JSer.infoの情報源となるサイトをまとめたサイトです。
全てのサイトを一つにまとめたRSSを配信しています

Slackに貼り付けると更新を受け取ることができます

直近1週間の更新

5/7 (木)

記事のアイキャッチ画像
Animating Focus with View Transitions ブログのファビコン Frontend Masters Boost RSS Feed
Let's try a fresh take on animating focus rings around a page. Flying focus, as it were. Only instead of measuring where elements are ourselves, we'll let View Transitions figure it out.
1時間前
記事のアイキャッチ画像
Azure Container Apps Jobsで非同期ジョブ型アプリケーションをデプロイする
はてなブックマークアイコン 1
ブログのファビコン CyberAgent Developers Blog | サイバーエージェント デベロッパーズブログ
はじめに こんにちは。MIU AI戦略本部でAIエンジニアをしている田中宏樹です。 LLMを活用した ...
4時間前
記事のアイキャッチ画像
Validating agentic behavior when “correct” isn’t deterministic ブログのファビコン The GitHub Blog
How to build the “Trust Layer” for Github Copilot Coding Agents without brittle scripts or black-box judgements by using dominatory analysis.The post Validating agentic behavior when “correct” isn’t deterministic appeared first on The GitHub Blog.
6時間前
記事のアイキャッチ画像
5 Malicious NuGet Packages Impersonate Chinese UI Libraries to Distribute Crypto Wallet and Credential Stealer ブログのファビコン Socket
Five malicious NuGet packages impersonate Chinese .NET libraries to deploy a stealer targeting browser credentials, crypto wallets, SSH keys, and local files.
6時間前
記事のアイキャッチ画像
Google’s Prompt API ブログのファビコン CSS-Tricks
Mat Marquis on Google pulling the web standards equivalent of U2 album marketing:As a Chrome user, you’ll have received Gemini Nano in the form of a 4GB transfer recently; no permission asked or required. If you remove it, …Google’s Prompt API originally handwritten and published with love on CSS-Tricks. You should really get the newsletter as well.
7時間前
記事のアイキャッチ画像
When DNSSEC goes wrong: how we responded to the .de TLD outage
はてなブックマークアイコン 1
ブログのファビコン The Cloudflare Blog
On May 5, 2026, DENIC published broken DNSSEC signatures for the .de TLD, making millions of domains unreachable. Here's what 1.1.1.1 saw, how serve stale cushioned the impact, and how we restored resolution.
10時間前
記事のアイキャッチ画像
Live blog: Code w/ Claude 2026 Simon Willison's Weblog
<p>I'm at Anthropic's Code w/ Claude event today. Here's my live blog of the morning keynote sessions.</p> <p>Tags: <a href="https://simonwillison.net/tags/ai">ai</a>, <a href="https://simonwillison.net/tags/generative-ai">generative-ai</a>, <a href="https://simonwillison.net/tags/llms">llms</a>, <a href="https://simonwillison.net/tags/anthropic">anthropic</a>, <a href="https://simonwillison.net/tags/claude">claude</a&gt...
11時間前

5/6 (水)

