Rosa Del Mar

Daily Brief

Issue 86 2026-03-27

Llm Assisted Swiftui Prototyping Without Xcode

  • The author describes Claude Opus 4.6 and GPT-5.4 as competent at SwiftUI.
  • The author built two SwiftUI apps (Bandwidther and Gpuer) and converted both into menu bar apps that open an information panel.
  • Bandwidther was initially built to determine whether Dropbox network transfers were occurring over the LAN or via the internet.

Rapid Creation Of Menu Bar Observability Utilities

  • The author built two SwiftUI apps named Bandwidther (network bandwidth by app) and Gpuer (GPU activity), and converted both into menu bar icons that open an information panel.
  • Gpuer produced an available-memory reading that appeared incorrect versus Activity Monitor, and the author had Claude adjust calculations based on a screenshot but still lacked confidence in correctness.
  • The author reports that Claude Opus 4.6 and GPT-5.4 are competent at SwiftUI for building a complete app that can fit in a single text file.

Llm-Assisted Swiftui Prototyping Without Xcode

  • The author reports Claude Opus 4.6 and GPT-5.4 are competent at SwiftUI.
  • The author built two SwiftUI apps, Bandwidther (network bandwidth by app) and Gpuer (GPU activity), and converted both into menu bar apps that open an information panel.
  • The author reports that having Claude suggest features helped by proposing network usage reporting capabilities the author did not know were possible.

Python Supply-Chain Compromise Mechanics And Incident Posture For Ai-Adjacent Middleware

  • AI middleware packages need to be included in standard supply-chain threat models because they often sit near API keys, cloud credentials, and internal configuration.
  • OpenCode removed Anthropic OAuth and related references after legal pressure.
  • Astral (maker of uv, Ruff, and Ty) has an agreement to join OpenAI as part of the Codex team.

Agent-Driven Consolidation Of Developer Tooling

  • Astral (maker of uv, Ruff, and Ty) has an agreement to join OpenAI as part of the Codex team.
  • AI middleware packages should be included in standard supply-chain threat models because they often sit near API keys, cloud credentials, and internal configuration.
  • HTTPX has not had a release since November 2024, and a fork named HTTPXYZ was created due to unreleased fixes and eroding upstream trust.

Agentic-Ai-Runtime-Governance-And-Control-Points

  • Ian Swanson asserted that Prisma AIRS v3 shifts focus from securing AI applications and models to securing the broader agentic enterprise.
  • Rich Campagna asserted that CA/Browser Forum actions include a March 2026 reduction in maximum certificate lifetime from roughly 398 days to 200 days, with further reductions planned.
  • Ian Swanson asserted that attackers are increasingly targeting AI supply chains by poisoning critical AI assets as AI adoption expands.

Ai-Supply-Chain-And-Agentic-Risks-Require-Zero-Trust-And-Runtime-Guardrails

  • A speaker asserts that attackers are increasingly targeting AI supply chains by poisoning critical AI assets as AI adoption expands.
  • Prisma AIRS v3 shifts focus from securing AI applications and models to securing the broader agentic enterprise.
  • NGTS supports the ACME protocol (v1 and v2) for automated certificate management workflows.

Onchain Term-Structure Emergence Via Yield Tokenization

  • The on-chain yield curve can slope downward (backwardation) or upward (contango), with December 2024 cited as a backwardation snapshot and April 2025 as a contango snapshot.
  • Ethena’s carry yield passed to sUSDe holders has historically been around 5–10% and has sometimes reached roughly 25%.
  • Implied yields on Pendle are almost always priced at a premium to the underlying realized yield.

Curve Slope As Market State Indicator

  • The on-chain yield curve can slope downward (backwardation) or upward (contango), and December 2024 is cited as a backwardation snapshot while April 2025 is cited as a contango snapshot.
  • Over the past year, DeFi has developed on-chain building blocks that enable a tradable yield curve with meaningful depth rather than only backward-looking headline yields.
  • A large share of Ethena instruments has been traded on Pendle, with about 20–60% of supply represented there and several billion dollars of notional.

Governance, Failure Modes, And Operational Constraints Of Metric-Driven Loops

  • A central objection raised about the approach is that collapsing complex business decisions into a single numeric score can oversimplify them.
  • At the time of recording, Auto Research was described as roughly 600 lines of Python and had around 57,000 GitHub stars.
  • In an initial machine-learning application, Auto Research reportedly enabled hundreds of experiments over a couple of days and yielded about 20 genuine improvements and an 11× speedup for the targeted task.

Institutional Shift Toward Stablecoins And Tokenization

  • Stablecoin adoption and tokenization interest from traditional financial institutions accelerated at DAS, with increased focus on bringing capital markets activity on-chain.
  • Institutions increasingly view on-chain infrastructure as enabling 24/7 trading and weekend collateral management that legacy systems cannot support.
  • A speaker reported having made 256 crypto angel investments historically but has recently stopped making new angel investments and is deploying capital more concentratively.

Institutionalization Of Stablecoins And Tokenization

  • Institutions were reported to view on-chain infrastructure as enabling 24/7 trading and weekend collateral management that legacy systems cannot support.
  • A speaker reported having made 256 crypto angel investments historically and reported having stopped making new angel investments recently, deploying capital more concentratively instead.
  • There was reported disagreement over whether prediction-market terms of service and inside-information disclaimers materially matter versus being a sideshow.

Physical Energy Logistics And Nonlinearity (Inventories, Chokepoints, Lng Dependence)

  • Marko Papic stated he is extremely bearish because the situation involves physical supply constraints where molecules cannot reach where they are needed.
  • A RUSI study indicated some U.S. and Israeli munitions could be depleted by mid-April, and Rheinmetall's CEO publicly said the West is out of missiles.
  • At the time of recording, Brent crude futures were around $93 per barrel, down from roughly $101 at the prior recording date.

Military Feasibility Constraints And De-Escalation-By-Constraint Vs Escalation Planning

  • A RUSI study was cited as indicating some U.S. and Israeli munitions could be depleted by mid-April, and Rheinmetall's CEO was cited as saying the West is out of missiles.
  • Even if there is near-term resolution, severe downstream food insecurity could emerge within about nine months due to disruption affecting fertilizer and food supply chains.
  • Adam Silver is pushing an NBA Europe concept involving 12 Europe-based franchises owned or co-owned by the NBA but not part of the NBA league.

Industrial Operations Software: Measurement, Short-Interval Control, And Adoption Gating

  • Automated site data capture (for example, robotic 3D scanning reconciled to the model) enables manufacturing-style short-interval control with hourly or daily goals and dashboarded progress.
  • A company-wide drumbeat cadence provides structure for flat organizations by defining when decisions roll up and enabling intermediate celebrations during long 12–18 month infrastructure cycles.
  • Turner Caldwell stated there was no single core Tesla operating principle he would not mimic, but that implementation should be adjusted to reduce churn, turnover, and burnout.

Hard-Tech Execution As Bottleneck Management (Critical Path, Cadence, Ownership)

  • In the episode, Turner Caldwell stated that a company-wide cadence can provide structure for flat organizations by defining when decisions roll up and enabling intermediate celebrations during long 12–18 month infrastructure cycles.
  • In the episode, Turner Caldwell stated that automated site data capture, such as robotic 3D scanning reconciled to the model, enables manufacturing-style short-interval control with frequent goals and dashboarded progress.
  • In the episode, Chandler Luzsicza asserted that Starship’s production-focused speed came largely from aggressively challenging and removing unnecessary requirements early, enabling simpler designs.

Supply Shocks And Premium Compression In Physical/Numismatic Metals

  • A large new supply can raise prices for truly desired rare items (“supply creates demand”) while pushing down prices for already-common items by making them even more common.
  • Modern U.S. coin grading commonly uses a 1–70 Sheldon-based scale, with Mint State grades from MS60 to MS70 for uncirculated coins.
  • Over the last 10–15 years, the rare coin market has bifurcated: demand is strong for top-quality, truly rare “trophy” coins while demand for more common coins has largely disappeared.

Supply Shocks Premium Compression And Non Linear Price Response

  • In collectible markets, a large new supply can raise prices for truly desired rare items (by stimulating demand/attention) while pushing down prices for already-common items by making them even more common.
  • U.S. coin grading commonly uses a 1–70 Sheldon-based scale, with Mint State grades ranging from MS60 to MS70 for uncirculated coins.
  • Over the last 10–15 years, the rare coin market has bifurcated: demand is strong for top-quality truly rare “trophy” coins, while demand for more common coins has largely disappeared.

Helium Is Critical And Non Substitutable In High Value Industries

  • Helium’s very low boiling point (about 4 K) makes it a key coolant for superconducting magnets and low-temperature physics applications.
  • On Earth, helium is generated by radioactive decay of uranium and thorium, and once released to the atmosphere after use it is effectively lost rather than recoverable from waste streams.
  • Helium supply is presented as being meaningfully linked to the Gulf region.

Helium Is A Critical, Low-Substitutability Industrial Input

  • Helium has industrial uses with limited substitutability in key applications.
  • On Earth, helium is generated by radioactive decay of uranium and thorium, and once released to the atmosphere after use it is effectively lost rather than recoverable from waste streams.
  • Helium pricing is described as not transparent because contracts commonly include confidentiality clauses and there is no clear global delivery hub to support a futures market.

Geopolitical Energy Shock Concentrated In A Chokepoint

  • The duration of any Strait of Hormuz closure and the degree of further escalation are the key variables determining recession risk and the direction of asset markets.
  • Rate-hike pricing in response to the oil shock is low probability and may be narrative-driven, potentially influenced by Governor Waller's comments about sustained energy shocks.
  • A policy regime shift is underway in which deregulation and new access paths such as skinny master accounts aim to increase private-sector participation in payment and liquidity infrastructure.

