Sign in

Kenneth Falck

@kennu.net
93 followers 76 following 134 posts

Independent architect & engineer | AI-native & cloud-native, writer at Tivi-lehti, founder of WebCat.fi.

PostsRepliesMedia
Kenneth Falck @kennu.net · 07/08/2026
I wish @1password.bsky.social added better remote approval features for accessing passwords and keys. I want to let my AI agents (which run in a VM) access passwords and keys from 1Password, and approve each request from my Android 1Password app, while vibecoding with Claude Code on the couch.
020
Kenneth Falck @kennu.net · 05/08/2026
Huomasin, että kun antaa Clauden tehdä itse git commitin, se lisää aina Co-Authored-By -trailerin. Mutta työkaluissa tuo ei näy, ellei kaiva commitin tietoja tarkemmin esiin. Onkohan mitään vakioitua tapaa merkitä commitit tekoälyn tekemiksi niin, että sen huomaisi heti tiivistetyissäkin logeissa?
000
Kenneth Falck @kennu.net · 03/06/2026
Could someone at Google please fix Maps to prefer Finnish street names in Finland? It's been randomly showing Swedish street names here for the past 30 years and wasn't fixed when I complained about it in ~2000.
110
Kenneth Falck @kennu.net · 02/06/2026
TIL there is an ISO 42010 standard definition of architecture: "An architecture of an entity, expressed in one or more architecture descriptions (AD), assists in understanding the fundamental concepts or properties of the entity, pertaining to its structure, behaviour, design and evolution,"...
100
Kenneth Falck @kennu.net · 01/06/2026
Mental note: When you setup a QEMU VM to isolate AI agents and dev containers, 100GB won't last long. 1TB is better for all those container images.
000
Kenneth Falck @kennu.net · 12/04/2026
Here's an idea for @github.com : Track which of my computers have local uncommitted changes, so when I lie down on a couch to do AI agent coding with the GitHub app, it warns me that I should go to computer to push them first.
220
Kenneth Falck @kennu.net · 11/04/2026
Hey @atlassianlilac.bsky.social , how about you stop sending me those "Your payment has been processed" emails when I'm not paying. They scare me every time, and I have to go open the PDF, to see that it was a payment of $0, so in fact no payment was processed at all. Just stop sending them. Okay?
000
Kenneth Falck @kennu.net · 23/03/2026
I think Amazon DynamoDB is desperately missing a cloud-based migration engine. It would have a simple scripting language for adding default values to newly added item attributes, deleting deprecated attributes, (re)calculating composite keys for existing data, etc.
000
Kenneth Falck @kennu.net · 20/02/2026
Tämä kuulostaa kätevältä, kun DNS:ään ei tarvitse julkaista joka kerta uutta haastevastinetta Let's Encrypt -sertifikaattia rekisteröidessä. Eli kun jokin palvelin kertaalleen julkaisee DNS:ään DNS-PERSIST-01-tietueen, se voi käyttää samaa tietuetta myöhemminkin. letsencrypt.org/2026/02/18/d...
letsencrypt.org
DNS-PERSIST-01: A New Model for DNS-based Challenge Validation
When you request a certificate from Let’s Encrypt, our servers validate that you control the hostnames in that certificate using ACME challenges. For subscribers who need wildcard certificates or who ...
010
Kenneth Falck @kennu.net · 27/01/2026
Why doesn't ChatGPT have an embeddable widget you could add to a website, to provide context-related AI using the end-user's own ChatGPT account and conversation history?
000
Kenneth Falck @kennu.net · 21/01/2026
I love that when I say something really stupid to ChatGPT, I can just click Edit and change it, and it'll forget what I originally said. I wish real life sometimes worked like that, too.
000
Kenneth Falck @kennu.net · 05/12/2025
AI (Cursor editor) is actually pretty good at checking XML namespaces, in code where pieces of XML are generated dynamically in functions.
010
Kenneth Falck @kennu.net · 02/12/2025
GitHub organization and repository configuration is starting to get so complex that I'd like to put it all in a Git repository, rather than click around and try to remember everything.
