. To continue using Python 3.12, specify an upper bound in your project manifest ( or ) as shown in the examples below.pyproject.tomlPipfileSee the to learn more about Python support on Vercel.Python documentationRead more
4日前

インストールする VS Code 拡張機能を減らした
mizdra's blog
かつては VS Code 拡張機能をインストールしまくっていて 65 個あったけど、最近はできるだけインストールしないようにしてる。数が多いとセキュリティリスク高まるので。 今インストールしてるのは以下の 24 個: alefragnani.bookmarks anthropic.claude-code dbaeumer.vscode-eslint esbenp.prettier-vscode github.codespaces github.copilot github.copilot-chat github.vscode-pull-request-github golang.go hedi…
4日前

Bad At Css Keith Cirkel
The wonderful people at nn1.dev invited me to talk at theirJanuary meetup. Below is the video of this:Powered by youtube embed video generatorThe slides are also available. But below is the blog-posty version:Bad At CSSI'm bad at CSS. It even says so on my GitHub profile. It hasn't always saidthat, as recently as 2024 I was just bad at JavaScript and HTML. It has takenme the past couple of years to get to the point where I can confidently say thatI'm bad at CSS.My journey to being bad at CSS sta
4日前

From $0 to $100 million in DonutSMP over the weekend
Vjeux
I've been trying a lot of different ways of playing Minecraft over the years, one that I have never tried is playing on a big multiplayer server with a custom currency. I watched a few videos to understand the concept and then ended up finding a different way to get from $0 to $100 million: […]
4日前

Gemini議事録からGitHub Issue作成を自動化する仕組み
PLAID Engineer Blog - 株式会社プレイド
ミーティングの議事録からGitHub Issueを自動作成する仕組みを紹介します。Google MeetのGemini機能で生成された議事録を元に、Claude CodeやSub Agentを活用してタスクを抽出・Issue化するフローや、実装上の技術的な工夫点について解説しています。
5日前

From magic to malware: How OpenClaw's agent skills become an attack surface
Blog on 1Password Blog
A few days ago, I published a post about why OpenClaw feels like a portal to the future, and why that future is scary in a very specific way.The short version: agent gateways that act like OpenClaw are powerful because they have real access to your files, your tools, your browser, your terminals, and often a long-term “memory” file that captures how you think and what you’re building. That combination is exactly what modern infostealers are designed to exploit.This post is the uncomfortable, “an
5日前

1Password and 60 Day Hustle: cybersecurity for small businesses
Blog on 1Password Blog
Small businesses can’t afford to wait when it comes to securing their business. Still, cybersecurity can be complex, and any entrepreneur will tell you that there’s already a lot to keep track of when starting and running a company. For small businesses dealing with limited (or nonexistent) IT and security teams, it’s important that their cybersecurity tools are both simple to use and efficient.That’s why 1Password has partnered with 60 Day Hustle, a show that helps entrepreneurs turn their busi
5日前

Solving the unsanctioned SaaS problem
Blog on 1Password Blog
Unsanctioned SaaS and shadow IT are problems every organization deals with. When procuring a new SaaS tool is a few clicks, an email, and a credit card away, it’s never been easier for unsanctioned apps to increase across the business. Often, this is outside IT’s line of sight, outside security controls, and outside standard provisioning/deprovisioning processes. This isn’t driven by bad intent. Employees and business units are bringing new tools into the business to increase their productivity,
5日前

Arazzo: The Missing Piece for AI-Assisted API Consumption
Marmelab Blog
Arazzo is the new OpenAPI Initiative specification for describing API workflows. Discover how it makes API integration clearer and more reliable.
5日前

What is JPEG XL: do we really need another image format?
DebugBear Blog
Learn what JPEG XL is, how it compares to other image formats like AVIF and WebP, and whether you should use it on your website.
5日前

TIL: Running OpenClaw in Docker Simon Willison's Weblog
<p><strong><a href="https://til.simonwillison.net/llms/openclaw-docker">TIL: Running OpenClaw in Docker</a></strong></p>I've been running <a href="https://openclaw.ai/">OpenClaw</a> using Docker on my Mac. Here are the first in my ongoing notes on how I set that up and the commands I'm using to administer it.</p><ul><li><a href="https://til.simonwillison.net/llms/openclaw-docker#use-their-docker-compose-configuration">Use t...
5日前
2/1 (日)

MoonBit の宣言 UI ライブラリ Luna を使ってみる
azukiazusa のテックブログ2
Luna は MoonBit と JavaScript を使用して Web アプリケーションのユーザーインターフェースを構築するための宣言型 UI ライブラリです。この記事では、Luna UI と MoonBit を使用してシンプルなカウンターアプリケーションを作成する方法を紹介します。
5日前

MoonBit で RESTful API サーバーを構築する
azukiazusa のテックブログ2
MoonBit は、WebAssembly や JavaScript にコンパイルできる新しいプログラミング言語です。この記事では、MoonBit を使用してシンプルな RESTful API サーバーを作成する方法を紹介します。
5日前

What’s new in Svelte: February 2026
Svelte blog
This month brings a few new features to Svelte and SvelteKit and quite a few new libraries from around the community.Also, in case you missed it last month, the Svelte maintainers released patches for 5 vulnerabilities across the Svelte ecosystem. So be sure you’re up to date by reading the blog post, CVEs affecting the Svelte ecosystem.Now, without further ado, let’s dive in...What’s new in Svelte & SvelteKitTo support newer browsers that allow it, you can now customize <select> eleme...
6日前

Quoting Andrej Karpathy Simon Willison's Weblog
<blockquote cite="https://twitter.com/karpathy/status/2017703360393318587"><p>Originally in 2019, GPT-2 was trained by OpenAI on 32 TPU v3 chips for 168 hours (7 days), with $8/hour/TPUv3 back then, for a total cost of approx. $43K. It achieves 0.256525 CORE score, which is an ensemble metric introduced in the DCLM paper over 22 evaluations like ARC/MMLU/etc.</p><p>As of the last few improvements merged into nanochat (many of them originating in modded-nanogpt repo), I c...
6日前

GlassWorm Loader Hits Open VSX via Developer Account Compromise
Socket
Threat actors compromised four oorzc Open VSX extensions with more than 22,000 downloads, pushing malicious versions that install a staged loader, evade Russian-locale systems, pull C2 from Solana memos, and steal macOS credentials and wallets.
6日前
1/31 (土)

Short Month, Big Ideas (February 2026 Wallpapers Edition)
Articles on Smashing Magazine — For Web Designers And Developers
Let’s make the most of the shortest month of the year with a new collection of desktop wallpapers that are sure to bring a smile to your face — and maybe spark your creativity, too. All of them were designed with love by the community for the community and can be downloaded for free. Happy February!
6日前

Singing the gospel of collective efficacy Simon Willison's Weblog
<p><strong><a href="https://interconnected.org/home/2026/01/30/efficacy">Singing the gospel of collective efficacy</a></strong></p>Lovely piece from Matt Webb about how you can "just do things" to help make your community better for everyone:</p><blockquote><p>Similarly we all love when the swifts visit (beautiful birds), so somebody started a group to get swift nest boxes made and installed collectively, then applied for subsidy funding, th...
7日前

Inside Lodash’s Security Reset and Maintenance Reboot
Socket
Lodash 4.17.23 marks a security reset, with maintainers rebuilding governance and infrastructure to support long-term, sustainable maintenance.
7日前

What's new in Astro - January 2026
The Astro Blog
January 2026 - Astro joins Cloudflare, Astro v6 beta is released, and more!
7日前

Notes from January 2026 Evan Hahn (dot com)
Happy new year! Here are some of my notes from the first month of 2026.New job at Ghost!I started a new job as a Staff Engineer at Ghost this month. According to our homepage, Ghost is “for professional publishers to create, share, and grow a business around their content.” I’m looking forward to building software for independent journalists.This is also the third time in a row I’ve chosen to work for a nonprofit. It’s a pattern now: nonprofits are my default choice of where to work.Things I did
7日前

Quoting Steve Yegge Simon Willison's Weblog
<blockquote cite="https://steve-yegge.medium.com/software-survival-3-0-97a2a6255f7b"><p>Getting agents using Beads requires much less prompting, because Beads now has 4 months of “Desire Paths” design, which I’ve talked about before. Beads has evolved a very complex command-line interface, with 100+ subcommands, each with many sub-subcommands, aliases, alternate syntaxes, and other affordances.</p><p>The complicated Beads CLI isn’t for humans; it’s for agents. What I did...
7日前

React’s ViewTransition Element
Frontend Masters Boost RSS Feed
The Canary version of React has a special component for ViewTransitions. Does it help?
7日前

Google’s AI advantage: why crawler separation is the only path to a fair Internet
The Cloudflare Blog
Google's dual-purpose crawler creates an unfair AI advantage. To protect publishers and foster competition, the UK’s Competition and Markets Authority must mandate crawler separation for search and AI.
7日前

Moltbook is the most interesting place on the internet right now Simon Willison's Weblog
<p>The hottest project in AI right now is Clawdbot, <a href="https://x.com/openclaw/status/2016058924403753024">renamed to Moltbot</a>, <a href="https://openclaw.ai/blog/introducing-openclaw">renamed to OpenClaw</a>. It's an open source implementation of the digital personal assistant pattern, built by Peter Steinberger to integrate with the messaging system of your choice. It's two months old, has over 114,000 stars <a href="https://github.com/openclaw/openclaw...
7日前

