Geopolitical Chokepoint -> Energy Shock -> Recession Risk

  • Key variables to monitor are the duration of any Strait of Hormuz closure and the degree of further escalation, because these largely determine recession risk and the direction of asset markets.
  • Rate-hike pricing in response to the oil shock is described as surprising and low probability, possibly driven by Governor Waller’s comments about sustained energy shocks.
  • A policy regime shift is described as underway in which deregulation and new access paths (including skinny master accounts) aim to increase private-sector participation in payment and liquidity infrastructure.

Ai Red Teaming Scope Shift To System Assessment

  • In the corpus, the meaning of "AI red teaming" is described as shifting from primarily model safety/alignment/bias testing to end-to-end system testing of deployments that include AI components.
  • The corpus reports that non-human identities already outnumber human identities in many organizations at roughly 82–96 to 1, and that AI deployments further increase machine-identity growth.
  • AI security engagements are described as resembling traditional offensive security assessments because surrounding components (identities, web servers, databases) are largely unchanged, but prompt injection and probabilistic model behavior add new testing requirements.

Identity Sprawl And Token Aggregation As Primary Ai Risk Amplifiers

  • Non-human identities already outnumber human identities in many organizations, reported as roughly 82–96 to 1, and AI deployments further increase machine-identity growth.
  • Within security practice, the meaning of "AI red teaming" has shifted from primarily model safety/alignment/bias testing toward testing end-to-end systems that include AI components.
  • Modern attack-path analysis increasingly crosses multiple identity and cloud stacks (e.g., GitHub, AWS, AD/Entra), and BloodHound's Open Graph extension is used to map identities across arbitrary technology stacks.

Ai-Assisted Porting Throughput And Cost-To-Prototype

  • A first working Go version was built in about 7 hours with approximately $400 in LLM token spend.
  • The team used a one-week shadow deployment running old and new implementations in parallel to confirm behavior matched.
  • The case study frames the effort as having been completed in a day and as saving approximately $500K per year.

Llm-Assisted Porting Speed And Direct Costs

  • A first working version of the Go implementation was built in about 7 hours and used approximately $400 of LLM token spend.
  • The team validated equivalence by running a one-week shadow deployment with old and new implementations in parallel to confirm matching behavior.
  • The case study claims the AI-assisted rewrite would save $500K per year.

Ai-Assisted Porting Outcomes And Cost/Time Metrics

  • The write-up claims a first working Go version was built in 7 hours with approximately $400 in token spend.
  • The write-up claims the key enabling factor for the vibe-porting effort was JSONata's existing test suite.
  • The team used a one-week shadow deployment running old and new versions in parallel to confirm the new implementation matched the old behavior.

Release State Change

  • datasette-showboat version 0.1a2 has been released.
  • The app includes an option to export a Markdown file that enables Showboat to incrementally publish updates to a remote server.

Release State Change

  • datasette-showboat version 0.1a2 has been released.
  • The datasette-showboat app includes an option to export a Markdown file that enables Showboat to incrementally publish updates to a remote server.

Publishing Workflow Incremental Remote Via Markdown

  • The Showboat app includes an option to export a Markdown file.
  • datasette-showboat version 0.1a2 has been released.
  • The Markdown export option is intended to enable Showboat to incrementally publish updates to a remote server.

Chardet 7.0.0 Licensing Obligations (Lgpl) And Evidentiary Predicates

  • Richard Fontana states that he currently sees no basis for concluding that chardet 7.0.0 is required to be released under the LGPL.
  • Richard Fontana states that no one, including Mark Pilgrim, has identified any persistence of copyrightable expressive material from earlier versions in chardet 7.0.0.
  • Richard Fontana states that no one has articulated a viable alternate theory of license violation regarding chardet 7.0.0.

Chardet 7.0.0 Licensing Basis And Evidentiary Predicates

  • Richard Fontana states that he currently sees no basis for concluding that chardet 7.0.0 is required to be released under the LGPL.
  • Richard Fontana states that no one, including Mark Pilgrim, has identified persistence of copyrightable expressive material from earlier versions in chardet 7.0.0.
  • Richard Fontana states that no one has articulated a viable alternate theory of license violation regarding chardet 7.0.0.

Chardet 7.0.0 Lgpl Obligation Dispute And Evidentiary Status

  • Richard Fontana states that he currently sees no basis for concluding that chardet 7.0.0 is required to be released under the LGPL.
  • Richard Fontana states that no one, including Mark Pilgrim, has identified any persistence of copyrightable expressive material from earlier versions in chardet 7.0.0.
  • Richard Fontana states that no one has articulated a viable alternate theory of license violation regarding chardet 7.0.0.