000
Kenneth Falck @kennu.net · 25/11/2025
Anybody found a good way for dependency cooldown in npm package upgrades, so that it would fallback to the next-latest version if latest version is still too young? Seems ncu -c 7 will just ignore all available updates, if anything has been released during the last 7 days.
000
Kenneth Falck @kennu.net · 21/11/2025
I wish there was an official Debian package repository for latest Go. Feels a bit dirty to use an unofficial PPA, and tired of always downloading and unpacking Go manually.
000
Kenneth Falck @kennu.net · 08/11/2025
Ubuntu 25.10 seems to have issues with smartcard login, when the smartcard (Yubikey) is always connected. I have to remove the USB key and reinsert it to get PIN entry.
000
Kenneth Falck @kennu.net · 05/11/2025
Just noticed Cursor 2.0 is now installable as a Debian .deb package! A very welcome update, having dealt with AppImages with broken desktop integration for too long now. cursor.com/download
cursor.com
Download
000
Kenneth Falck @kennu.net · 20/10/2025
Still getting AWS CloudFormation rollback failed errors when trying to deploy Lambda functions, after today's AWS outage. It's going to be a huge mess to clean up all these broken stacks afterwards.
010
Kenneth Falck @kennu.net · 09/10/2025
TIL the private 100.x address space used by Tailscale was allocated quite recently in 2012, as an addition to the older 10.x, 192.x and 172.x spaces that were allocated back in 1994.
010
Kenneth Falck @kennu.net · 06/10/2025
For endless fun, try asking ChatGPT: Is there a seahorse emoji?
110
Kenneth Falck @kennu.net · 30/09/2025
I think that the classic vt220/xterm emulation should be enhanced with a standard feature for expandable visual objects, so that you could expand/collapse e.g. JSON data and verbose log segments afterwards, when they were already written to stdout.
000
Reposted by Kenneth Falck
Tom Kankkonen @tkankkonen.bsky.social · 26/09/2025
Eilisessä A-studiossa yksi keskustelijoista viittasi CSIS:n tutkimukseen todisteena vasemmistolaisen väkivallan kasvusta Yhdysvalloissa. Kuvio tutkimuksesta kontekstoi populistisen tilastosiivutuksen. Oikeisto punaisella, vasemmisto sinisellä. Vasemmistolaisia iskuja heinäkuun alkuun mennessä 5...
Kuvio poliittisesta väkivallasta Yhdysvalloissa.
2243
Kenneth Falck @kennu.net · 19/09/2025
WebAssembly 3.0: Garbage collection, exceptions, 64-bit memory and all kinds of other stuff. webassembly.org/news/2025-09...
webassembly.org
Wasm 3.0 Completed - WebAssembly
WebAssembly (abbreviated Wasm) is a binary instruction format for a stack-based virtual machine. Wasm is designed as a portable compilation target for programming languages, enabling deployment on the...
000
Kenneth Falck @kennu.net · 11/09/2025
I've been using Record<string,T> in TypeScript quite a lot and only today realized that it means an infinitely large object where all keys are defined. That's why you should actually use Partial<Record<string,T>> to get proper undefined warnings about potentially non-existing keys in your code.
010
Kenneth Falck @kennu.net · 29/08/2025
LLMs are lossy encyclopedias. simonwillison.net/2025/Aug/29/...
simonwillison.net
Lossy encyclopedia
Since I love collecting questionable analogies for LLMs, here's a new one I just came up with: an LLM is a lossy encyclopedia. They have a huge array of facts …
010
Kenneth Falck @kennu.net · 19/08/2025
Unsnapified my Ubuntu by adding the mozillateam PPA, so that Firefox and Thunderbird are installed as regular .deb packages.
000
Kenneth Falck @kennu.net · 12/08/2025
Upgraded to Ubuntu 25.04 to get NVIDIA working with Wayland. Now Remmina RDP doesn't work any more. So I guess stick to Ubuntu TLS releases whenever possible.
