Top stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. Introducing System One Models and Jev(typesafe.ai ↗)
    330comments
  2. Apple Reference Image: A New Approach for Verified Photography(security.apple.com ↗)
    78comments
  3. Show HN: An e-ink frame that hears birds and draws them as 1800s illustrations(github.com/arnegiacomo ↗)
    192comments
  4. Show HN: I made a flight simulator, except you're just a passenger(inflightsimulator.com ↗)
    47comments
  5. Negativland, Culture Jamming, and the Art of Making Something New(blog.archive.org ↗)
    17comments
  6. An update on Wayback Machine access(blog.archive.org ↗)
    249comments
  7. Datamimic – don't let your coding agent invent its own test world(github.com/rapiddweller ↗)
    2comments
  8. Gemini 3.8 Live and 3.8 Live Extended Thinking(blog.google ↗)
    236comments
  9. Recreating Voodoo Graphics and a Late-1990s Gaming PC on an FPGA(nand2mario.github.io ↗)
    18comments
  10. German Rheinmetall open-sources its Battlesuite connected weapon system protcol(rheinmetall.github.io ↗)
    56comments
  11. Building a Linux GPU Driver for the M4 Mac Mini in One Month(codyho.dev ↗)
    150comments
  12. Doing Everyone Else's Job(yosefk.com ↗)
    11comments
  13. An interactive world map of the stories cultures have told(sunnyguha.com ↗)
    discuss
  14. Saving Jet Fuel(marksblogg.com ↗)
    32comments
  15. We got admin access to Baseten's production GitHub(strix.ai ↗)
    142comments
  16. Chopping up books when they're physically too big(mattkirkland.com ↗)
    145comments
  17. Learning to solve hard problems in RL for LLMs by never giving up(mnoukhov.github.io ↗)
    discuss
  18. Jean-Pierre Serre turns 100(st-andrews.ac.uk ↗)
    21comments
  19. Stay discoverable in search while disallowing AI training(cloudflare.com ↗)
    30comments
  20. Piezoelectric effect in polycrystalline diamond membranes(science.org ↗)
    1comments
  21. Show HN: Capsule – Single-file web apps that save their data into SQLite(withcapsule.app ↗)
    126comments
  22. A single firm is behind OpenAI, Anthropic, and Meta hacking scandals(effort.news ↗)
    195comments
  23. Let's make quality the norm again(forbrukerradet.no ↗)
    371comments
  24. WangNet – 1.8 MB, zero-dependency Numberwang adjudication in 11 languages(github.com/graafhenk ↗)
    47comments
  25. Suspected sabotage causes major Netherlands rail disruption(bbc.com ↗)
    407comments
  26. Most people prefer traditional architecture(worksinprogress.news ↗)
    260comments
  27. Sierra digital cameras on the Apple II(colino.net ↗)
    5comments
  28. The Inference Hardware Revolution of 2026(ieee.org ↗)
    13comments
  29. Show HN: Pizza Bot – An inbox for AI agents that work in the background(github.com/pizza-bot-app ↗)
    25comments
  30. Show HN: Hacking a $20 4G wireless hotspot into a texting device(bkovac.github.io ↗)
    33comments

Stay discoverable in search while disallowing AI training

47 pointsby 3h agoblog.cloudflare.com
30 comments
3h agoHN ↗

Cloudflare, enabling the problem and the solution since, how long has it been?

3h agoHN ↗

(checks watch)

17 years

Fun lava lamp story, though

3h agoHN ↗

A bit too late honestly (?). With so many people who have shifted over to reading AI summaries as a primary search response, those with AI-enabled sites will win by attrition.

There is no going back from this. And the internet is a relatively new phenomenon. Recklessly, blindly applying ads to pages in hopes of generating revenue is a very silly thing to do. Technology with ad blockers and now AI summaries has taken that away. New business models, perhaps actually decent ones are required.

Death of ads everywhere? Good fucking riddance.

Posted from LibreWolf.

3h agoHN ↗

All this attitude does is tear down the only viable income source for independent publishers and demonizes them for trying to make money, while everyone let's huge corporations off the hook for it because "well that's just what they do"

2h agoHN ↗

Advertising in the way it’s done is demonic in and of itself. I don’t care - find a better business model.

1h agoHN ↗

Independent publishers can't afford to run an ad network.

You aren't independent. You work for the BigTech company that serves ads on your site.

3h agoHN ↗

What does this new setting actually do? Does it block their IP ranges too, I hope? As if Meta, for instance, is actually going to respect Accountable, via themselves or their partners, quite frankly is eyebrow raising at best.

3h agoHN ↗

what weirds me out is the analytics

theres no way my index.html page with nothing is getting 10000 hits a day

wtf?

3h agoHN ↗

7 per minute.