記事のアイキャッチ画像
Vibe coding and agentic engineering are getting closer than I'd like Simon Willison's Weblog
<p>I recently talked with Joseph Ruscio about AI coding tools for Heavybit's High Leverage podcast: <a href="https://www.heavybit.com/library/podcasts/high-leverage/ep-9-the-ai-coding-paradigm-shift-with-simon-willison">Ep. #9, The AI Coding Paradigm Shift with Simon Willison</a>. Here are some of my highlights, including my disturbing realization that vibe coding and agentic engineering have started to converge in my own work.</p><p>One thing I really enjoy about ...
13時間前
記事のアイキャッチ画像
Making Zigzag CSS Layouts With a Grid + Transform Trick ブログのファビコン CSS-Tricks
Most grid layouts sit in neat rows, perfectly aligned, like soldiers in formation. But sometimes you want something with more rhythm like, say, a zigzag pattern. Here's how to do it with CSS Grid.Making Zigzag CSS Layouts With a Grid + Transform Trick originally handwritten and published with love on CSS-Tricks. You should really get the newsletter as well.
13時間前
記事のアイキャッチ画像
Introducing the Mindful Design Toolkit with even more free lessons ブログのファビコン Piccalilli - Everything
The Mindful Design Toolkit is a collection of free, open source templates, workshops, and resources, built to empower your design journey. To coincide with the launch, we’ve also opened up over two hours of free lessons from the Mindful Design course.The toolkitFor a long time, open source projects and packages have given developers a wealth of resources to learn, improve, or simply make our lives easier. While there are some fantastic open source design tools out there, when it comes to the act
15時間前
記事のアイキャッチ画像
The Architecture Of Local-First Web Development ブログのファビコン Articles on Smashing Magazine — For Web Designers And Developers
An honest perspective on building local-first web apps in 2026, written for developers who’ve been doing this long enough to be skeptical of silver bullets.
17時間前
記事のアイキャッチ画像
Introducing @supabase/server ブログのファビコン Supabase Blog
Stateless auth, RLS-scoped clients, and CORS on the server, without the boilerplate.
20時間前
記事のアイキャッチ画像
兄弟要素のインデックスを返す CSS 関数 sibling-index() ブログのファビコン azukiazusa のテックブログ2
`sibling-index()` は要素の兄弟要素の中でのインデックスを返します。`sibling-index()` 関数により取得したインデックスを使用することにより、スタッガー(時間差)アニメーションや、色相を段階的に変えるといった、兄弟要素の位置に基づいたスタイリングが可能になります。これまでは JavaScript を使用して実装する必要があったような効果も、純粋な CSS で実現できるようになります。
1日前
記事のアイキャッチ画像
From React to native web with nanotags: a migration that saved 100 KB ブログのファビコン Evil Martians
Most marketing sites ship a SPA framework just to toggle a sidebar. Here's how we migrated an Astro site from React and Ark UI to native Web Components: 100 KB less JavaScript, no functionality lost, and a tiny library called nanotags that makes Custom Elements enjoyable to write.
1日前
記事のアイキャッチ画像
A Brand New Remix ブログのファビコン Remix Blog
The thinking and intentionality behind our latest brand evolution, website, and what it says about the future of Remix.
1日前
記事のアイキャッチ画像
Why security makes or breaks M&As, with Matt O’Leary ブログのファビコン Blog on 1Password Blog
Listen to this episode on Apple PodcastsnullListen nowListen to this episode on SpotifynullListen nowSecurity is tied to business operations in many (often unappreciated) ways, but the connection is rarely more visible or consequential than during an acquisition or partnership. In those deals, a company stakes its reputation and finances on another company, and a lapse in security can throw the whole thing into chaos.That’s the subject of this episode of Chasing Entropy, in which Dave Lewis talk
1日前
記事のアイキャッチ画像
The 10 enterprise features every B2B SaaS needs (and how to ship them fast) ブログのファビコン WorkOS Blog
The 2026 guide to SSO, SCIM, MCP, audit logs, RBAC, and the rest of the B2B SaaS enterprise readiness checklist.
1日前
記事のアイキャッチ画像
The best providers for MCP server authentication in 2026 ブログのファビコン WorkOS Blog
A practical comparison of the leading MCP authentication providers across OAuth 2.1 support, enterprise identity, and integration paths.
1日前
記事のアイキャッチ画像
The self-driving codebase: Building Horizon at WorkOS ブログのファビコン WorkOS Blog
A detailed glimpse at Project Horizon: an internal code factory at WorkOS.
1日前
記事のアイキャッチ画像
Using safe-area-inset to build mobile-safe layouts ブログのファビコン Polypane Blog
Modern phones are not simple rectangles. They have rounded corners, camera cutouts, dynamic islands, and home indicators that double as…
1日前
記事のアイキャッチ画像
Auto-add Git committers to your team ブログのファビコン Vercel News
Pro teams can now choose how Git committers to private repositories are added to their Vercel team. Choose your approval preference in .team settingsLearn more about and .collaboration settingstroubleshooting project collaborationRead more: non-team committers with Vercel accounts are automatically added to your team and their deployments proceed immediately. Added members count toward your team seats at standard Pro pricing.Auto Approval: deployments are blocked until an owner approves the new
1日前
記事のアイキャッチ画像
Secure Marketplace credentials with Production-only access ブログのファビコン Vercel News
You can now secure native integration resources by restricting where they can be used. Setting a resource to removes non-production access and protects credentials as , so secret values are no longer readable from the dashboard or CLI.Production onlysensitive environment variablesFrom the integration resource , select and save. We recommend that you rotate the secrets of the integration resource after saving.SettingsAllowed Environments → Production onlyOnce applied:Reverting this setting requir
1日前
記事のアイキャッチ画像
Why I don’t chain everything in JavaScript anymore ブログのファビコン Frontend Masters Boost RSS Feed
Matt Smith makes a lot of good points in his article about no longer chaining things in JavaScript. Just those first two code samples in the post say a lot, but stick around for all the samples and learn a little somethin’. To me, it’s the inevitability that I’m going to need to log something between the […]
1日前
記事のアイキャッチ画像
datasette-referrer-policy 0.1 Simon Willison's Weblog
<p><strong>Release:</strong> <a href="https://github.com/datasette/datasette-referrer-policy/releases/tag/0.1">datasette-referrer-policy 0.1</a></p> <p>The OpenStreetMap tiles on the Datasette <a href="https://datasette.io/global-power-plants/global-power-plants">global-power-plants demo</a> weren't displaying correctly. This turned out to be caused by two bugs.</p><p>The first is that the CAPTCHA <a href="https://github.com/s...
1日前
記事のアイキャッチ画像
Our AI started a cafe in Stockholm Simon Willison's Weblog
<p><strong><a href="https://andonlabs.com/blog/ai-cafe-stockholm">Our AI started a cafe in Stockholm</a></strong></p>Andon Labs previously <a href="https://andonlabs.com/blog/andon-market-launch">started an AI-run retail store</a> in San Francisco. Now they're running a similar experiment in Stockholm, Sweden, only this time it's a cafe.</p><p>These experiments are interesting, and often throw out amusing anecdotes:</p><blockq...
1日前
記事のアイキャッチ画像
Trustworthy JavaScript for the Open Web Mozilla Hacks – the Web developer blog
The open web is a critical platform for applications that handle highly sensitive data, from private communications to financial transactions and medical records. Traditionally, servers are trusted to deliver the appropriate code and resources for their web applications to browsers, who then provide a secure and isolated environment for their execution. In some circumstances, this […]The post Trustworthy JavaScript for the Open Web appeared first on Mozilla Hacks - the Web developer blog.
1日前

5/5 (火)