010
Kenneth Falck @kennu.net · 11/08/2025
TIL you can use Tang and Clevis to implement very simple automatic disk encryption in Linux. The computer boots and uses public/private key encryption over LAN to get the disk encryption key, which works as an alternative to the manually entered password.
000
Kenneth Falck @kennu.net · 07/08/2025
Why not? hackaday.com/2025/08/07/a...
hackaday.com
A PC That Uses Hot Coffee As Coolant
Modern computers generate a great deal of heat when under load, thus we cool them with fans and sometimes even water cooling systems. [Doug MacDowell] figured that water was alright, but why not us…
000
Kenneth Falck @kennu.net · 05/08/2025
Here's a thought: The purpose of comments in code is to reduce the cognitive load needed to understand what's happening. You can always figure things out with enough cognitive investment, but a good comment can reduce the investment to nearly zero and make you feel good.
020
Kenneth Falck @kennu.net · 26/07/2025
Maybe there should be a limit for maximum depth of nested dependencies allowed in npm packages. The node_modules folder is always full of weird crap nobody knows where it came from. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
npm 'accidentally' removes Stylus package, breaks builds and pipelines
npm has taken down all versions of the Stylus library and replaced them with a "security holding" page, breaking pipelines and builds worldwide that rely on the package.
000
Kenneth Falck @kennu.net · 18/07/2025
I like this fallback plan. Keep a compressed copy of all human knowledge in the form of a LLM on a USB stick, just in case everything goes wrong and we have to start over again. simonwillison.net/2025/Jul/18/...
simonwillison.net
How to run an LLM on your laptop
I talked to Grace Huckins for this piece from MIT Technology Review on running local models. Apparently she enjoyed my dystopian backup plan! Simon Willison has a plan for the …
010
Kenneth Falck @kennu.net · 06/07/2025
TruffleHog has proven to be a pretty good tool to keep running regularly as a cronjob. It will notify you about any unencrypted secrets like API keys and other credentials left lying around in some folder.
000
Kenneth Falck @kennu.net · 27/06/2025
I'm impressed by CDK-Terraform. The whole HCL mess disappears and you can define the application with TypeScript, allowing multiple stacks, clearly defined constructs and simple multi-stage configuration that doesn't repeat every property a billion times. Benefits of AWS CDK but without needing AWS.
020
Kenneth Falck @kennu.net · 17/06/2025
This seems useful if you need to use TLS certificates outside AWS services, valid for 395 days, at $15/fqdn or $149/wildcard. I assume this is fully API-programmable but haven't tried it yet. aws.amazon.com/blogs/aws/aw...
aws.amazon.com
AWS Certificate Manager introduces exportable public SSL/TLS certificates to use anywhere | Amazon Web Services
You can now use AWS Certificate Manager to issue exportable public certificates for your AWS, hybrid, or multicloud workloads that require secure TLS traffic termination.
000
Kenneth Falck @kennu.net · 16/06/2025
This reminds me why I prefer using AWS CloudWatch to hosting my own Grafana instance on Kubernetes. It's so much work just to keep up with all the updates of all your running software. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Over 46,000 Grafana instances exposed to account takeover bug
More than 46,000 internet-facing Grafana instances remain unpatched and exposed to a client-side open redirect vulnerability that allows executing a malicious plugin and account takeover.
000
Kenneth Falck @kennu.net · 15/06/2025
I wish Git could autosync the working directory to GitHub, so that I wouldn't need to commit everything or create temporary branches when moving from one computer to another to continue working. #backyard
010
Kenneth Falck @kennu.net · 04/06/2025
"We need to push back against age verification mandates. Not because child safety is not a concern – it is. But because age verification mandates risk undermining crucial access to digital services, eroding privacy and data protection, and limiting freedom of expression." www.eff.org/deeplinks/20...
eff.org
Age Verification in the European Union: The Commission's Age Verification App
This is the second part of a three-part series about age verification in the European Union. In this blog post, we take a deep dive into the age verification app solicited by the European Commission, ...
