gdp-ts:为 TypeScript 带来幽灵离去证明的安全 API 设计gdp-ts: Ghosts of Departed Proofs for Safer TypeScript APIs
Vercel CEO Guillermo Rauch 发布了 gdp-ts,这是一个库、linter 和 AI skill,用于更安全的 API 设计。敏感函数要求调用者提供已完成授权检查的“证明”,类型检查器在编译时验证这些证明,防止团队和 Agent 发布灾难性安全漏洞。随着 Agent 写代码量超过人类审查能力,这种硬约束反而成为优势,Agent 在紧约束循环中表现更好。README 以真实 Vercel API 约束为例:修改 Project 密码需要特定角色和权益证明。
Vercel CEO Guillermo Rauch introduced gdp-ts, a library, linter and AI skill for safer API design. Sensitive functions require 'proofs' that the caller performed an authorization check; the typechecker verifies them at compile time, stopping teams and agents from shipping catastrophic security bugs. Agents now write more code than humans can review and thrive under hard constraints that frustrate people. The README models a real Vercel constraint: changing a Project password needs proof of a certain role plus entitlement.
Vercel CEO Guillermo Rauch introduced gdp-ts, a library, linter and AI skill for safer API design. Sensitive functions require 'proofs' that the caller performed an authorization check; the typechecker verifies them at compile time, stopping teams and agents from shipping catastrophic security bugs. Agents now write more code than humans can review and thrive under hard constraints that frustrate people. The README models a real Vercel constraint: changing a Project password needs proof of a certain role plus entitlement.
查看原文 →
Claude 的 “local hands” 与更高效的规划模式Claude “Local Hands” and Token-Efficient Planning
Anthropic Claude Code 的 Thariq 分享了他最喜欢的模式名称 “local hands”:Claude 在云端运行却能访问本地文件,该能力也即将进入 Cowork。他指出这种规划方式比原始 HTML 更省 token,模型无需重复生成状态机、图表、代码片段等常见组件。
Anthropic Claude Code’s Thariq shared his favorite name for the pattern “local hands”: Claude runs in the cloud but can access your files locally, also coming to Cowork. A big advantage of this planning style is far higher token efficiency than raw HTML, because the model does not need to remake components or logic for common things like state machines, diagrams and code snippets.
Anthropic Claude Code’s Thariq shared his favorite name for the pattern “local hands”: Claude runs in the cloud but can access your files locally, also coming to Cowork. A big advantage of this planning style is far higher token efficiency than raw HTML, because the model does not need to remake components or logic for common things like state machines, diagrams and code snippets.
查看原文 →查看原文 →
用 Gemini Live 打造实时语音日语学习 AppBuilding a Live Voice Japanese Learning App with Gemini Live
实用 AI 教程作者 Peter Yang 分享了他用 Gemini Live API 构建的实时语音日语学习 App 完整教程,包括用 spec skill 做关键设计、设置 Gemini Live 语音 API,以及用 Nano Banana 生成立体模型艺术。用户可跟着做,在旅行前学会任意语言的 100 个短语。
Practical AI tutorials creator Peter Yang released a full tutorial on the AI language-learning app he built that teaches Japanese via live voice calls. It covers using his spec skill for key designs, setting up Gemini Live APIs for voice, and creating diorama art with Nano Banana. Followers can build their own version to learn 100 phrases for any language before a trip.
Practical AI tutorials creator Peter Yang released a full tutorial on the AI language-learning app he built that teaches Japanese via live voice calls. It covers using his spec skill for key designs, setting up Gemini Live APIs for voice, and creating diorama art with Nano Banana. Followers can build their own version to learn 100 phrases for any language before a trip.
查看原文 →
ryOS Subtitles:Netflix 双语字幕与发音指南ryOS Subtitles: Dual-Language Netflix Subtitles with Pronunciation
曾为 Cursor、Notion、Stripe 设计的 Ryo Lu 发布了 ryOS Subtitles Chrome 扩展,让语言学习者可在 Netflix 上同时显示任意两种语言的字幕,并为日语、中文、韩语提供发音指南,支持自定义样式。
Designer Ryo Lu (ex-Cursor, Notion, Stripe) released ryOS Subtitles for Chrome. It lets language learners watch Netflix with subtitles in any two languages plus pronunciation guides for Japanese, Chinese and Korean, with customizable styles and hand-picked defaults.
Designer Ryo Lu (ex-Cursor, Notion, Stripe) released ryOS Subtitles for Chrome. It lets language learners watch Netflix with subtitles in any two languages plus pronunciation guides for Japanese, Chinese and Korean, with customizable styles and hand-picked defaults.
查看原文 →查看原文 →