記事のアイキャッチ画像
Welcome to Maintainer Month: Celebrating the people behind the code ブログのファビコン The GitHub Blog
What maintainers are telling us, what we've shipped, and how to celebrate the people behind open source.The post Welcome to Maintainer Month: Celebrating the people behind the code appeared first on The GitHub Blog.
2日前
記事のアイキャッチ画像
Rethinking The Experience Of System Tools ブログのファビコン Articles on Smashing Magazine — For Web Designers And Developers
Design always starts with function — function shapes form. But if that function can’t be made completely invisible and people still have to interact with it, it inevitably becomes part of their experience. In this article, Kyrylo Levashov shares four common software design assumptions.
2日前
記事のアイキャッチ画像
Query observability metrics using the Vercel CLI ブログのファビコン Vercel News
You can now access Observability Plus metrics in the Vercel CLI. Query observability data for any Vercel team or project using the new command. Coding agents can also leverage this new command to better analyze the performance, reliability, or security of applications on Vercel, as well as debug issues.vercel metricsThis feature is available in public beta for all teams with Observability Plus. about .Learn morevercel metricsRead more
2日前
記事のアイキャッチ画像
New in Chrome 148 ブログのファビコン developer.chrome.com: Blog
CSS name-only container queries, lazy-loading for video and audio, and the Prompt API.
2日前
記事のアイキャッチ画像
What's new in DevTools (Chrome 148) ブログのファビコン developer.chrome.com: Blog
Full-page accessibility tree by default, ad provenance tooltips, enhanced debugging for Speculation Rules, and major updates for DevTools for agents.
2日前
記事のアイキャッチ画像
Realtime or ETL? How to choose the right tool ブログのファビコン Supabase Blog
Both Supabase Realtime and Supabase ETL read changes from your Postgres database using logical replication. But they solve very different problems. Here is how to pick the right one.
2日前
記事のアイキャッチ画像
How KIKO Milano scales for Black Friday ブログのファビコン Vercel News
KIKO Milano on Vercel:Environments without the bottleneckShipping faster without the operational taxNo more performance variability during traffic spikesEliminated 3 weeks of Black Friday infrastructure prep75% decrease in app build timesWent from minimal releases to deploying multiple times per dayManual scaling window: Black Friday prep began 2–3 weeks ahead of the event, then had to be unwound after the traffic spike passed.Infrastructure configuration: The infra team manually adjusted AWS EC
2日前
記事のアイキャッチ画像
datasette-llm 0.1a7 Simon Willison's Weblog
<p><strong>Release:</strong> <a href="https://github.com/datasette/datasette-llm/releases/tag/0.1a7">datasette-llm 0.1a7</a></p> <blockquote><ul><li>Mechanism for <a href="https://github.com/datasette/datasette-llm/blob/main/README.md#configuration">configuring default options</a> for specific models.</li></ul></blockquote><p>Part of Datasette's evolving support mechanism for plugins that use LLMs. It's no...
2日前
記事のアイキャッチ画像
llm-echo 0.5a0 Simon Willison's Weblog
<p><strong>Release:</strong> <a href="https://github.com/simonw/llm-echo/releases/tag/0.5a0">llm-echo 0.5a0</a></p> <blockquote><ul><li>New <code>-o thinking 1</code> option to help test against <a href="https://llm.datasette.io/en/latest/changelog.html#a0-2026-04-28">LLM 0.32a0</a> and higher.</li></ul></blockquote><p>This plugin provides a fake model called "echo" for LLM which doesn't run an...
2日前
記事のアイキャッチ画像
Secretlint v13.0.0リリース: .gitignore済みをデフォルトで無視、Tailscale/Stripe/Cloudflareの検出に対応 ブログのファビコン Web Scratch
ソースコードや設定ファイルに含まれるAPIトークンやパスワードなどの機密情報を見つけるSecretlintのv13.0.0をリリースしました。Release v13.0.0 · secretlint/secretlintこのバージョンの主な変更点は次の3つです。ファイル探索時に.gitignoreをデフォルトで尊重するように変更(Breaking Change)グロブメタ文字を含むパスが実在する場合はリテラルとして扱うように変更Tailscale/Stripeの検出ルールを新規追加、CloudflareをcanaryからrecommendへPromoteBreaking Change: .gitignoreをデフォルトで尊重v13.0.0では、ファイル探索時に.gitignoreの内容をデフォルトで尊重するようになりました。ripgrepと同じ挙動で、ネストされた.gitignoreファイルもサブディレクトリへカスケードして適用されます。深い階層のネガティブルール(!)で上位の判定を上書きできます。feat!: respect .gitignore by default via @se
2日前
記事のアイキャッチ画像
Quoting John Gruber Simon Willison's Weblog
<blockquote cite="https://daringfireball.net/2026/05/y_combinators_stake_in_openai"><p>So it’s well known that Y Combinator owns <em>some</em> stake in OpenAI. But how big is that stake? This seems like devilishly difficult information to obtain. I asked around and a little birdie who knows several OpenAI investors came back with an answer: Y Combinator owns about 0.6 percent of OpenAI. At OpenAI’s current <a href="https://openai.com/index/accelerating-the-next-phase-...
2日前
記事のアイキャッチ画像
React End-to-End Testing with Playwright (workshop) ブログのファビコン Epic Web Dev
Master Playwright end-to-end testing: setup, authentication (basic, 2FA, passkeys), mocking, fixtures, and debugging with UI mode and Trace Viewer.
2日前
記事のアイキャッチ画像
Investor Update – April 2026 ブログのファビコン Val Town Blog
April had 8% revenue growth. New focus: Claude Code + Val Town MCP
2日前
記事のアイキャッチ画像
From 0 signal to 128 cold signups: product validation on a $2K budget ブログのファビコン Evil Martians
A story of validating product demand on a $2K budget with 128 cold-traffic signups, an A/B winner at 95% confidence, and a sequenced playbook founders can run themselves.
2日前
記事のアイキャッチ画像
Import, autofill, organize: What's new in 1Password this quarter ブログのファビコン Blog on 1Password Blog
A password manager should make everyday tasks feel simple. Whether that's:Saving a new passwordSigning in on your phoneFinding the right itemMoving your data from another password managerWe’ve made a set of updates across 1Password in our latest release to improve exactly these moments. Let's get into it!A direct way to move your credentials into 1PasswordSwitching password managers hasn’t always felt straightforward. Exporting sensitive data into files, moving them yourself, and importing them
2日前
記事のアイキャッチ画像
Building authentication in React Router applications: The complete guide for 2026 ブログのファビコン WorkOS Blog
Authentication in React Router v7 happens in loaders, not useEffect. A complete guide to server-side sessions, protected routes, and enterprise SSO.
2日前
記事のアイキャッチ画像
Building an MCP server from a REST API ブログのファビコン WorkOS Blog
A hands-on guide to implementing an MCP server in Python: tools, resources, prompts, transports, and authentication, with a full worked example.
2日前
記事のアイキャッチ画像
Granite 4.1 3B SVG Pelican Gallery Simon Willison's Weblog
<p><strong><a href="https://simonw.github.io/granite-4.1-3b-gguf-pelicans/">Granite 4.1 3B SVG Pelican Gallery</a></strong></p>IBM released their <a href="https://research.ibm.com/blog/granite-4-1-ai-foundation-models">Granite 4.1 family</a> of LLMs a few days ago. They're Apache 2.0 licensed and come in 3B, 8B and 30B sizes.</p><p><a href="https://huggingface.co/blog/ibm-granite/granite-4-1">Granite 4.1 LLMs: How They’re Built&l...
2日前
記事のアイキャッチ画像
Quoting Andy Masley Simon Willison's Weblog
<blockquote cite="https://blog.andymasley.com/p/data-center-land-use-issues-are-fake"><p>[...] Between 2000 and 2024, farmers sold in total a Colorado-sized chunk of land all on their own, 77 times all land on data center property in 2028, and grew more food than ever on what was left. None of this caused any problems for US food access.</p><p>And then, in the middle of all this, a farmer in Loudoun County sells a few acres of mediocre hay field to a hyperscaler for ten ...
2日前
記事のアイキャッチ画像
April 2026 newsletter Simon Willison's Weblog
<p>I just sent out the April edition of my <a href="https://github.com/sponsors/simonw/">sponsors-only monthly newsletter</a>. If you are a sponsor (or if you start a sponsorship now) you can <a href="https://github.com/simonw-private/monthly/blob/main/2026-04-april.md">access it here</a>.</p><p>In this month's newsletter:</p><ul><li>Opus 4.7 and GPT-5.5, both with price increases</li><li>Claude Mythos and LLM security rese...
2日前
記事のアイキャッチ画像
pnpm 11 Adds Supply Chain Protection Defaults for Minimum Release Age and Exotic Subdependencies ブログのファビコン Socket
pnpm 11 turns on a 1-day Minimum Release Age and blocks exotic subdeps by default, adding safeguards against fast-moving supply chain attacks.
2日前
記事のアイキャッチ画像
TRE Python binding — ReDoS robustness demo Simon Willison's Weblog
<p><strong>Research:</strong> <a href="https://github.com/simonw/research/tree/main/tre-python-binding#readme">TRE Python binding — ReDoS robustness demo</a></p> <p>If it's <a href="https://simonwillison.net/2026/May/4/redis-array/">good enough for antirez</a> to add to Redis I figured Ville Laurikari's <a href="https://github.com/laurikari/tre/">TRE</a> regular expression engine was worth exploring in a little more detail.</p...
2日前
記事のアイキャッチ画像
Shai-Hulud Worm Pivots to Multi-Cloud: [email protected] Hijacked — 361,000 Weekly Downloads, AWS, GCP, and Azure Credentials Now in Scope ブログのファビコン Step Security Blog
Twenty-nine hours after [email protected] and @cap-js/[email protected] were compromised by the Shai-Hulud worm, a third major npm package has fallen: [email protected], the official Node.js SDK for the Intercom customer messaging platform, with 361,510 weekly downloads — more than the two yesterday’s compromised packages combined. The malicious version was published today at 14:41 UTC via a hijacked GitHub Actions OIDC publishing pipeline, confirming the worm is actively propagating through CI/CD infra
2日前
記事のアイキャッチ画像
lightning: Obfuscated JavaScript Credential Stealer Bundled in PyPI Wheel ブログのファビコン Step Security Blog
On April 30, 2026, a supply chain compromise was identified in the lightning PyPI package — versions 2.6.2 and 2.6.3. The project’s GitHub account shows signs of compromise, with issues reporting the attack closed rapidly by suspicious responses.
2日前
記事のアイキャッチ画像
A Mini Shai-Hulud Has Appeared: Obfuscated Bun Runtime Payloads Hit SAP-Related npm Packages ブログのファビコン Step Security Blog
StepSecurity has detected a new npm supply chain attack campaign using preinstall hooks to download the Bun JavaScript runtime and execute an 11 MB obfuscated payload. At least two SAP-ecosystem packages are confirmed compromised so far.
2日前
記事のアイキャッチ画像
elementary-data Compromised on PyPI and GHCR: Forged Release Pushed via GitHub Actions Script Injection ブログのファビコン Step Security Blog
A malicious version of elementary-data (0.23.3) was published to PyPI and is, at the time of writing, still listed as the latest release. The same release run also pushed a multi-arch container image to GitHub Container Registry at ghcr.io/elementary-data/elementary, tagged both 0.23.3 and latest.
2日前
記事のアイキャッチ画像
Bitwarden CLI Hijacked on npm: Bun-Staged Credential Stealer Targets Developers, GitHub Actions, and AI Tools ブログのファビコン Step Security Blog
@bitwarden/[email protected] — the official command-line interface for the Bitwarden password manager — was found compromised on npm. A malicious preinstall hook silently bootstraps the Bun JavaScript runtime and launches a 9.7 MB obfuscated credential stealer that targets developer secrets, GitHub Actions environments, and — explicitly — AI coding tool configurations including ~/.claude.json and MCP server configs. All stolen data is encrypted with AES-256-GCM and exfiltrated to audit.checkmarx.cx,
2日前
記事のアイキャッチ画像
CanisterSprawl: pgserve Compromised on npm: Malicious Versions Harvest Credentials and Exfiltrate to a Decentralized ICP Canister ブログのファビコン Step Security Blog
On April 21, 2026, malicious versions of pgserve were published to npm. pgserve is an embedded PostgreSQL server for development — zero config, auto-provisioned databases, designed to be dropped into any Node.js project. The compromised versions (1.1.11, 1.1.12, and 1.1.13) inject a 1,143-line credential-harvesting script that runs via postinstall on every npm install.
2日前
記事のアイキャッチ画像
Announcing Dependabot Configuration Enhancements: Cooldown and Group Support ブログのファビコン Step Security Blog
StepSecurity adds cooldown and group support for Dependabot configuration, giving teams control over update frequency and PR batching across npm, pip, Docker, and GitHub Actions. Reduce alert fatigue. Merge more patches. Strengthen your supply chain.
2日前
記事のアイキャッチ画像
Redis Array Playground Simon Willison's Weblog
<p><strong>Tool:</strong> <a href="https://tools.simonwillison.net/redis-array">Redis Array Playground</a></p> <p>Salvatore Sanfilippo submitted <a href="https://github.com/redis/redis/pull/15162">a PR</a> adding a new data type - arrays - to Redis. </p><p>The new commands are <code>ARCOUNT</code>, <code>ARDEL</code>, <code>ARDELRANGE</code>, <code>ARGET</code>, <code>ARGETRAN...
2日前
記事のアイキャッチ画像
CSS `n of` Selectors for Conditional Validation ブログのファビコン Frontend Masters Boost RSS Feed
:nth-child supports the keyword `of` in the argument which can be super useful on it's own. Combo that with a :has() selector to do some pretty wild stuff!
2日前
記事のアイキャッチ画像
Register now for OpenClaw: After Hours @ GitHub ブログのファビコン The GitHub Blog
OpenClaw builders will gather at GitHub HQ during Microsoft Build 2026 for demos and conversations. Join in person, or watch the livestream on Twitch.The post Register now for OpenClaw: After Hours @ GitHub appeared first on The GitHub Blog.
2日前