I use my high school’s website to test Internet connectivity bc the domain is short and they don’t do a TLS redirect (making it easy to detect WiFi portals).

1h agoHN ↗

I use this too, but my high school url is 8 characters. neverssl.com is 12. :)

1h agoHN ↗

Wish the admin never added the SSL redirect, its literally the namesake lol

I just want basically captive.apple.com with a shorter domain and the webserver not even listening on port 443 at all.

Surprised someone hasn't made this yet, it only requires one spare public IP.

20m agoHN ↗

They bullshit big time on that, I have caught them not once.

For a site with proven visitors 100,000 per month CF tell me they saved 90,000 over 1,000,000 visitors (rough numbers).

Sure they know large numbers make people feel good.

3h agoHN ↗

Accountable mixed-use crawlers remain allowed for search. Every other training crawler is blocked, including the training-only crawlers run by Amazon, Anthropic, Meta, and OpenAI — blocking those does not affect search.

We also categorize the relevant crawlers from Amazon, Anthropic, Meta, and OpenAI as Accountable. These organizations separate their Search and Training crawlers, so Cloudflare can block the Training crawler without affecting search.

I find it difficult to trust that either Meta or OpenAI would use their separate search and training crawlers only for the respective purposes. Their pinky promises have no value, IMO. Both companies are premised on deceptive behaviors.

3h agoHN ↗

I wonder if protocols like Web Bot Auth [1] will see wider adoption. At least as a supported mechanism for those bots which identify themselves. The rest probably still have to be treated with Anubis. In my free time I've recently been experimenting with a Web Bot Auth implementation as an Envoy dynamic module [2] to have a way to define some additional policies for the traffic from bots.

[1] https://datatracker.ietf.org/doc/draft-ietf-webbotauth-https... [2] https://github.com/michalskalski/envoy-web-bot-auth

2h agoHN ↗

Thanks for sharing, it is interesting use case

2h agoHN ↗

I maintain a cloud IP ranges database, and I'm going to test this out.

I have my doubts, though. A formal title like "Accountable" (capitalized) sounds deliberate, but I can't help imagining the renewal email:

"Hey, want to renew your Accountable™ license? Just pinky promise again that you use your IPs for what you say you do."

1h agoHN ↗

"Accountable" is just a fancy word for "pinky promise, but with a label." Nothing stops the data from ending up in a training run once it's already been fetched.

1h agoHN ↗

...and the only way to stop[1] that is by effectively DRM'ing everything, which is a level of dystopia that I don't think even Stallman ever anticipated, nor do I want to happen.

[1] Analog hole and other workarounds aside, naturally.

1h agoHN ↗

"Cloudflare classifies bots by behavior, and a single bot can exhibit more than one behavior."

Is that really true

CF classifies anyone not using a popular browser with Javascript enabled as a "bot"

CF fingerprints www users

As an example, look at CF's Permissions-Policy HTTP response header on a site with CF "bot protection", i.e., the "checking your browser" CAPTCHA nonsense (challenges.cloudflare.com). Then look at IA's Permissions-Policy response header. One CDN is advertiser-focused, the other is user-focused

IA = Internet Archive

1h agoHN ↗

As far as I can tell, after months of fighting being DDoSed by Anthropic and OpenAI across 50+ sites - Cloudflare also allows what it considers "good bots" through all of your bot blocking rules, with no option to turn this off unless you pay them money.

1h agoHN ↗

CF classifies anyone not using a popular browser with Javascript enabled as a "bot"

This is my biggest complaint about CF. They are implicitly supporting user-agent discrimination in favour of Big Browser, instead of discriminating on actual behaviour.

...and of course there are already companies running tons of VMs with "officially sanctioned" browser + OS stacks, that can get past all these "protections", for a fee.

"AI bots" is the newest boogeyman they came up with to take away freedom.

1h agoHN ↗

If this admin is serious about AI growth they’d make anti-scrapping illegal.

1h agoHN ↗

I don't think this admin even knows what scraping is. Unless it's "scraping the bottom of the barrel", something they're very familiar with.

1h agoHN ↗

Just make user-agent-discrimination illegal.

1h agoHN ↗

This seems useful for my site. I don't really want competitors' AI systems use our research data to train their models.

46m agoHN ↗

I wouldn’t trust an AI company to honor this as far as I could throw them

42m agoHN ↗

I feel like most of these schemes to categorise data as "public but not really" are ultimately doomed to failure. Even if you could trust every AI company in the world to respect these terms, is there anything stopping someone else indexing the data and selling them the information? I know there's copyright law but they're apparently ignoring that anyway.

Ultimately this reminds me of those really early social media profiles (before people understood privacy settings if they even existed) which would say "If you're not my friend you're not allowed to read this page".

If you don't want your content to end up in some database/archive don't publish it for the whole world to see.