100
Kenneth Falck @kennu.net · 04/06/2025
Curious about new attack vectors on AI that is capable of executing scripts and reading files. Cursor confirms first, but I'm not sure if you can persuade it to skip the confirmation. And can e.g. external dependencies contain instructions that are passed as prompts. forum.cursor.com/t/important-...
forum.cursor.com
IMPORTANT: Claude has learned how to jailbreak Cursor!
I have “rm” specifically disallowed, along with “mv” and a few other scary commands. Claude realized that I had to approve the use of such commands, so to get around this, it chose to put them in a s...
000
Kenneth Falck @kennu.net · 03/06/2025
Nice to see AWS at least try to setup a sovereign EU unit, although it's still subject to the Cloud Act, which requires US companies to turn over data to law enforcement authorities. www.theregister.com/2025/06/03/a...
theregister.com
AWS cooks up Euro cloud outfit to soothe sovereignty nerves
: Locally run, Euro-controlled, ‘legally independent,' and ready by the end of 2025
010
Kenneth Falck @kennu.net · 31/05/2025
Wikipedia, y u put darkmode in some cookie that expires every day.
000
Kenneth Falck @kennu.net · 21/05/2025
Who broke 1Password?
000
Kenneth Falck @kennu.net · 20/05/2025
Useful tool to spend your CPU cycles on: Generate vanity key prefixes for WireGuard public keys github.com/axllent/wire...
github.com
GitHub - axllent/wireguard-vanity-keygen: WireGuard vanity key generator
WireGuard vanity key generator. Contribute to axllent/wireguard-vanity-keygen development by creating an account on GitHub.
010
Kenneth Falck @kennu.net · 16/05/2025
Better be careful, if you play with programming challenges where you clone code from a remote Git repository. It could be an innocent looking North Korean trap injecting secret-stealing malware to your computer. unit42.paloaltonetworks.com/slow-pisces-...
unit42.paloaltonetworks.com
Slow Pisces Targets Developers With Coding Challenges and Introduces New Customized Python Malware
North Korean state-sponsored group Slow Pisces (Jade Sleet) targeted crypto developers with a social engineering campaign that included malicious coding challenges. North Korean state-sponsored group ...
000
Kenneth Falck @kennu.net · 12/05/2025
TIL since I have Yubikeys on all my computers, I can actually login to Ubuntu using a PIN code similar to Windows Hello. And use it to unlock to session/keyring without having to re-enter password every time. I assume this is safer than Windows since the Yubikey will lock after some failed attempts.
000
Kenneth Falck @kennu.net · 07/05/2025
I guess VR is officially dead when it's officially removed even from Minecraft. Maybe retry in 10 years, if we could get it to fit regular eyeglasses. www.pcworld.com/article/2773...
pcworld.com
Minecraft officially kills support for VR
Minecraft's latest update ends support for virtual reality and Mixed Reality, though a mod still exists to allow users to experience Minecraft in VR.
010
Kenneth Falck @kennu.net · 07/05/2025
Keyboard should have an AI button. Not a button that brings up some silly chat, but a button that accepts proposed changes to your code and jumps to the next change. Using Tab for this is inconvenient, because if you just keep hitting it, you eventually insert some extra tab characters to the code.
000
Kenneth Falck @kennu.net · 06/05/2025
Using SQL always makes me feel silly. Counting did I write eleven or twelve ? marks and other such silliness.
000
Kenneth Falck @kennu.net · 04/05/2025
Playing around with SSE (Server-sent events) for the first time. I'm enjoying the simplicity compared to websockets. Just write lines as text and flush & go.
010
Kenneth Falck @kennu.net · 26/04/2025
"The Bluesky CEO is thinking at the level of community building, incentives, longevity and decentralisation at a fundamental level. The Mastodon founder seems primarily motivated by building an open source project and supporting contributions from the community." news.ycombinator.com/item?id=4380...
news.ycombinator.com
Apparently Bluesky has one centralized service, the "relay" | Hacker News
100