5/4 (月)

記事のアイキャッチ画像
Fixed-Height Cards: More Fragile Than They Look ブログのファビコン CSS-Tricks
Getting a multi-column of cards to line up equally is is a headache we've all faced, and it gets even harder when working with fixed heights.Fixed-Height Cards: More Fragile Than They Look originally handwritten and published with love on CSS-Tricks. You should really get the newsletter as well.
3日前
記事のアイキャッチ画像
Branching Without Git Is Now The Default ブログのファビコン Supabase Blog
Branching without Git is now the default for all Supabase projects.
3日前
記事のアイキャッチ画像
How General Intelligence used agents to build an agent platform on Vercel ブログのファビコン Vercel News
General Intelligence on VercelMigrating Cofounder's Python backend to VercelRunning Cofounder as a multi-tenant app on Vercel8-person team (5 engineers) shipping 10 PRs and 70+ commits per engineer, per day4,000+ preview branches with ~100 parallel app versions running at any moment90% of SRE work automated through Vercel and their own agent (Cofounder)Cofounder launches with a managed Vercel account for every customerGeneral Intelligence is building a platform that lets any founder run a compan
3日前
記事のアイキャッチ画像
Introducing deepsec: The security harness for finding vulnerabilities in your codebase ブログのファビコン Vercel News
Today we’re open sourcing : a security harness powered by coding agents. It runs on your own infrastructure and surfaces hard-to-find issues in large codebases. deepsecYou can run on your laptop without setting up a cloud service for privileged source code access. For inference, you can use your existing Claude or Codex subscription without any additional setup. deepsecScanning large repos can take multiple days on a single machine. To run research jobs in parallel, supports optional fanout to V
3日前
記事のアイキャッチ画像
Codex を利用した iOS アプリ開発を試してみた ブログのファビコン azukiazusa のテックブログ2
私自身は Web 開発の経験はありますが、iOS アプリ開発の経験はほとんどありません。このようなバックグラウンドを持つ私がコーディングエージェントである Codex を利用して iOS アプリ開発をどこまで進められるか試してみました。コーディングエージェントは単に中身を見ずにアプリケーションを作るいわゆる「バイブコーディング」的な使い方だけでなく、なぜこのコードが必要なのか?より良い設計にできないか?といったことを随時質問しながら進める学習用途の使い方が中心です。
3日前
記事のアイキャッチ画像
What NIST's mDL guidance means for the future of digital identity ブログのファビコン Blog on 1Password Blog
The latest National Institute of Standards and Technology (NIST) draft guidance on mobile driver’s licenses (mDLs) is about more than one use case or credential type. While the draft primarily focuses on the financial sector due to its high-assurance requirements, the bigger takeaway is that government-issued identity can be cryptographically verified and shared more selectively. This provides strong, cryptographically verifiable evidence of identity and shows what a more interoperable digital i
3日前
記事のアイキャッチ画像
How does SCIM Schema Discovery work ブログのファビコン WorkOS Blog
How identity providers learn what your SCIM server can do, through three discovery endpoints.
3日前
記事のアイキャッチ画像
The identity join problem: Linking SSO profiles to directory users ブログのファビコン WorkOS Blog
Email and IDP ID both fail as universal join keys. The fix is sensible defaults with real escape hatches.
3日前
記事のアイキャッチ画像
Can A Content Delivery Network Boost Website SEO? ブログのファビコン DebugBear Blog
Can a CDN help your site rank higher in search results? We break down the SEO benefits of using a CDN and walk through setting one up with Cloudflare.
3日前
記事のアイキャッチ画像
Polypane 29: New network panel, snippet store and Chromium 148 ブログのファビコン Polypane Blog
Polypane 29 introduces an updated panel UI, a new network panel for inspecting requests, a new snippet store for discovering and installing…
3日前
記事のアイキャッチ画像
Quoting Anthropic Simon Willison's Weblog
<blockquote cite="https://www.anthropic.com/research/claude-personal-guidance"><p>We used an automatic classifier which judged sycophancy by looking at whether Claude showed a willingness to push back, maintain positions when challenged, give praise proportional to the merit of ideas, and speak frankly regardless of what a person wants to hear. Most of the time in these situations, Claude expressed no sycophancy—only 9% of conversations included sycophantic behavior (Figure 2). But ...
3日前

