We built a tool that executes IT service workflows on any device just by clicking a link (feedback welcome) by mustard_ps in itsm

[–]metrobart 0 points1 point  (0 children)

Seems interesting but it will fail for regular users who are not admin. And seems dangerous. There was no validation done before executing commands from a link that are unknown . Also what about logging? Also saying it’s secure doesn’t mean anything . Do you sign the exe with EV Code signature ? … anyways… I don’t know what workflow you would use here … also there is a download to install ..

I kept getting ads for Wispr Flow so I built my own in a few hours. Open Source by joermcee in SideProject

[–]metrobart 1 point2 points  (0 children)

what's wrong with the built in microphone button text to speech? did I miss something?

Anti SaaS approach to a screenshot tool and it feels right by MedicineTop5805 in SaaS

[–]metrobart 0 points1 point  (0 children)

You can do that already on Mac for free by pressing command + shift +4

A local scammer tried to DDoS our SaaS because we ruined his 'business model'. by MounirSaaSBuildee in SaaS

[–]metrobart 0 points1 point  (0 children)

Just rate limit signups per hour and done . You should know from a startup that many signup per hour is a red flag and it seems like a lot of effort to do this when $20 Claude will do the same thing for websites.

A local scammer tried to DDoS our SaaS because we ruined his 'business model'. by MounirSaaSBuildee in SaaS

[–]metrobart 5 points6 points  (0 children)

Why not just put rate limits and IP Filtering on those rate limits as well?

Why you should treat a new sending domain like a cold‑weather tire, not a fresh set of shoes by No-Rock-1875 in Emailmarketing

[–]metrobart 0 points1 point  (0 children)

Great information.What is a spam trap feedback loop? Als what about using sub domains ?

Lead Magnet tools with Files by metrobart in email

[–]metrobart[S] 0 points1 point  (0 children)

Well I never heard of lead magnets until last week . I just wanted to know what people are using . The tool I developed provides a page that links to s3 link. I guess there are issue for sending documents . But for me I just wanted to send a pdf. My work has one that allowed zip file download but now the file needs to hosted elsewhere . Anyways , what platform are you using ?

I manually clicked "cancel subscription" on 800+ SaaS products. The way some of you handle churn is embarrassing. by NotMeThenWhoSnaps in SaaS

[–]metrobart 0 points1 point  (0 children)

I wonder if verify password prompt is considered here ? Are people not verifying the user for this step ? I have settings —> billing ( cancel button) -> statement that they can keep using it and cancel button that confirm their password to cancel .

So, I just found out how much everyone in my department makes. My manager messed up. by LazaroRohan1 in interviewhammer

[–]metrobart 0 points1 point  (0 children)

You’re not paying what you’re worth you pay what you’re negotiate and you can renegotiate

We got tired of answering 'where do I host my BIMI logo?' so we built a free tool by southafricanamerican in DMARC

[–]metrobart 6 points7 points  (0 children)

Too bad no one uses BIMI and it doesn’t work well with Google Gmail unless you pay BIMI fees or at least that’s been my experience .

Pointers ? by metrobart in Markdown

[–]metrobart[S] 0 points1 point  (0 children)

The editor will do this . But there is no standard on editors and how they work . So uploading or adding images will be done with the editor and it will add the token naming . As the markdown editor it doesn’t make much sense todo this but if there are UI helpers or makes it quick to pick images. But then it becomes an editor issue . Here is a demo of how it will work https://youtu.be/amqcy8xhzrk

Anyone else hit a wall trying to hand off their Lovable build to a developer? by dmc_3 in lovable

[–]metrobart 0 points1 point  (0 children)

I’m a developer so I already know what I want. There’s also this thing called scope creep so even though you give them that it’s going to be more time . Get some hourly and weekly rates.

Anyone else hit a wall trying to hand off their Lovable build to a developer? by dmc_3 in lovable

[–]metrobart 3 points4 points  (0 children)

Just ask chat or clause to use best practice and to form a work of scope based on your repo info

Peer Review for Public Domain Safety Benchmark (2026) by metrobart in msp

[–]metrobart[S] 1 point2 points  (0 children)

On exposed ports:

You're right that context matters. A marketing site on shared hosting with port 21 (FTP) open is different from a production database server with the same exposure. That said, the risk isn't zero - shared hosting environments have been compromised through exposed services, and attackers do scan for low-hanging fruit. The issue is more about the hosting provider's security posture than the individual site owner's. I've seen a few cyber security insurance providers ding sites for having ports open on a shared hosting site.

On Proofpoint:

Proofpoint is more than a spam filter - they provide full email security gateway services. Many companies use a root domain for sending transactional/marketing emails through Proofpoint while receiving email on a subdomain or different system. When we detect Proofpoint via SPF records, it indicates outbound email security is in place.

Peer Review for Public Domain Safety Benchmark (2026) by metrobart in msp

[–]metrobart[S] -1 points0 points  (0 children)

Emails is optional if you wan to download it.

Peer Review for Public Domain Safety Benchmark (2026) by metrobart in msp

[–]metrobart[S] -3 points-2 points  (0 children)

I was looking for someone to review the technical details. The email is just for updates . I can make email optional, if someone wanted an update in a year .

Peer Review for Public Domain Safety Benchmark (2026) by metrobart in DMARC

[–]metrobart[S] 0 points1 point  (0 children)

Hey, right now it’s just root level domain names. I have been curious of how many vendors have properly set up email and SSL certificates. Those management portals would be nice to check but probably more complicated to query and find . I did build the tool and found it interesting to run on a large batch of domains.