> Attributes: High motor
What is meant by that?
[1] https://jobs.ashbyhq.com/tempo-xyz/aab97703-13e2-42e8-9fb9-9...
> Attributes: High motor
What is meant by that?
[1] https://jobs.ashbyhq.com/tempo-xyz/aab97703-13e2-42e8-9fb9-9...
So if you can work 10% more than your peers, you get not 10% bonus but rather 30%-100% more. So it makes business sense to put the extra 10%, until everyone is working at 110% and then again, adding an extra 10% pays off, rinse release, death spiral.
The compensation model is pure evil.
If you have sensitive resources they’ll be blocked behind some authz anyway. An exception I’ve seen is access to a sandbox env, those are easily generated at the press of a button.
OAuth flows are not at all common for server-to-server communications.
In my perfect world, I would replace API keys with certificates and use mutual TLS for authentication.
> ...You’re building it for a very wide cross-section of people, many of whom are not comfortable writing or reading code. If your API requires users to do anything difficult - like performing an OAuth handshake - many of those users will struggle.
Sounds like they're talking about onboarding specifically. I actually really like this idea, because I've certainly had my fair share of difficulty just trying to get the dang thing to work.
Security wise perhaps not the best, but mitigations like staging only or rate limiting seem sufficient to me.
Sigh... I wish this were not true. It's a shame that no alternatives have emerged so far.
And what time frame is “long-lived”? IME access tokens almost always have a lifetime of one week and refresh tokens anywhere from 6 months to a year.
It's the only chip manufacturer "left" in the US. The argument is national security: the US expects China to invade Taiwan and this will kill TSMC in the process.
Whether this will happen or not can be debated, but this is what the government expects.
Would it though? The TSMC foundries are pretty much in every continent. Are they just going to stop operating if this happens? Because that seems akin to killing a golden goose.
Also what is up with Global Foundries? I don’t hear a peep about them.
—-
1. https://killedbygoogle.com/