5/3 (日)

記事のアイキャッチ画像
Playwright CLI で AI エージェントに視覚的なフィードバックを与える ブログのファビコン azukiazusa のテックブログ2
Playwright CLI v0.1.9 で追加されたアノテーション機能は AI エージェントに視覚的なフィードバックを与えるために便利な機能です。アノテーション機能を利用すると、ブラウザの要素を選択して、その要素に対するコメントを残すことができます。AI エージェントはこのアノテーションが残された要素を簡単に特定できるため、どのコードを修正すればよいのかを判断しやすくなります。
4日前
記事のアイキャッチ画像
png-cmp: like cmp for PNGs Evan Hahn (dot com)
png-cmp is a program I built that checks if two PNGs are visually equivalent. It’s inspired by the cmp command. Here’s how you use it:png-cmp a.png b.pngLike cmp, it silently exits if the images are identical, and gives an error if they’re different.Unlike cmp, it checks pixel data, not binary data. PNGs can look the same but be stored differently. For example, png-cmp ignores text metadata.I was recently doing an experiment where I wanted to check if two PNGs were visually identical, so I built
4日前
記事のアイキャッチ画像
Sightings Simon Willison's Weblog
<p><strong><a href="https://simonwillison.net/elsewhere/sighting/">/elsewhere/sightings/</a></strong></p>I have a new camera (a Canon R6 Mark II) so I'm taking a lot more photos of birds. I share my best wildlife photos on <a href="https://www.inaturalist.org/">iNaturalist</a>, and based on yesterday's <a href="https://simonwillison.net/2026/May/1/inat-sightings/">successful prototype</a> I decided to add those to my blog.</p>&lt...
4日前

5/2 (土)

記事のアイキャッチ画像
Code Orange: Fail Small is complete. The result is a stronger Cloudflare network ブログのファビコン The Cloudflare Blog
We have completed a massive engineering effort to make our infrastructure more resilient. Through new tools like Snapstone and the Engineering Codex, we've implemented safer configuration changes and automated best practices to prevent future incidents.
5日前
記事のアイキャッチ画像
PyPI Fixes High-Severity Access Control Issues Found in Security Audit ブログのファビコン Socket
The remediated findings include organization permission bugs, stale project access after transfers, OIDC replay edge cases, audit logging gaps, and an IDOR in API token deletion.
5日前
記事のアイキャッチ画像
iNaturalist Sightings Simon Willison's Weblog
<p><strong>Tool:</strong> <a href="https://tools.simonwillison.net/inat-sightings">iNaturalist Sightings</a></p> <p>I wanted to see my <a href="https://www.inaturalist.org">iNaturalist</a> observations - across two separate accounts - grouped by when they occurred. I'm camping this weekend so I built this entirely on my phone using Claude Code for web.</p><p>I started by building an <a href="https://github.com/simonw/inaturali...
5日前
記事のアイキャッチ画像
Introducing TanStack Form ブログのファビコン Frontend Masters Boost RSS Feed
TanStack Form offers a powerful solution for handling form complexity in React. It emphasizes strong typing, performance, and detail management.
5日前

5/1 (金)

