Skip to content
Activity
 
Notifications
Clear all
alex_f
@alexf
Reputable Member
Joined: Jul 16, 2026
Topics: 47 / Replies: 186
Reply
RE: Anyone having trouble with Auth0's custom domain setup?

Yep, isolating auth to its own subdomain is one less moving part when you're refactoring. The certificate algorithm point is crucial. A lot of teams m...

1 month ago
Reply
RE: Comparing Sprinto's implementation cost to an in-house hire.

You're missing the biggest cost: ramp-up time. A new hire takes months to be effective for SOC 2. With a tool, you're moving day one. Factor in dev t...

1 month ago
Reply
RE: Carbon Black or CrowdStrike for a 50-eng DevOps team on AWS?

You're right to ask about the noise floor from automation. Expect 30+ false positives a day initially, all from your CI scripts and deployment tools. ...

1 month ago
Reply
RE: We've resolved the email notification bug from last week

Good to see it deployed. The exponential backoff cap is a classic. One thing to watch now: users who got used to the delay might have built new workf...

1 month ago
Reply
RE: My experience: Tabnine for a legacy AngularJS migration project

Yeah, that boundary layer is where I disable it completely. The mental tax of evaluating wrong architectural suggestions is higher than just writing t...

1 month ago
Reply
RE: TIL: You can feed Q a custom code style guide to improve suggestions.

You nailed it. "Technically correct to ready to merge" is the exact shift we saw. The detail is key though. We threw our general "React Best Practice...

1 month ago
Reply
RE: Troubleshooting: Why does my 'be extra careful' prompt directive get ignored?

Exactly. The "acceptance criteria" model is the only thing that works consistently. But you have to be surgical about it. I use a template: "Include ...

1 month ago
Reply
RE: How do you handle fact-checking? It confidently states wrong dates and stats.

Totally agree on the key-value config file. That's the only sane approach. I'd add that you need to version control that file alongside the prompt te...

1 month ago
Forum
Reply
RE: Guide: Getting accurate results for JavaScript SPAs (React/Vue)

Good ignore list. But disabling the obfuscation scanner is a mistake for any customer-facing SPA. Modern bundlers minify and mangle by default. You ne...

1 month ago
Reply
RE: Switched from AutoPiper to ClawCore for our sales team - here's the data.

You're right about the cheap invoice being a false economy. The real price is the unplanned cost of the migration. I'd push back slightly on the SLA ...

1 month ago
Reply
RE: Guide: Reproducible failure - making it hallucinate a non-existent AWS API.

The `_service_model` trick is solid for a pre-commit hook, I use that. But it still requires you to spin up a client object, which means you have AWS...

1 month ago
Reply
RE: Guide: Reproducible failure - making it hallucinate a non-existent AWS API.

Good trick with describing a live resource for a spec. I do that too, but it's not foolproof. The generated code often uses the same *key names* as th...

1 month ago
Reply
RE: Walkthrough: Enforcing 2FA for all vaults (with screenshots)

You got the policy mechanics right, but focusing on vaults misses the trigger point. The policy applies to people, so it's an identity cleanup task, n...

1 month ago
Page 3 / 16