PHP's Best Kept Secret For Eval Reflection Dynamic Execu...

⚡ PHP's Best Kept Secret For Eval Reflection Dynamic Execu... - Code quality comparison! Junior developers make common mistakes, senior devs write clean code. Learn from this! Can you spot all the issues? #PHP #WebDev #CodingTips #coding

#php #programming #coding #webdevelopment #softwareengineering #juniorvssenior #codereview #programmingtips #phptutorial #codingtutorial #bestpractices ...

https://www.youtube.com/watch?v=bCr9NHV7B9A

PHP Best Kept Secret For Eval Reflection Dynamic Execu... #programming

YouTube

I would be a lot more sympathetic to the "code reviews are not for finding bugs" noise if:

- I hadn't, this week, spotted a multiple bugs in multiple code reviews
- I hadn't, this week, spotted a bug in LLM-generated code
- There weren't multiple studies that showed how effective code review is at catching bugs.
- If Copilot reviews hadn't caught bugs in my code

I agree, code review is not _just_ about catching bugs. But this recent attempt to claim, in the face of all the facts, that we don't need to do reviews to catch bugs in LLM-generated code smacks of desperate rationalisation. That's the voice of the hype talking: LLMs will make you 10x, 100x faster, but you're slowing it down by doing all of these _tedious_ reviews.

#LLM #ai #code #bugs #codereview

GitLab 18.10 adds cheap AI code reviews, but do developers actually want them?

https://fed.brid.gy/r/https://nerds.xyz/2026/03/gitlab-agentic-ai-18-10/

GitLab 18.10 adds cheap AI code reviews, but do developers actually want them?

GitLab is pushing agentic AI deeper into development workflows with version 18.10, but developers may question whether they actually need it.

NERDS.xyz

Review Board 7.0.5 is now ready to install!

Featuring:
> Installer support for more Linux distributions
> Linking repositories with the new Bitbucket API tokens
> Improved syntax highlighting
> Bug fixes and hardened security dependencies

https://www.reviewboard.org/news/2026/03/19/review-board-7-0-5-expanded-installation-better-stability/

#codereview #development #releases #changelog

Review Board 7.0.5: Expanded Installation and Better Stability

Today's release of Review Board 7.0.5 simplifies installation across a wide range of Linux distributions, adds support for the new-style Bitbucket API tokens, and fixes several bugs. Expanded Installation Support The following Linux distributions are now supported by the Review Board Installer: Am…

Review Board
The second QA team basically serves to evaluate how well the first QA team is doing; if the first QA team keeps missing defects, fire them. Now, that second QA team has little incentive to produce that outcome for their friends. So maybe they don’t look too hard; after all, the first QA team missed the defect, it’s not unreasonable that we might miss it too.
#Microservices got a bad name because they were too micro; in the original terminology, a “micro” service was exactly the right size for a “two pizza team” to build and operate on their own. With AI, maybe it's one pizza and some tokens.
This about #aiagents for #peerreview besides the #codereview they do #vibecoding
#tailscale
https://tailscale.com/blog/modules-monoliths-and-microservices
https://apenwarr.ca/log/20260316
Modules, Monoliths, and Microservices: A Systems Design Perspective

Learn what are microservices, when are microservices beneficial and how module boundaries impact software design.

📰 AIコードレビューを「単一責任の原則」で育てた話 (👍 55)

🇬🇧 Improving AI code review quality by applying single responsibility principle: splitting agents by concern and teaching failure patterns.
🇰🇷 단일 책임 원칙을 적용하여 AI 코드 리뷰 품질 향상: 관심사별 에이전트 분리와 실패 패턴 학습.

🔗 https://zenn.dev/globis/articles/d0c73d2b176ba5

#AI #CodeReview #Zenn

AIコードレビューを「単一責任の原則」で育てた話

Zenn

Rohan Paul (@rohanpaul_ai)

PR 리뷰에서 아키텍처 토론이 벌어지는 것을 문제 삼으며, PR 리뷰 시간에 설계 논쟁을 하지 않아야 한다는 맥락에서 새로 나온 'Planner' 도구를 긍정적으로 언급하고 있습니다. 문맥상 Planner는 개발 워크플로우나 에이전트 계획을 개선하는 기능으로 소개됩니다.

https://x.com/rohanpaul_ai/status/2034308134509097176

#planner #devtools #codereview #softwareengineering

📢 BSides Luxembourg 2026: Next Session Announced!

𝗛𝗢𝗪 𝗧𝗢 𝗥𝗘𝗔𝗗 𝗖𝗢𝗗𝗘 𝗧𝗢 𝗙𝗜𝗡𝗗 𝗩𝗨𝗟𝗡𝗘𝗥𝗔𝗕𝗜𝗟𝗜𝗧𝗜𝗘𝗦 (2h Workshop) with Louis Nyffenegger (@snyff ), 6 May

The industry needs more security code reviewers. Vulnerabilities are getting deeper, not simpler, and modern applications fail in subtle ways that scanners, and even AI, routinely miss. Meanwhile, developers are writing less code and reviewing more of it than ever (hopefully).

This workshop is a fast, hands-on introduction to reading code with a security mindset. Through real CVE-inspired examples, you’ll see how tiny inconsistencies, misplaced assumptions, and misunderstood framework behaviour turn into real, exploitable flaws. You’ll learn how to detect red flags quickly, identify dangerous patterns in small snippets, and build intuition for where vulnerabilities hide. Whether you’re a developer, pentester or security engineer, you’ll walk away with a foundational methodology for performing clear, consistent, and reliable code reviews.

Led by Louis Nyffenegger: PentesterLab founder, appsec expert (ex-National Bank of Australia, Australia Post, Fitbit), DEFCON/Kawaiicon/BSides speaker, AppSecSchool YouTuber https://pretalx.com/orga/event/bsidesluxembourg-2026/speakers/CZM8Q8/

📅 6–8 May 2026 | 09:00–18:00
📍 14, Porte de France, Esch-sur-Alzette, Luxembourg
🎟️ Tickets: https://2026.bsides.lu/tickets/
🗓️ Schedule link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg2026 #CodeReview #Vulnerabilities #Security

In today's (2026-03-17) chat I'll get the chat mob to review my 99% vibe code Word Games is Dumb app and/or vibe code some more of it. This is the first application I've vibe coded and accepted most of the clanker (AI) recommendations unless they were really dumb. It's in TypeScript, which is a language I'm not familiar with, so I'm curious to hear what TypeScript experts think of the generated code.

Word Games is Dumb: https://wordgamesisdumb.netlify.app/

I found the clanker was good at quickly creating a proof of concept (PoC) for my game ideas. For example, I had one idea that I PoC in an afternoon, tried for a couple days, then ditched it.

Everyone and anyone are welcome to as long as you are kind, supportive, and respectful of others.

https://weeklydevchat.com/join/

P.S. - Image was created using Nano Banana. I love how the text is repeated.

#weeklydevchat #virtual #typescript #vibecoding #ai #codereview

Struggling with the #Java Path API in

safePrefix(Path prefix, Path tail)

to resolve tail onto prefix or return null if the result is not a file **below** prefix. This shall prevent path traversal attacks. The code is ugly.

https://codeberg.org/harald/Codeschnipselnotizen/src/commit/c1c0fdc0463e02f93512f8f8b1b90509c5a82b45/java/de/haraldki/util/PathUtil.java

The tricky shit is in things like safePrefix("..", "..") where Path.normalize() does not what we might like it to do.

I would be happy about any code review I can get. (So boosts would be nice.)

#PathTraversal #path #security #codeReview

Codeschnipselnotizen/java/de/haraldki/util/PathUtil.java at c1c0fdc0463e02f93512f8f8b1b90509c5a82b45

Codeschnipselnotizen - Code snippets and notes

Codeberg.org