記事のアイキャッチ画像
A blog bot that pitches its own posts: building a Slack-native publishing system on Cloudflare Workers and Durable Workflows ブログのファビコン WorkOS Blog
How we built a Slack-native AI blog bot on Cloudflare Workers + Durable Workflows — proactive proposals, durable retries, and a multi-model writer pipeline.
6日前
記事のアイキャッチ画像
What’s !important #10: HTML-in-Canvas, Hex Maps, E-ink Optimization, and More ブログのファビコン CSS-Tricks
Developers have been experimenting with HTML-in-Canvas, a hexagonal world map-analytics feature, a web-based OS for e-ink devices, replacing image sources using the content property, and more. This is What’s !important #10.What’s !important #10: HTML-in-Canvas, Hex Maps, E-ink Optimization, and More originally handwritten and published with love on CSS-Tricks. You should really get the newsletter as well.
6日前
記事のアイキャッチ画像
Introducing Dynamic Workflows: durable execution that follows the tenant ブログのファビコン The Cloudflare Blog
Dynamic Workflows is a library that lets you route durable execution to tenant-provided code on the fly. Built on Dynamic Workers, it enables platforms to serve millions of unique workflows at near-zero idle cost.
6日前
記事のアイキャッチ画像
The Index: Issue #180 ブログのファビコン Piccalilli - Everything
Fraude DesignWhy slop it when you can Fraude it?heerich.jsA really nice tool for generating 3D voxel scenes with fantastic documentation and examples.Searching for birdsSo much good stuff in this piece. It's so refreshing to see this sort of thing without scroll-jacking too.The sites we lostA huge archive of old websites from the older days that would have otherwise vanished or been taken over by ads.Digital Independence DayWe've shared a few things to help you get away from big tech over time b
6日前
記事のアイキャッチ画像
Designing Stable Interfaces For Streaming Content ブログのファビコン Articles on Smashing Magazine — For Web Designers And Developers
Streaming UIs are an easy concept on the surface, but are quite complicated in practice. There are many considerations that need to be accounted for, from layout shifts and motion preferences to proper markup and various states, that may not be instantly obvious. What happens if the stream is interrupted? Can users tab through the UI on the keyboard as it shifts? What ARIA attributes might be needed?
6日前
記事のアイキャッチ画像
Container Timing origin trial ブログのファビコン developer.chrome.com: Blog
Try out the Container Timing performance measurement API in origin trial from Chrome 148
6日前
記事のアイキャッチ画像
How GitBook serves 30,000 sites with sub-second content updates ブログのファビコン Vercel News
GitBook on Vercel30,000 documentation sites hosted on a single Vercel deployment120 million monthly page views served from the edge40,000 cache invalidations processed daily, each resolved in under 300ms41% of all traffic now comes from AI crawlers and automated systemsGitBook hosts 30,000 documentation sites on Vercel, serving 120 million page views every month. Companies like n8n, Nvidia, and Zoom trust the platform to keep their docs fast and current. For modern engineering teams and coding a
6日前
記事のアイキャッチ画像
JavaScript PrimerのES2026対応を手伝ってくれるContributorとSponsorを募集しています ブログのファビコン Web Scratch
JavaScript Primer (https://jsprimer.net/) では、毎年ECMAScriptの新しい仕様への追従を行っています。ES2026は2026年6月に正式リリースされる予定です。TC39ではすでにFeature Freezeが行われ、ES2026に入る予定の機能が確定しています。TC39 Process今年もES2026で追加される機能についての対応Issueを作成しました。これらのIssueを一緒に進めてくれるContributorと、JavaScript Primerの活動を支援してくれるSponsorを募集しています。次のDiscussionにコメントをください募集しているDiscussion: ES2026に対応するIssueへのContributorを募集しています · js-primer/js-primer · DiscussionsES2026対応のIssueES2026のMeta Issueとして次のIssueがあります。ES2026の対応 · Issue #1869 · js-primer/js-primer具体的に対応するものとして次の
6日前
記事のアイキャッチ画像
Postgres connections now work through Sandbox firewall ブログのファビコン Vercel News
can now connect to hosted Postgres databases, including , , , , and . To enable a connection, add the database host to your Sandbox's allowed domains.Vercel SandboxNeonSupabaseAWS RDSNilePrisma PostgresWhen is used with Vercel Sandbox, the sandbox firewall restricts outbound network access by checking the domain name during a connection's TLS handshake. This works seamlessly for HTTPS traffic, where the domain is visible at the start of the connection.SNI based filteringPostgres, however, negoti
6日前
記事のアイキャッチ画像
Malicious Ruby Gems and Go Modules Impersonate Developer Tools to Steal Secrets and Poison CI ブログのファビコン Socket
GitHub account BufferZoneCorp published sleeper packages that later added credential theft, GitHub Actions tampering, fake go wrappers, and SSH persistence.
6日前
記事のアイキャッチ画像
ESLint v10.3.0 released ブログのファビコン ESLint Blog
Highlightsno-unused-private-class-members SuggestionsThe no-unused-private-class-members rule now provides suggestions to remove reported unused private class members.For example, for the following code, in which the rule reports #doSomethingElse as unused:class C { /** * My public method. */ doSomething() { } /** * My private method. */ #doSomethingElse() { }}12345678910111213141516Copy code to clipboard It will now suggest removing #doSomethingElse. After applying the suggestion, the method an
6日前
記事のアイキャッチ画像
Offline command line translation with TranslateGemma + Ollama Evan Hahn (dot com)
I wrote a simple script that translates text at the command line, completely offline. Here’s an example of how it works on my computer:echo '¿Cómo estás?' | translate# => How are you?It combines a few tools:TranslateGemma, a special-purpose language model for translationOllama, a tool for running language models locallyEfficient Language Detector, a library that detects the language for a piece of textHere’s the pseudocode of how it works:source = read_stdin()# Uses Efficient Language Detecto...
6日前
記事のアイキャッチ画像
How to stay secure while traveling this summer ブログのファビコン Blog on 1Password Blog
Whether you’re juggling travel bookings with friends or packing the kids’ suitcases, planning a summer vacation can be far from relaxing. And once you get to your destination, the confirmation codes and passport numbers are always buried in the group chat when you need them most. But when you have all your travel essentials saved securely in one place, you can skip the scramble and put safe travels on autopilot. Before you take off this summer, check these tips to keep your information safe and
6日前
記事のアイキャッチ画像
What’s new in Svelte: May 2026 ブログのファビコン Svelte blog
This month we got a ton of improvements to SvelteKit's remote functions, TypeScript 6.0 support and the experimental release of community plugins in the Svelte CLI.Svelte was also featured in ThoughtWorks Technology Radar!Big month, bigger showcase... so let's dive in!What's new in SvelteKitSvelteKit now supports TypeScript 6.0 (2.56.0, Docs, #15595)form fields can now specify a default value using field.as(type, value), reducing boilerplate for pre-populated forms (2.56.0, Docs, #15577)Remote f
6日前
記事のアイキャッチ画像
Ember 6.12 Released ブログのファビコン Ember.js Blog
The Ember project is excited to announce the release of Ember v6.12. Following Ember's Major Version Policy, version 6.12 will be the final release of the 6.x series. This release of Ember.js is an LTS (Long Term Support) candidate. LTS candidates prioritize stability over the addition of new features, and have an extended support schedule.Ember.js 6.12Ember.js 6.12 does not introduce any new features in this release, but we have done some major improvements to the internal structure of the repo
6日前
記事のアイキャッチ画像
Codex CLI 0.128.0 adds /goal Simon Willison's Weblog
<p><strong><a href="https://github.com/openai/codex/releases/tag/rust-v0.128.0">Codex CLI 0.128.0 adds /goal</a></strong></p>The latest version of OpenAI's Codex CLI coding agent adds their own version of the <a href="https://ghuntley.com/ralph/">Ralph loop</a>: you can now set a <code>/goal</code> and Codex will keep on looping until it evaluates that the goal has been completed... or the configured token budget has been exhausted.&lt...
6日前
記事のアイキャッチ画像
Our evaluation of OpenAI's GPT-5.5 cyber capabilities Simon Willison's Weblog
<p><strong><a href="https://www.aisi.gov.uk/blog/our-evaluation-of-openais-gpt-5-5-cyber-capabilities">Our evaluation of OpenAI's GPT-5.5 cyber capabilities</a></strong></p>The UK's AI Security Institute <a href="https://www.aisi.gov.uk/blog/our-evaluation-of-claude-mythos-previews-cyber-capabilities">previously evaluated Claude Mythos</a>: now they've evaluated GPT-5.5 for finding security vulnerability and found it to be comparable to M...
6日前
記事のアイキャッチ画像
Mini Shai-Hulud Spreads to Packagist: Malicious Intercom PHP Package Follows npm Compromise ブログのファビコン Socket
Socket found a malicious Intercom PHP package on Packagist using Composer plugin execution to steal credentials and spread across ecosystems.
6日前
記事のアイキャッチ画像
Quoting Andrew Kelley Simon Willison's Weblog
<blockquote cite="https://lobste.rs/s/ifcyr1/contributor_poker_zig_s_ai_ban#c_cbtxub"><p>It's a common misconception that we can't tell who is using LLM and who is not. I'm sure we didn't catch 100% of LLM-assisted PRs over the past few months, but the kind of mistakes humans make are fundamentally different than LLM hallucinations, making them easy to spot. Furthermore, people who come from the world of agentic coding have a certain <em>digital smell</em> that is not ob...
6日前
記事のアイキャッチ画像
We need RSS for sharing abundant vibe-coded apps Simon Willison's Weblog
<p><strong><a href="https://interconnected.org/home/2026/04/29/syndicating-vibes">We need RSS for sharing abundant vibe-coded apps</a></strong></p>Matt Webb:</p><blockquote><p>I would love an RSS web feed for all those various tools and apps pages, each item with an “Install” button. (But install to where?)</p><p>The lesson here is that when vibe-coding accelerates app development, apps become more personal, more situated, and mo...
6日前
記事のアイキャッチ画像
GitHub Copilot CLI for Beginners: Interactive v. non-interactive mode ブログのファビコン The GitHub Blog
Learn the difference between CLI interactive v. non-interactive modes.The post GitHub Copilot CLI for Beginners: Interactive v. non-interactive mode appeared first on The GitHub Blog.
6日前
記事のアイキャッチ画像
Intercom’s npm Package Compromised in Ongoing Mini Shai-Hulud Worm Attack ブログのファビコン Socket
Compromised [email protected] npm package is tied to the ongoing Mini Shai-Hulud worm attack targeting developer and CI/CD secrets.
6日前
記事のアイキャッチ画像
The Importance of Native Randomness in CSS ブログのファビコン CSS-Tricks
We're getting new functions for generating random numbers in CSS! But the road to get here has been a long and winding one.The Importance of Native Randomness in CSS originally handwritten and published with love on CSS-Tricks. You should really get the newsletter as well.
6日前

4/30 (木)

記事のアイキャッチ画像
What Is CKEditor AI? A Guide for Product Teams ブログのファビコン CKEditor Ecosystem Blog
CKEditor AI brings AI-assisted writing directly into your rich text editor. Discover how it works, what pain points it solves, and why teams are adopting it.
7日前
記事のアイキャッチ画像
Post-quantum encryption for Cloudflare IPsec is generally available ブログのファビコン The Cloudflare Blog
Cloudflare IPsec now has generally available support for post-quantum encryption via hybrid ML-KEM. We’ve confirmed interoperability with Cisco and Fortinet.
7日前
記事のアイキャッチ画像
PyTorch Lightning PyPI Package Compromised in Supply Chain Attack ブログのファビコン Socket
Socket detected a malicious supply chain attack on PyPI package lightning versions 2.6.2 and 2.6.3, which execute credential-stealing malware on import.
7日前
記事のアイキャッチ画像
Agents can now create Cloudflare accounts, buy domains, and deploy ブログのファビコン The Cloudflare Blog
Starting today, agents can now be Cloudflare customers. They can create a Cloudflare account, start a paid subscription, register a domain, and get back an API token to deploy code right away. Humans can be in the loop to grant permission, but there’s no need to go to the dashboard, copy and paste API tokens, or enter credit card details.
7日前
記事のアイキャッチ画像
Three stoic principles for better web accessibility ブログのファビコン Piccalilli - Everything
When I listened to Arthur Brooks' podcast episode Four Practical Ways to Live Like a Stoic with Ryan Holiday, I was surprised and excited to see how it applies to my work as an accessibility practitioner.Among other things, they talk about three principles, and in this article, I’m going to discuss how they can help you in your everyday life doing web accessibility work.Manage yourself, not the outside world“Having the emotion, but not being ruled by it.”You already seem to be living by this pri
7日前
記事のアイキャッチ画像
A Fresh View In May (2026 Wallpapers Edition) ブログのファビコン Articles on Smashing Magazine — For Web Designers And Developers
Let’s welcome May with a new collection of desktop wallpapers! Following our monthly tradition, the wallpapers were created by the community for the community and can be downloaded for free. Enjoy!
7日前
記事のアイキャッチ画像
Grok 4.3 on AI Gateway ブログのファビコン Vercel News
Grok 4.3 is now available on . The model has a 1M token context window and improvements in accuracy, tool calling, and instruction following.Vercel AI GatewayTo use Grok 4.3, set model to in the .xai/grok-4.3AI SDKAI Gateway provides a unified API for calling models, tracking usage and cost, and configuring retries, failover, and performance optimizations for higher-than-provider uptime. It includes built-in , , support, and intelligent provider routing with automatic retries.custom reportingobs
7日前
記事のアイキャッチ画像
Custom tags available in beta on Vercel Sandbox ブログのファビコン Vercel News
As teams scale isolated environments for AI agents, code generation, or dev workflows, keeping track of which sandbox belongs to whom, and why, becomes critical. Custom tags allow you to organize, filter, and manage at scale. Each sandbox supports up to five tags.Vercel SandboxesTags are flexible by design. Use them to separate staging from production, attribute usage to specific teams, or isolate sandboxes per customer in multi-tenant platforms:Promote a sandbox from staging to production, reas
7日前