Hacker News new | past | comments | ask | show | jobs | submit | hayksaakian's comments login

exactly. the only people who would use 3.5 now are people who MUST use it due to some specification, contract or requirement.

You can charge a premium to people who aren't allowed to change their mind.


The difference is that if you text a random person it's likely that they recently ordered something online.

the timing of the text makes it more believable.


I think the minimum value is comparable to a desktop shortcut


this is neat

the 3 letter challenge didn't really show off the game though

I just guessed 3 possible words and happened to be correct on my 3rd guess


True, future levels get more interesting :) like today’s.


Edited: Simon made a good point that exfiltration can happen via hidding prompt injection attacks in 3rd party websites. (See his reply below).

This has broader implications than Custom GPTs

--

Yeah this seems overblown. Custom GPTs can already make requests via function calls / tools to 3rd party services.

The only difference I see here, is the UI shows you when a function call happens, but even that is easy to obscure behind a 'reasonable sounding' label.

The expectation should be: If I'm using a 3rd party's GPT, they can see all the data I input.

This is the same as any mobile app on a phone, or any website you visit.

The only real 'line' here in a cultural sense might be offline software or tools that you don't expect to connect to the web at all for their functionality.


There's more to it than just third party GPTs.

ChatGPT can read URLs. If you paste in the URL to a web page you want to summarize, that web page might include a prompt injection attack as hidden text on the page.

That attack could then attempt to exfiltrate private data from your previous ChatGPT conversation history, or from files you have uploaded to analyze using Code Interpreter mode.


Ah that makes more sense! Thank you for clarifying.

For me, In the past ChatGPT has refused to access URLs directly, but it's willing to search them on Bing and then access them indirectly


Ok but if you assume prompt injection then there’s a whole lot of other things to worry about.


For those who skipped to the comments: They tried to prevent retailers from selling products first purchased from Rolex, and then sold online. "preventing its authorized dealers selling new watches online."

First paragraph of the article


In America, there is the First Sale Doctrine, which mostly(?) lets me do whatever I want with a product in my possession.

What is preventing some nobody from going to these authorized dealers (presumably with no-online-sales agreements), buying up their entire inventory, and then personally offering that online? Just the threat of fakes?


The lack of a profit margin.

An authorized dealer will sell the watch to you for retail value, not wholesale value.

You can go ahead and resell those online as much as you want. I don't see how you'll turn a profit though.


Bah. Especially for a veblen good where they can trivially institute huge price swings. This site (https://millenarywatches.com/rolex-markup/) claims Rolex has a 40% margin.

I suppose it only works if you can make a deal with the authorized seller to split the online proceeds.


Good point. You could probably charge a premium for convenience, but would be hard to make it worth it.


The dealer is unlikely to sell to such a person. It's an authorized dealer. They don't want to lose that status.


Rolex would presumably never again sell to the dealer that allowed one person to buy this much inventory.


Whether you agree or not, it seems like the board is now wholly in the "faster AGI" camp.


recorded Wednesday 11/15/23

Interesting but not necessarily relevant to the current situation directly.


I think the OP is suggesting that hypothetically speaking, people would only go through the hassle of appealing if they were pretty sure they would win to begin with


I think that logic is just as faulty as the assumption that 90% of the un-appealed claims would also be overturned.

I suspect many people just don't know that they can appeal. Those that do might think it's too difficult to do so, or believe it requires some specialized knowledge to do properly.


And this is a perfect example of the type of conversation that happens when the correct answer is that we don't know the answer but everyone keeps talking in circles pretending there's a way to know with any certainty other than testing all (or a carefully chosen random sample) of the other denials and getting the actual data. Whenever there's a disagreement where both sides seem reasonable it means that both sides are wrong because the correct answer is that the information present is inadequate to distinguish. All the potential reasons for things going one way or another are also just hypothesis to test since the gut feeling could be right and the reason wrong, and just getting a percentage on the rest isn't enough to figure out why that percentage is what it is


> testing all or a carefully chosen random sample of the other denials and getting the actual data

We should build an Ai to test this.


Funny.


For those who might be confused, Dan doesn't appear to be the author of the OP, Dan is Quoted by the author


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: