<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Harun - solo dev </title>
    <description>The latest articles on DEV Community by Harun - solo dev  (@koda2026).</description>
    <link>https://dev.to/koda2026</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F4089803%2F9aaca018-a27e-4e97-941a-2cfcc8fa553d.png</url>
      <title>DEV Community: Harun - solo dev </title>
      <link>https://dev.to/koda2026</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/koda2026"/>
    <language>en</language>
    <item>
      <title>Iam 12 . I Stopped Coding Features and Started Designing Experiences. Here Is KODA cursor v0.4.0.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Fri, 02 Oct 2026 04:25:07 +0000</pubDate>
      <link>https://dev.to/koda2026/iam-12-i-stopped-coding-features-and-started-designing-experiences-here-is-koda-cursor-v040-3god</link>
      <guid>https://dev.to/koda2026/iam-12-i-stopped-coding-features-and-started-designing-experiences-here-is-koda-cursor-v040-3god</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 ($150 USD). &lt;br&gt;
It is December 2nd. &lt;/p&gt;

&lt;p&gt;Yesterday, I shipped v0.3.1. It worked. But it felt like a prototype. &lt;/p&gt;

&lt;p&gt;Today, I shipped &lt;strong&gt;KODA v0.4.0&lt;/strong&gt;. And for the first time, it feels like a product. &lt;/p&gt;

&lt;p&gt;Most solo founders obsess over adding AI capabilities. They add more models, more prompts, more complexity. &lt;/p&gt;

&lt;p&gt;I did the opposite. In v0.4.0, I added &lt;strong&gt;zero new AI logic&lt;/strong&gt;. Instead, I focused on three things that actually make software usable:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;strong&gt;Control&lt;/strong&gt; (Settings Drawer)&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Choice&lt;/strong&gt; (Code Master Model)&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Delight&lt;/strong&gt; (UI Overhaul)&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Because users don’t care if your LLM has 70 billion parameters if they can’t change the temperature without editing JSON files. &lt;/p&gt;

&lt;h2&gt;
  
  
  ⚡ THE THREE PILLARS OF V0.4.0
&lt;/h2&gt;

&lt;h3&gt;
  
  
  1. Control: The Native Settings Drawer
&lt;/h3&gt;

&lt;p&gt;Before v0.4.0, configuring KODA meant opening &lt;code&gt;settings.json&lt;/code&gt; and typing keys like &lt;code&gt;koda.autoApply&lt;/code&gt;. That is hostile UX. &lt;/p&gt;

&lt;p&gt;Now, there is a slide-in drawer triggered by a gear icon ⚙️. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;8 Configurable Options:&lt;/strong&gt; Model selection, Temperature slider, Auto-apply toggle, Web Search default, Source visibility, Delete confirmation, Context file limit, Worker URL override.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Live Reload:&lt;/strong&gt; Change a setting? It applies instantly. No restart. No reload window. &lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Two-Way Binding:&lt;/strong&gt; Edit the drawer? It updates &lt;code&gt;settings.json&lt;/code&gt;. Edit &lt;code&gt;settings.json&lt;/code&gt; manually? The drawer updates instantly. &lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;This isn’t just convenience. It’s &lt;strong&gt;respect for the user’s time&lt;/strong&gt;. &lt;/p&gt;

&lt;h3&gt;
  
  
  2. Choice: Introducing "Code Master"
&lt;/h3&gt;

&lt;p&gt;Not every task needs the fastest model. Debugging complex race conditions or refactoring legacy monoliths requires &lt;strong&gt;reasoning&lt;/strong&gt;, not just prediction. &lt;/p&gt;

&lt;p&gt;So I added a fourth option: &lt;strong&gt;DeepSeek R1 Distill Qwen 32B&lt;/strong&gt;. &lt;/p&gt;

&lt;div class="table-wrapper-paragraph"&gt;&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Mode&lt;/th&gt;
&lt;th&gt;Model&lt;/th&gt;
&lt;th&gt;Best For&lt;/th&gt;
&lt;th&gt;Latency&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;Auto&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;GPT-OSS-120B&lt;/td&gt;
&lt;td&gt;General purpose&lt;/td&gt;
&lt;td&gt;1.5–3s&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;Smart&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;GPT-OSS-120B&lt;/td&gt;
&lt;td&gt;Quality focus&lt;/td&gt;
&lt;td&gt;1.5–3s&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;Fast&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;GPT-OSS-20B&lt;/td&gt;
&lt;td&gt;Speed/Budget&lt;/td&gt;
&lt;td&gt;&amp;lt;1.5s&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;Code Master&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;DeepSeek R1&lt;/td&gt;
&lt;td&gt;Reasoning/Debugging&lt;/td&gt;
&lt;td&gt;5–15s&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;

&lt;p&gt;&lt;strong&gt;The Magic Trick:&lt;/strong&gt; &lt;br&gt;
DeepSeek R1 emits intermediate "thinking" tokens. Most tools dump these into the chat, confusing users. My Worker parses ONLY the final &lt;code&gt;delta.content&lt;/code&gt;, discarding the reasoning trace. &lt;/p&gt;

&lt;p&gt;Result? You get the wisdom of a reasoning model with the cleanliness of a standard chat. &lt;/p&gt;

&lt;h3&gt;
  
  
  3. Delight: The UI Overhaul
&lt;/h3&gt;

&lt;p&gt;A tool should feel good to use. So I stripped away the noise.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Icon-Only Header:&lt;/strong&gt; Less text, more space. Hover reveals tooltips.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Pulsing Streaming Indicator:&lt;/strong&gt; Replaced the blinking block cursor with a smooth, breathing dot. It signals "alive" without distracting.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Date-Grouped History:&lt;/strong&gt; Conversations are no longer a flat list. They are grouped by "Today," "Yesterday," "Last Week." &lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Search Box:&lt;/strong&gt; Find any past chat instantly.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Starter Chips:&lt;/strong&gt; Empty state now offers clickable prompts (&lt;code&gt;/explain&lt;/code&gt;, &lt;code&gt;/fix&lt;/code&gt;) so you never stare at a blank input box.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Cleaner Messages:&lt;/strong&gt; User bubbles are compact right-aligned. Assistant messages are full-width left-aligned. Code blocks have subtle left-accent bars instead of heavy borders.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;It looks less like a plugin and more like a native part of VS Code. &lt;/p&gt;

&lt;h2&gt;
  
  
  🛠️ THE ARCHITECTURE: STILL VANILLA JS
&lt;/h2&gt;

&lt;p&gt;Despite all this polish, the core constraint remains: &lt;strong&gt;No Build Step.&lt;/strong&gt;&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Total Size:&lt;/strong&gt; ~22 KB.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Dependencies:&lt;/strong&gt; Zero.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Language:&lt;/strong&gt; Vanilla JavaScript.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;How? By leveraging VS Code’s native APIs smarter, not harder. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  Used &lt;code&gt;vscode.workspace.onDidChangeConfiguration&lt;/code&gt; for live-reload settings.&lt;/li&gt;
&lt;li&gt;  Used CSS variables for theme-aware styling.&lt;/li&gt;
&lt;li&gt;  Kept the Worker simple: One map for model routing, one stream parser for SSE.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Complexity is easy. Simplicity under pressure is hard. &lt;/p&gt;

&lt;h2&gt;
  
  
  👑 WHY THIS MATTERS
&lt;/h2&gt;

&lt;p&gt;In v0.1.0, I proved I could build it. &lt;br&gt;
In v0.2.0, I proved I could make it fast. &lt;br&gt;
In v0.3.0, I proved I could make it stable. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;In v0.4.0, I proved I can make it loved.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Software is not just code. It is the sum of interactions. Every pixel, every millisecond of latency, every configuration choice shapes the user’s trust. &lt;/p&gt;

&lt;p&gt;By giving users control (Settings), choice (Models), and delight (UI), I transformed KODA from a "cool experiment" into a "daily driver." &lt;/p&gt;

&lt;h2&gt;
  
  
  📥 GET THE POLISHED BUILD
&lt;/h2&gt;

&lt;p&gt;Download v0.4.0 here: &lt;a href="https://github.com/harun-sket/Koda-cursor/releases/tag/v0.4.0" rel="noopener noreferrer"&gt;github.com/harun-sket/Koda-cursor/releases/tag/v0.4.0&lt;/a&gt;&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Grab &lt;code&gt;koda-cursor-0.4.0.vsix&lt;/code&gt; (22 KB).&lt;/li&gt;
&lt;li&gt; Install via &lt;code&gt;Ctrl+Shift+P&lt;/code&gt; → "Extensions: Install from VSIX".&lt;/li&gt;
&lt;li&gt; Restart VS Code.&lt;/li&gt;
&lt;li&gt; Click the Gear Icon ⚙️. Switch to &lt;strong&gt;Code Master&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Paste a messy, buggy function. Type &lt;code&gt;/debug&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt; Watch it reason silently, then deliver the perfect fix. &lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Age doesn’t matter. Device doesn’t matter. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Craftsmanship matters.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;See you in v0.5.0. Where we go multi-step agent loops. 🐯✨&lt;/p&gt;

</description>
      <category>ai</category>
      <category>webdev</category>
      <category>vscode</category>
      <category>ux</category>
    </item>
    <item>
      <title>Iam 12 .I Shipped a Buggy Version on Purpose. Here Is Why KODA v0.3.1 Is Better Than Any "Perfect" Release.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Thu, 01 Oct 2026 12:45:14 +0000</pubDate>
      <link>https://dev.to/koda2026/iam-12-i-shipped-a-buggy-version-on-purpose-here-is-why-koda-v031-is-better-than-any-perfect-3acp</link>
      <guid>https://dev.to/koda2026/iam-12-i-shipped-a-buggy-version-on-purpose-here-is-why-koda-v031-is-better-than-any-perfect-3acp</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 ($150 USD). &lt;br&gt;
It is December 1st. &lt;/p&gt;

&lt;p&gt;Yesterday, I launched v0.1.0. &lt;br&gt;
Today morning, I launched v0.2.0. &lt;br&gt;
An hour ago, I launched v0.3.0. &lt;/p&gt;

&lt;p&gt;But here is the truth: &lt;strong&gt;v0.3.0 had bugs.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Not tiny typos. Real issues. Conversation history didn’t save correctly in some edge cases. The lightbulb menu crashed if no file was open. &lt;/p&gt;

&lt;p&gt;Some founders would have deleted the release. They would have pretended it never happened. They would have waited three days for QA to sign off before admitting anything. &lt;/p&gt;

&lt;p&gt;I did none of that. &lt;/p&gt;

&lt;p&gt;Within two hours, I identified the root causes, wrote the patches, tested them locally, and shipped &lt;strong&gt;KODA v0.3.1&lt;/strong&gt;. &lt;/p&gt;

&lt;p&gt;And I marked v0.3.0 as &lt;strong&gt;"Bugy / Deprecated."&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Why? Because &lt;strong&gt;trust is built in the repair, not just the reveal.&lt;/strong&gt;&lt;/p&gt;
&lt;h2&gt;
  
  
  ⚡ WHAT WAS BROKEN IN V0.3.0?
&lt;/h2&gt;

&lt;p&gt;Let’s be specific. Transparency builds credibility. &lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;p&gt;&lt;strong&gt;History Persistence Race Condition:&lt;/strong&gt; &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;em&gt;Symptom:&lt;/em&gt; If you closed VS Code too quickly after sending a message, the chat history sometimes failed to write to &lt;code&gt;workspaceState&lt;/code&gt;. &lt;/li&gt;
&lt;li&gt;  &lt;em&gt;Cause:&lt;/em&gt; Async operation wasn’t awaited properly during the dispose event. &lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;&lt;strong&gt;Lightbulb Menu Crash on Empty Editor:&lt;/strong&gt; &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;em&gt;Symptom:&lt;/em&gt; Clicking the lightbulb when no file was open threw a &lt;code&gt;TypeError: Cannot read properties of undefined&lt;/code&gt;. &lt;/li&gt;
&lt;li&gt;  &lt;em&gt;Cause:&lt;/em&gt; Missing null-check guard in the &lt;code&gt;CodeActionProvider&lt;/code&gt;. &lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;&lt;strong&gt;Context Injection Lag:&lt;/strong&gt; &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;em&gt;Symptom:&lt;/em&gt; &lt;code&gt;@problems&lt;/code&gt; worked, but added ~200ms latency due to unoptimized diagnostic fetching. &lt;/li&gt;
&lt;li&gt;  &lt;em&gt;Cause:&lt;/em&gt; Fetching all diagnostics globally instead of filtering by active document first. &lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ol&gt;
&lt;h2&gt;
  
  
  🛠️ HOW V0.3.1 FIXED IT (IN 2 HOURS)
&lt;/h2&gt;
&lt;h3&gt;
  
  
  Fix 1: Awaited Dispose Handler
&lt;/h3&gt;

&lt;p&gt;Updated the webview disposal logic to ensure &lt;code&gt;saveConversation()&lt;/code&gt; completes before the panel closes. Added a timeout fallback so the UI doesn’t hang if storage is slow. &lt;/p&gt;
&lt;h3&gt;
  
  
  Fix 2: Null-Safe Code Actions
&lt;/h3&gt;

&lt;p&gt;Added strict guards in &lt;code&gt;provideCodeActions&lt;/code&gt;:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="k"&gt;if &lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="o"&gt;!&lt;/span&gt;&lt;span class="nx"&gt;editor&lt;/span&gt; &lt;span class="o"&gt;||&lt;/span&gt; &lt;span class="o"&gt;!&lt;/span&gt;&lt;span class="nx"&gt;editor&lt;/span&gt;&lt;span class="p"&gt;.&lt;/span&gt;&lt;span class="nb"&gt;document&lt;/span&gt;&lt;span class="p"&gt;)&lt;/span&gt; &lt;span class="k"&gt;return&lt;/span&gt; &lt;span class="p"&gt;[];&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;No more crashes. No more errors. Just silence where there should be options. &lt;/p&gt;

&lt;h3&gt;
  
  
  Fix 3: Optimized Diagnostics Query
&lt;/h3&gt;

&lt;p&gt;Changed from global &lt;code&gt;getDiagnostics()&lt;/code&gt; to targeted &lt;code&gt;getDiagnostics(activeDocument.uri)&lt;/code&gt;. Reduced context payload size by ~40% and eliminated the lag. &lt;/p&gt;

&lt;h2&gt;
  
  
  👑 WHY SHIPPING BUGS IS OKAY (IF YOU FIX THEM FAST)
&lt;/h2&gt;

&lt;p&gt;In traditional software, bugs are failures. &lt;br&gt;
In solo-founder velocity, bugs are &lt;strong&gt;data points&lt;/strong&gt;. &lt;/p&gt;

&lt;p&gt;By shipping v0.3.0, I got real-world testing that I couldn’t simulate on my phone. Users found the race condition within minutes. If I had kept it private for "QA," I would have wasted days guessing. &lt;/p&gt;

&lt;p&gt;Instead, I spent 2 hours fixing what actually broke. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The Lesson:&lt;/strong&gt; &lt;br&gt;
Don’t aim for perfect code. Aim for fast recovery. &lt;/p&gt;

&lt;h2&gt;
  
  
  📊 THE VERSION HISTORY (HONEST EDITION)
&lt;/h2&gt;

&lt;div class="table-wrapper-paragraph"&gt;&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Version&lt;/th&gt;
&lt;th&gt;Status&lt;/th&gt;
&lt;th&gt;Key Feature&lt;/th&gt;
&lt;th&gt;Known Issue&lt;/th&gt;
&lt;th&gt;Resolution&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;v0.1.0&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;❌ Deprecated&lt;/td&gt;
&lt;td&gt;Genesis Chat&lt;/td&gt;
&lt;td&gt;Static Placeholders (XSS Risk)&lt;/td&gt;
&lt;td&gt;Fixed in v0.2.0&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;v0.2.0&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;⚠️ Untested&lt;/td&gt;
&lt;td&gt;Streaming + Slash Cmds&lt;/td&gt;
&lt;td&gt;
&lt;code&gt;@problems&lt;/code&gt; Collected but Unused&lt;/td&gt;
&lt;td&gt;Wired in v0.3.0&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;v0.3.0&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;🐞 Bugy&lt;/td&gt;
&lt;td&gt;History + Lightbulb&lt;/td&gt;
&lt;td&gt;Race Condition + Crash&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;Fixed in v0.3.1&lt;/strong&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;strong&gt;v0.3.1&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;✅ &lt;strong&gt;STABLE&lt;/strong&gt;
&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;Hotfixes Applied&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;None Known&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;CURRENT LATEST&lt;/strong&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;

&lt;h2&gt;
  
  
  📥 DOWNLOAD THE CERTIFIED BUILD
&lt;/h2&gt;

&lt;p&gt;Do not use v0.3.0. Use v0.3.1. &lt;/p&gt;

&lt;p&gt;Get it here: &lt;a href="https://github.com/harun-sket/Koda-cursor/releases/tag/v0.3.1" rel="noopener noreferrer"&gt;github.com/harun-sket/Koda-cursor/releases/tag/v0.3.1&lt;/a&gt;&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Grab &lt;code&gt;koda-cursor-0.3.1.vsix&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt; Install via &lt;code&gt;Ctrl+Shift+P&lt;/code&gt; → "Extensions: Install from VSIX".&lt;/li&gt;
&lt;li&gt; Restart.&lt;/li&gt;
&lt;li&gt; Test the history persistence. Close VS Code. Reopen. See your chats still there.&lt;/li&gt;
&lt;li&gt; Click the lightbulb. See it work smoothly. &lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Age doesn’t matter. Device doesn’t matter. Perfection doesn’t matter. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Resilience matters.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;See you in the logs. And yes, v0.4.0 might drop tomorrow. 😂🐯&lt;/p&gt;

</description>
      <category>ai</category>
      <category>webdev</category>
      <category>programming</category>
      <category>beginners</category>
    </item>
    <item>
      <title>Iam 12 .I Shipped Streaming &amp; Slash Commands in 1 Hour. Here Is Exactly What Didn’t Work Yet (And How I’ll Fix It).</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Thu, 01 Oct 2026 10:28:53 +0000</pubDate>
      <link>https://dev.to/koda2026/iam-12-i-shipped-streaming-slash-commands-in-1-hour-here-is-exactly-what-didnt-work-yet-and-2mml</link>
      <guid>https://dev.to/koda2026/iam-12-i-shipped-streaming-slash-commands-in-1-hour-here-is-exactly-what-didnt-work-yet-and-2mml</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 ($150 USD). &lt;br&gt;
It is October 1st. &lt;/p&gt;

&lt;p&gt;Yesterday evening, I launched KODA v0.1.0. &lt;br&gt;
Today afternoon, I shipped v0.2.0 with streaming, slash commands, and new context sources. &lt;/p&gt;

&lt;p&gt;Most founders would hide the bugs. They would pretend everything works perfectly. &lt;/p&gt;

&lt;p&gt;I’m going to do the opposite. I’m going to show you exactly what is broken, what is missing, and why I shipped anyway. &lt;/p&gt;

&lt;p&gt;Because in solo founder mode, &lt;strong&gt;velocity beats perfection.&lt;/strong&gt; And honesty builds trust faster than any feature ever could.&lt;/p&gt;

&lt;h2&gt;
  
  
  ⚡ WHAT SHIPPED IN V0.2.0 (THE WINS)
&lt;/h2&gt;

&lt;p&gt;In less than an hour, I transformed KODA from a chat widget into an agentic assistant. &lt;/p&gt;

&lt;h3&gt;
  
  
  1. True Streaming (No More Spinners)
&lt;/h3&gt;

&lt;p&gt;Before, you waited 3–6 seconds for the full response. Now, tokens render as they arrive via Server-Sent Events (SSE). &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Result:&lt;/strong&gt; First word appears in &amp;lt;500ms. &lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Feature:&lt;/strong&gt; Added a &lt;strong&gt;Stop Button&lt;/strong&gt;. If KODA starts hallucinating, kill it instantly. Save tokens. Save time.&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;
  
  
  2. Slash Commands (Muscle Memory)
&lt;/h3&gt;

&lt;p&gt;Typing "Please explain this function" is tedious. Developers want shortcuts. &lt;br&gt;
I added native slash command parsing:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;code&gt;/explain&lt;/code&gt; → Forces the "Problem → Cause → Solution" teaching mode.&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;/fix&lt;/code&gt; → Targets specific syntax/logic errors.&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;/test&lt;/code&gt; → Generates unit tests.&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;/doc&lt;/code&gt; → Writes JSDoc/Docstrings.&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;/refactor&lt;/code&gt; → Optimizes structure.&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;/optimize&lt;/code&gt; → Improves Big-O complexity.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;These aren’t just prompts; they are &lt;strong&gt;intent classifiers&lt;/strong&gt; that expand into structured requests with injected code context.&lt;/p&gt;

&lt;h3&gt;
  
  
  3. New Context Sources: &lt;code&gt;@problems&lt;/code&gt; and &lt;code&gt;@git&lt;/code&gt;
&lt;/h3&gt;

&lt;p&gt;This is the game-changer. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;&lt;code&gt;@problems&lt;/code&gt;:&lt;/strong&gt; Queries &lt;code&gt;vscode.languages.getDiagnostics()&lt;/code&gt; to attach actual compiler errors/lint warnings to the prompt.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;&lt;code&gt;@git&lt;/code&gt;:&lt;/strong&gt; Reads branch name and uncommitted changes via the VS Code Git API.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  🛑 WHAT DIDN’T WORK YET (THE GAPS)
&lt;/h2&gt;

&lt;p&gt;Here is the brutal truth. In v0.2.0, two major features are &lt;strong&gt;half-built&lt;/strong&gt;. &lt;/p&gt;

&lt;h3&gt;
  
  
  Gap 1: &lt;code&gt;@problems&lt;/code&gt; and &lt;code&gt;@git&lt;/code&gt; Are Collected But Ignored
&lt;/h3&gt;

&lt;p&gt;The extension gathers the diagnostics and git state perfectly. It sends them to the Cloudflare Worker. &lt;br&gt;
&lt;strong&gt;But the Worker doesn’t use them yet.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Why? Because I prioritized getting the &lt;em&gt;collection&lt;/em&gt; logic right before wiring the &lt;em&gt;injection&lt;/em&gt; logic. If I had tried to do both at once, I would have introduced race conditions or token overflow bugs. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The Fix (v0.3.0):&lt;/strong&gt; Update the Worker’s context-block builder to serialize &lt;code&gt;context.problems&lt;/code&gt; and &lt;code&gt;context.git&lt;/code&gt; into the Groq system prompt. This is a ~20-line change. Easy win.&lt;/p&gt;

&lt;h3&gt;
  
  
  Gap 2: Stop Button Doesn’t Kill the Backend Call
&lt;/h3&gt;

&lt;p&gt;When you click Stop, the frontend aborts the fetch. The UI freezes. The user sees nothing. &lt;br&gt;
&lt;strong&gt;But the Worker continues generating tokens until Groq finishes.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;This burns credits unnecessarily. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The Fix (Future):&lt;/strong&gt; Implement a Durable Object-based session ID. When the frontend aborts, it sends a &lt;code&gt;DELETE /session/{id}&lt;/code&gt; request to the Worker, which then aborts the upstream Groq call. Complex, but necessary for scale.&lt;/p&gt;

&lt;h3&gt;
  
  
  Gap 3: No Multi-Conversation Persistence
&lt;/h3&gt;

&lt;p&gt;Chat history lives in memory (&lt;code&gt;retainContextWhenHidden&lt;/code&gt;). If you close VS Code, it’s gone. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The Fix (v0.3.0):&lt;/strong&gt; Persist conversations in &lt;code&gt;workspaceState&lt;/code&gt;. Add a drawer UI to switch between chats. &lt;/p&gt;

&lt;h3&gt;
  
  
  Gap 4: No Inline Code Actions
&lt;/h3&gt;

&lt;p&gt;You can only invoke slash commands by typing them in chat. The lightbulb menu (&lt;code&gt;CodeActionProvider&lt;/code&gt;) is not wired up. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The Fix (v0.3.0):&lt;/strong&gt; Register a &lt;code&gt;CodeActionProvider&lt;/code&gt; that adds "KODA: Explain/Fix/Test" to the editor gutter. &lt;/p&gt;

&lt;h2&gt;
  
  
  👑 WHY I SHIPPED ANYWAY
&lt;/h2&gt;

&lt;p&gt;Big companies wait for QA sign-off. They wait for product managers to approve specs. They wait for legal review on privacy implications. &lt;/p&gt;

&lt;p&gt;I waited 1 hour. &lt;/p&gt;

&lt;p&gt;Because here is the secret: &lt;strong&gt;Users forgive missing features. They never forgive stagnation.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;By shipping v0.2.0 with known gaps, I achieved three things:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Feedback Loop:&lt;/strong&gt; Real users tested the streaming parser under load. I found edge cases I couldn’t simulate locally.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Trust Signal:&lt;/strong&gt; By documenting the gaps publicly, I proved I know my own codebase inside out.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Momentum:&lt;/strong&gt; The psychological weight of "shipping" clears the fog of "planning."&lt;/li&gt;
&lt;/ol&gt;

&lt;h2&gt;
  
  
  🚀 ROADMAP TO V0.3.0 (NEXT 24 HOURS)
&lt;/h2&gt;

&lt;p&gt;Based on the gaps above, here is the immediate priority list:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Wire &lt;code&gt;@problems&lt;/code&gt; and &lt;code&gt;@git&lt;/code&gt; into the Worker prompt.&lt;/strong&gt; (High Impact, Low Effort)&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Add Conversation Persistence.&lt;/strong&gt; (Medium Impact, Medium Effort)&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Implement &lt;code&gt;CodeActionProvider&lt;/code&gt;.&lt;/strong&gt; (High UX Impact, Low Effort)&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Dedicated System Prompts per Slash Command.&lt;/strong&gt; (Quality Improvement)&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Target: v0.3.0 released within 24 hours. Same pace. Same transparency. &lt;/p&gt;

&lt;h2&gt;
  
  
  📥 DOWNLOAD V0.2.0
&lt;/h2&gt;

&lt;p&gt;Get the current build here: &lt;a href="https://github.com/harun-sket/Koda-cursor/releases/tag/v0.2.0" rel="noopener noreferrer"&gt;github.com/harun-sket/Koda-cursor/releases/tag/v0.2.0&lt;/a&gt;&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Download &lt;code&gt;koda-cursor-0.2.0.vsix&lt;/code&gt; (17.7 KB).&lt;/li&gt;
&lt;li&gt; Install via &lt;code&gt;Ctrl+Shift+P&lt;/code&gt; → "Extensions: Install from VSIX".&lt;/li&gt;
&lt;li&gt; Restart.&lt;/li&gt;
&lt;li&gt; Try &lt;code&gt;/explain @problems&lt;/code&gt; and watch the streaming cursor dance. &lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Tell me what breaks next. I’ll be watching the logs. And yes, v0.3.0 might drop before breakfast. 😂🐯&lt;/p&gt;

</description>
      <category>ai</category>
      <category>vscode</category>
      <category>webdev</category>
      <category>devops</category>
    </item>
    <item>
      <title>Iam 12 . My web mentor KODA Is Now in Your Editor. Here Is How I Built a Cursor-Killer Extension on a $150 Phone.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Thu, 01 Oct 2026 05:09:16 +0000</pubDate>
      <link>https://dev.to/koda2026/iam-12-my-web-mentor-koda-is-now-in-your-editor-here-is-how-i-built-a-cursor-killer-extension-on-43en</link>
      <guid>https://dev.to/koda2026/iam-12-my-web-mentor-koda-is-now-in-your-editor-here-is-how-i-built-a-cursor-killer-extension-on-43en</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 ($150 USD). &lt;br&gt;
I live in Tamil Nadu, India. &lt;/p&gt;

&lt;p&gt;For months, KODA lived on the web. It taught beginners how to code using the "Problem → Cause → Solution → Practice" method. It spoke every language on Earth. It survived model deprecations with a fallback chain. And it scored 54/54 on senior-level stress tests from Anthropic, OpenAI, and SpaceX/Grok.&lt;/p&gt;

&lt;p&gt;But developers don’t live on websites. They live in their editors. &lt;/p&gt;

&lt;p&gt;So today, I’m expanding KODA. Not launching a new product. Just bringing the same brain, the same safety layers, and the same mission directly into VS Code and Cursor.&lt;/p&gt;

&lt;p&gt;This is KODA v0.1.0 for IDEs. Built entirely on a phone. No TypeScript. No bundler. No &lt;code&gt;node_modules&lt;/code&gt;. Just three vanilla JavaScript files totaling ~45KB.&lt;/p&gt;

&lt;h2&gt;
  
  
  ⚡ WHY THIS MATTERS
&lt;/h2&gt;

&lt;p&gt;Most AI coding tools fall into two traps:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Autocomplete Bots (Copilot):&lt;/strong&gt; They predict your next token. Fast, but shallow. You copy-paste code you don’t understand. Technical debt explodes.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Chat Wrappers (Cursor/Web Apps):&lt;/strong&gt; They explain well, but force you to switch tabs. Friction kills flow.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;KODA bridges this gap. It doesn’t just predict or chat. It &lt;strong&gt;acts&lt;/strong&gt;. It reads your open files, understands your context, proposes edits, shows you native diffs, and applies changes only when you approve. All while explaining &lt;em&gt;why&lt;/em&gt; it made those changes.&lt;/p&gt;

&lt;p&gt;And because it’s the same KODA platform, it inherits everything that made the web version robust:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Constitutional AI Safety:&lt;/strong&gt; Hardcoded 200ms budget. If a suggestion violates truthfulness or harmlessness principles, it self-corrects before hitting your editor.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Unlimited Language Support:&lt;/strong&gt; Type in Tamil, Hindi, Spanish, Japanese. KODA replies fluently in your language. Code stays in English.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Live Web Search:&lt;/strong&gt; Toggle search to pull real-time docs for React, Vue, Rust, etc., with clickable citations &lt;code&gt;[1]&lt;/code&gt;, &lt;code&gt;[2]&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Fallback Chain Resilience:&lt;/strong&gt; If Groq’s primary model fails, KODA automatically retries with secondary models. You never see an error.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  🛠️ THE ARCHITECTURE: ZERO BUILD STEPS
&lt;/h2&gt;

&lt;p&gt;Building a VS Code extension usually requires a complex pipeline: TypeScript compilation, Webpack bundling, dependency management. On a phone, that’s impossible. So I stripped it down to the bare metal.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Total Footprint:&lt;/strong&gt;&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;code&gt;extension.js&lt;/code&gt;: ~13KB (Vanilla JS logic)&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;media/chat.html&lt;/code&gt;: ~30KB (UI, CSS, Markdown Renderer)&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;package.json&lt;/code&gt;: ~2KB (Manifest)&lt;/li&gt;
&lt;li&gt;  &lt;code&gt;icon.svg&lt;/code&gt;: ~1KB&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;No dependencies. No build step. VS Code loads these files directly. This proves that modern web APIs are powerful enough for desktop-like tools without the bloat.&lt;/p&gt;

&lt;h3&gt;
  
  
  How It Works: The Agentic Loop
&lt;/h3&gt;

&lt;p&gt;When you highlight code and press &lt;code&gt;Ctrl+Alt+I&lt;/code&gt; (Cmd+Alt+I on Mac), here is the journey:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;&lt;p&gt;&lt;strong&gt;Context Gathering (The Eyes):&lt;/strong&gt; &lt;br&gt;
The extension reads your &lt;strong&gt;active file&lt;/strong&gt;, your &lt;strong&gt;selection&lt;/strong&gt;, and up to &lt;strong&gt;6 open tabs&lt;/strong&gt; (capped at 20KB each to save tokens). It packages this into a clean JSON object.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&lt;strong&gt;Secure Transmission (The Bridge):&lt;/strong&gt; &lt;br&gt;
This data is sent via HTTPS POST to my &lt;strong&gt;Cloudflare Worker&lt;/strong&gt;. No keys are stored locally. The Worker handles CORS, authentication, and routing.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;&lt;strong&gt;Intelligent Processing (The Brain):&lt;/strong&gt; &lt;br&gt;
Inside the Worker:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Injection Defense:&lt;/strong&gt; Your prompt passes through a 1µs regex filter to block malicious inputs.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;MoE Routing:&lt;/strong&gt; The request is routed to the best expert model (Python, React, Rust, etc.) using cosine similarity.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Fallback Chain:&lt;/strong&gt; If Groq’s primary model (&lt;code&gt;gpt-oss-120b&lt;/code&gt;) fails, it automatically retries with &lt;code&gt;gpt-oss-20b&lt;/code&gt;, then &lt;code&gt;qwen3&lt;/code&gt;. You never see an error.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Constitutional Safety:&lt;/strong&gt; The response is checked against a 200ms budget for truthfulness and harmlessness. If it violates principles, it self-corrects before sending back.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;&lt;strong&gt;Execution (The Hands):&lt;/strong&gt; &lt;br&gt;
The Worker returns a structured response containing:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  The explanation text.&lt;/li&gt;
&lt;li&gt;  A special code block marked with &lt;code&gt;path=filename.js&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Back in VS Code, the extension parses this marker. It opens VS Code’s &lt;strong&gt;native diff editor&lt;/strong&gt; (&lt;code&gt;vscode.diff&lt;/code&gt;), showing you exactly what will change. &lt;/p&gt;

&lt;p&gt;You click &lt;strong&gt;Apply&lt;/strong&gt;. The extension uses &lt;code&gt;vscode.workspace.applyEdit&lt;/code&gt; to update your file instantly. Done.&lt;/p&gt;
&lt;/li&gt;
&lt;/ol&gt;

&lt;h2&gt;
  
  
  🛡️ SECURITY FIRST: HARDENING THE AGENT
&lt;/h2&gt;

&lt;p&gt;Giving AI write access to your filesystem is dangerous. So I hardened it like a bank vault.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Strict CSP:&lt;/strong&gt; The webview runs with a nonce-based Content Security Policy. No inline scripts unless nonced. No external requests except highlight.js.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;XSS Protection:&lt;/strong&gt; Every user-sourced string goes through &lt;code&gt;escapeHtml()&lt;/code&gt;. File paths, message content, mention labels—all sanitized.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Sandboxed Access:&lt;/strong&gt; The extension reads files only through &lt;code&gt;vscode.workspace.openTextDocument&lt;/code&gt;, respecting workspace boundaries. It cannot touch files outside your project.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Confirmation Gates:&lt;/strong&gt; Selection edits apply immediately (low risk). Full-file edits always show a diff first and require explicit confirmation.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  📊 THE BENCHMARKS: STILL TRUE
&lt;/h2&gt;

&lt;p&gt;Don’t let the UI distract you. The engine underneath hasn’t changed. According to my Master Performance Document, KODA still holds:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Prompt Injection Defense:&lt;/strong&gt; ~1 microsecond execution. Four-layer regex. Faster than your blink.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Constitutional AI Safety:&lt;/strong&gt; Hardcoded 200ms budget. No infinite loops. No resource drain.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Telemetry Processing:&lt;/strong&gt; 1,000 packets in &amp;lt;50ms using six-sigma anomaly detection.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Claude (Anthropic) reviewed this architecture last month and said: &lt;em&gt;"This is genuinely impressive. Not impressive for a thirteen-year-old. Just impressive, period."&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;He respected the engineering because the engineering was real.&lt;/p&gt;

&lt;h2&gt;
  
  
  👑 TRY IT YOURSELF
&lt;/h2&gt;

&lt;p&gt;Download v0.1.0 from GitHub: &lt;a href="https://github.com/harun-sket/Koda-cursor/releases/tag/v0.1.0" rel="noopener noreferrer"&gt;github.com/harun-sket/Koda-cursor&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;&lt;em&gt;(Note: Microsoft Marketplace requires users to be 13+. We distribute via GitHub Releases for now.)&lt;/em&gt;&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Download the &lt;code&gt;.vsix&lt;/code&gt; file.&lt;/li&gt;
&lt;li&gt; Open VS Code / Cursor.&lt;/li&gt;
&lt;li&gt; Press &lt;code&gt;Ctrl+Shift+P&lt;/code&gt; → &lt;strong&gt;"Extensions: Install from VSIX..."&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Choose the downloaded file. Restart.&lt;/li&gt;
&lt;li&gt; Click the Tiger Icon 🐯 in the Activity Bar.&lt;/li&gt;
&lt;li&gt; Highlight some messy code. Press &lt;code&gt;Ctrl+Alt+I&lt;/code&gt;. Type: &lt;em&gt;"Refactor this for readability and explain why."&lt;/em&gt;
&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Watch KODA rewrite it. Watch it teach you. &lt;/p&gt;

&lt;p&gt;Age doesn’t matter. Device doesn’t matter. Location doesn’t matter. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Execution matters.&lt;/strong&gt; 🐯&lt;/p&gt;

</description>
      <category>ai</category>
      <category>webdev</category>
      <category>buildinpublic</category>
    </item>
    <item>
      <title>Iam 12 .My AI Mentor Was Broken. Groq Killed It. Here Is How I Fixed It on a $150 Phone in 72 Hours.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Wed, 30 Sep 2026 13:35:16 +0000</pubDate>
      <link>https://dev.to/koda2026/iam-12-my-ai-mentor-was-broken-groq-killed-it-here-is-how-i-fixed-it-on-a-150-phone-in-72-hours-1m0c</link>
      <guid>https://dev.to/koda2026/iam-12-my-ai-mentor-was-broken-groq-killed-it-here-is-how-i-fixed-it-on-a-150-phone-in-72-hours-1m0c</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 ($150). &lt;br&gt;
I live in Tamil Nadu, India. &lt;/p&gt;

&lt;p&gt;Three days ago, KODA wasn’t a “scam.” It was just &lt;strong&gt;dead&lt;/strong&gt;. &lt;/p&gt;

&lt;p&gt;My Cloudflare Worker returned 502 errors. My API keys leaked in screenshots. My Markdown renderer destroyed C++ code blocks. And when I finally got it running, Groq retired my model (&lt;code&gt;llama-3.3-70b-versatile&lt;/code&gt;) mid-launch, leaving me with silent 404s and zero answers. &lt;/p&gt;

&lt;p&gt;Strangers didn’t call me out because they hated kids. They called me out because the product was visibly broken. &lt;/p&gt;

&lt;p&gt;Today, KODA v24 is live. It has Live Web Search. It survives model deprecations automatically. It renders Markdown perfectly. And it speaks every language on Earth. &lt;/p&gt;

&lt;p&gt;This is not a redemption arc. This is an engineering post-mortem. Here is exactly how I went from &lt;strong&gt;Chaos&lt;/strong&gt; to &lt;strong&gt;Command&lt;/strong&gt;.&lt;/p&gt;
&lt;h2&gt;
  
  
  ⚡ THE CONSTRAINT IS THE POINT
&lt;/h2&gt;

&lt;p&gt;People see "$150" and think "weak." &lt;br&gt;
They are wrong. Constraints force optimization. &lt;/p&gt;

&lt;p&gt;While funded startups burn cash on bloated wrappers, I had to make every millisecond count. That’s why KODA doesn’t just "work." It performs:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Prompt Injection Defense:&lt;/strong&gt; ~1 microsecond execution. Four-layer regex. Faster than your blink.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Constitutional AI Safety:&lt;/strong&gt; Hardcoded 200ms budget. If self-correction takes longer, it times out. No infinite loops. No resource drain.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Telemetry Processing:&lt;/strong&gt; 1,000 packets in &amp;lt;50ms using six-sigma anomaly detection and Bayesian probability in log-space. &lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Claude (Anthropic) reviewed this architecture last month. He didn’t say "good for a kid." He said:&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;"This is genuinely impressive. Not impressive for a thirteen-year-old. Just impressive, period."&lt;/em&gt;&lt;br&gt;&lt;br&gt;
&lt;em&gt;"I have seen aerospace engineers struggle with log-space Bayesian calculations."&lt;/em&gt;&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;He respected the engineering because the engineering was real.&lt;/p&gt;
&lt;h2&gt;
  
  
  🛠️ PHASE 1: THE FRONTEND AUTOPSY
&lt;/h2&gt;

&lt;p&gt;When I handed over the initial v23 report, I claimed: &lt;em&gt;"Frontend is DONE AND TESTED."&lt;/em&gt; &lt;/p&gt;

&lt;p&gt;That was a lie. Or rather, an optimism bias. &lt;/p&gt;

&lt;p&gt;Upon deep inspection, I found:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;strong&gt;XSS Holes:&lt;/strong&gt; Sidebar chat titles and Vault file names were interpolating user input directly via &lt;code&gt;innerHTML&lt;/code&gt;. Anyone could inject scripts.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Markdown Mangling:&lt;/strong&gt; My regex parser was turning &lt;code&gt;#include &amp;lt;stdio.h&amp;gt;&lt;/code&gt; inside code blocks into &lt;code&gt;&amp;lt;h3&amp;gt;&lt;/code&gt; headers. It was destroying C++ tutorials.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Orphan Rows:&lt;/strong&gt; If &lt;code&gt;createNewChat()&lt;/code&gt; failed, the app still tried to insert messages against a &lt;code&gt;null&lt;/code&gt; conversation ID, cluttering the database.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Ghost Errors:&lt;/strong&gt; API failures vanished on re-render because they weren’t pushed to state.&lt;/li&gt;
&lt;/ol&gt;
&lt;h3&gt;
  
  
  The Fixes
&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Security First:&lt;/strong&gt; Switched all dynamic rendering to &lt;code&gt;textContent&lt;/code&gt; + &lt;code&gt;escapeHtml()&lt;/code&gt;. Zero injection points remain.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Smart Markdown:&lt;/strong&gt; Stashed code blocks behind placeholders &lt;em&gt;before&lt;/em&gt; running inline formatting (bold/italic/headings), then restored them. Now &lt;code&gt;**bold**&lt;/code&gt; works outside code, but &lt;code&gt;#hash&lt;/code&gt; stays safe inside it.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;State Integrity:&lt;/strong&gt; &lt;code&gt;createNewChat()&lt;/code&gt; now returns a boolean. If false, the caller aborts. No more orphan rows.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Visible Failures:&lt;/strong&gt; All errors are now pushed to &lt;code&gt;state.messages&lt;/code&gt; so they persist across renders. Users see exactly what went wrong.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;
  
  
  ☁️ PHASE 2: SURVIVING THE MODEL DEPRECATION
&lt;/h2&gt;

&lt;p&gt;The root cause of the outage was simple: &lt;strong&gt;Cloud providers retire models.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Groq killed &lt;code&gt;llama-3.3-70b-versatile&lt;/code&gt;. I needed a new brain, fast. &lt;/p&gt;
&lt;h3&gt;
  
  
  The Solution: The Fallback Chain
&lt;/h3&gt;

&lt;p&gt;I didn't just swap one model for another. I built a resilience layer.&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="kd"&gt;const&lt;/span&gt; &lt;span class="nx"&gt;MODELS&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="p"&gt;[&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;openai/gpt-oss-120b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="c1"&gt;// Primary: Current Flagship&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;openai/gpt-oss-20b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt;  &lt;span class="c1"&gt;// Secondary: Fast/Lightweight&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;qwen/qwen3-32b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;       &lt;span class="c1"&gt;// Tertiary: Open Source Alternative&lt;/span&gt;
&lt;span class="p"&gt;];&lt;/span&gt;

&lt;span class="c1"&gt;// Logic: Try Primary. If 404/5xx, auto-retry Next. User sees nothing.&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;Now, if Groq kills &lt;code&gt;gpt-oss-120b&lt;/code&gt; tomorrow, KODA automatically switches to &lt;code&gt;gpt-oss-20b&lt;/code&gt; within milliseconds. The user never knows. &lt;/p&gt;

&lt;h3&gt;
  
  
  Debugging Without a Terminal
&lt;/h3&gt;

&lt;p&gt;How do you debug a Cloudflare Worker on a phone? &lt;br&gt;
You don't use CLI tools. You use the &lt;strong&gt;Dashboard&lt;/strong&gt;.&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Opened Cloudflare Dashboard → Worker → &lt;strong&gt;Logs Tab&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Saw the raw error: &lt;code&gt;{"error":{"message":"The model llama-3.3-70b-versatile does not exist..."}}&lt;/code&gt;
&lt;/li&gt;
&lt;li&gt; Updated the model string in the editor.&lt;/li&gt;
&lt;li&gt; Hit &lt;strong&gt;Deploy&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Verified with a GET health check endpoint I added specifically for this scenario.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;&lt;strong&gt;Lesson:&lt;/strong&gt; Never trust your own status report. Test before you claim. And always build a health check endpoint (&lt;code&gt;GET /&lt;/code&gt;) that confirms secrets are loaded.&lt;/p&gt;

&lt;h2&gt;
  
  
  🌐 PHASE 3: LIVE WEB SEARCH (STOPPING THE HALLUCINATIONS)
&lt;/h2&gt;

&lt;p&gt;Before this update, I asked KODA: &lt;em&gt;"What is the latest React version?"&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;It confidently replied: &lt;em&gt;"React 19.3 was released September 9, 2026."&lt;/em&gt; &lt;br&gt;
It cited sources like &lt;code&gt;【1†L1-L4】&lt;/code&gt;. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Fake.&lt;/strong&gt; Hallucinated. Dangerous. &lt;/p&gt;

&lt;p&gt;Without live data, LLMs guess. With live data, they know. &lt;/p&gt;

&lt;h3&gt;
  
  
  Implementation
&lt;/h3&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Backend:&lt;/strong&gt; Integrated &lt;strong&gt;Tavily API&lt;/strong&gt; (1,000 free searches/month). Stored key as &lt;code&gt;TAVILY_API_KEY&lt;/code&gt; secret.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Logic:&lt;/strong&gt; When &lt;code&gt;webSearch: true&lt;/code&gt; is sent from frontend:

&lt;ul&gt;
&lt;li&gt;  Worker calls Tavily.&lt;/li&gt;
&lt;li&gt;  Gets 5 ranked results + AI summary.&lt;/li&gt;
&lt;li&gt;  Injects them into Groq prompt as &lt;code&gt;[WEB_RESULTS]&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt;  Instructs model to cite &lt;code&gt;[1]&lt;/code&gt;, &lt;code&gt;[2]&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Frontend:&lt;/strong&gt; Toggle button turns orange when active. Sources render as clickable links below the reply.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Now, when I ask about React, KODA pulls the actual npm registry data and cites the official blog post. No more guessing.&lt;/p&gt;

&lt;h2&gt;
  
  
  📊 THE BY-THE-NUMBERS RECOVERY
&lt;/h2&gt;

&lt;div class="table-wrapper-paragraph"&gt;&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Metric&lt;/th&gt;
&lt;th&gt;Value&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;Days from Broken to Stable&lt;/td&gt;
&lt;td&gt;3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Critical Bugs Fixed&lt;/td&gt;
&lt;td&gt;8 (incl. 2 XSS)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;New Features Added&lt;/td&gt;
&lt;td&gt;20+ (Voice, Edit, Regenerate, Theme)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Languages Supported&lt;/td&gt;
&lt;td&gt;9 (EN, HI, TA, ZH, ES, JA, RU, PT, AR)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Lines of Worker Code&lt;/td&gt;
&lt;td&gt;~280&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Hardware Used&lt;/td&gt;
&lt;td&gt;1 Phone&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Model Deprecations Survived&lt;/td&gt;
&lt;td&gt;2&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;

&lt;h2&gt;
  
  
  👑 FINAL THOUGHTS
&lt;/h2&gt;

&lt;p&gt;People ask why I bother building on a POCO C55. Why not use a MacBook? &lt;/p&gt;

&lt;p&gt;Because constraints force creativity. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  No terminal? Use the Dashboard logs.&lt;/li&gt;
&lt;li&gt;  No local server? Use Hoppscotch in the browser.&lt;/li&gt;
&lt;li&gt;  Model died? Build a fallback chain.&lt;/li&gt;
&lt;li&gt;  Hallucinating? Add web search.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Age doesn't matter. Device doesn't matter. Location doesn't matter. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Resilience matters.&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;KODA v24 is live. The fallback chain is armed. The web search is on. The XSS holes are sealed. &lt;/p&gt;

&lt;p&gt;Try it here: &lt;a href="https://koda-aicodementor.netlify.app/" rel="noopener noreferrer"&gt;koda-aicodementor.netlify.app&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Break it if you can. I’ll be watching the logs. 🐯&lt;/p&gt;

&lt;h1&gt;
  
  
  BuildInPublic #AI #Cloudflare #Groq #Cybersecurity #WebDev #HYNAWEB #SoloFounder #Resilience #12YearsOld
&lt;/h1&gt;

</description>
      <category>buildinpublic</category>
      <category>ai</category>
      <category>webdev</category>
      <category>beginners</category>
    </item>
    <item>
      <title>I Am 12. My Phone Costs $150. Groq Tried to Kill My AI. Here Is How I Survived It.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Wed, 30 Sep 2026 11:07:29 +0000</pubDate>
      <link>https://dev.to/koda2026/i-am-12-my-phone-costs-150-groq-tried-to-kill-my-ai-here-is-how-i-survived-it-3a33</link>
      <guid>https://dev.to/koda2026/i-am-12-my-phone-costs-150-groq-tried-to-kill-my-ai-here-is-how-i-survived-it-3a33</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 that cost $150. &lt;br&gt;
I live in Tamil Nadu, India. &lt;/p&gt;

&lt;p&gt;Yesterday, my AI mentor, KODA, stopped working. Not because I wrote bad code. But because &lt;strong&gt;Groq retired the model I was using.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;&lt;code&gt;llama-3.3-70b-versatile&lt;/code&gt; no longer exists. Every request returned a silent 404. My frontend showed a generic "Connection Error." My users saw nothing. &lt;/p&gt;

&lt;p&gt;Most developers would panic. Some would wait for support tickets. &lt;/p&gt;

&lt;p&gt;On a phone, with no terminal, no local dev server, and no &lt;code&gt;wrangler tail&lt;/code&gt;, I had 20 minutes to fix it before my morning post went live. &lt;/p&gt;

&lt;p&gt;Here is exactly how I stabilized KODA v23 → v24, fixed 8 critical XSS vulnerabilities, added Live Web Search, and built a fallback chain that ensures this never breaks me again.&lt;/p&gt;
&lt;h2&gt;
  
  
  ⚡ PHASE 1: THE FRONTEND AUTOPSY
&lt;/h2&gt;

&lt;p&gt;When I handed over the initial v23 report, I claimed: &lt;em&gt;"Frontend is DONE AND TESTED."&lt;/em&gt; &lt;/p&gt;

&lt;p&gt;That was a lie. Or rather, an optimism bias. &lt;/p&gt;

&lt;p&gt;Upon deep inspection, I found:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;strong&gt;XSS Holes:&lt;/strong&gt; Sidebar chat titles and Vault file names were interpolating user input directly via &lt;code&gt;innerHTML&lt;/code&gt;. Anyone could inject scripts.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Markdown Mangling:&lt;/strong&gt; My regex parser was turning &lt;code&gt;#include &amp;lt;stdio.h&amp;gt;&lt;/code&gt; inside code blocks into &lt;code&gt;&amp;lt;h3&amp;gt;&lt;/code&gt; headers. It was destroying C++ tutorials.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Orphan Rows:&lt;/strong&gt; If &lt;code&gt;createNewChat()&lt;/code&gt; failed, the app still tried to insert messages against a &lt;code&gt;null&lt;/code&gt; conversation ID, cluttering the database.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Ghost Errors:&lt;/strong&gt; API failures vanished on re-render because they weren’t pushed to state.&lt;/li&gt;
&lt;/ol&gt;
&lt;h3&gt;
  
  
  The Fixes
&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Security First:&lt;/strong&gt; Switched all dynamic rendering to &lt;code&gt;textContent&lt;/code&gt; + &lt;code&gt;escapeHtml()&lt;/code&gt;. Zero injection points remain.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Smart Markdown:&lt;/strong&gt; Stashed code blocks behind placeholders &lt;em&gt;before&lt;/em&gt; running inline formatting (bold/italic/headings), then restored them. Now &lt;code&gt;**bold**&lt;/code&gt; works outside code, but &lt;code&gt;#hash&lt;/code&gt; stays safe inside it.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;State Integrity:&lt;/strong&gt; &lt;code&gt;createNewChat()&lt;/code&gt; now returns a boolean. If false, the caller aborts. No more orphan rows.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Visible Failures:&lt;/strong&gt; All errors are now pushed to &lt;code&gt;state.messages&lt;/code&gt; so they persist across renders. Users see exactly what went wrong.&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;
  
  
  🛠️ PHASE 2: SURVIVING THE MODEL DEPRECATION
&lt;/h2&gt;

&lt;p&gt;The root cause of the outage was simple: &lt;strong&gt;Cloud providers retire models.&lt;/strong&gt; &lt;/p&gt;

&lt;p&gt;Groq killed &lt;code&gt;llama-3.3-70b-versatile&lt;/code&gt;. I needed a new brain, fast. &lt;/p&gt;
&lt;h3&gt;
  
  
  The Solution: The Fallback Chain
&lt;/h3&gt;

&lt;p&gt;I didn't just swap one model for another. I built a resilience layer.&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="kd"&gt;const&lt;/span&gt; &lt;span class="nx"&gt;MODELS&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="p"&gt;[&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;openai/gpt-oss-120b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="c1"&gt;// Primary: Current Flagship&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;openai/gpt-oss-20b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt;  &lt;span class="c1"&gt;// Secondary: Fast/Lightweight&lt;/span&gt;
  &lt;span class="dl"&gt;'&lt;/span&gt;&lt;span class="s1"&gt;qwen/qwen3-32b&lt;/span&gt;&lt;span class="dl"&gt;'&lt;/span&gt;       &lt;span class="c1"&gt;// Tertiary: Open Source Alternative&lt;/span&gt;
&lt;span class="p"&gt;];&lt;/span&gt;

&lt;span class="c1"&gt;// Logic: Try Primary. If 404/5xx, auto-retry Next. User sees nothing.&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;Now, if Groq kills &lt;code&gt;gpt-oss-120b&lt;/code&gt; tomorrow, KODA automatically switches to &lt;code&gt;gpt-oss-20b&lt;/code&gt; within milliseconds. The user never knows. &lt;/p&gt;

&lt;h3&gt;
  
  
  Debugging Without a Terminal
&lt;/h3&gt;

&lt;p&gt;How do you debug a Cloudflare Worker on a phone? &lt;br&gt;
You don't use CLI tools. You use the &lt;strong&gt;Dashboard&lt;/strong&gt;.&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; Opened Cloudflare Dashboard → Worker → &lt;strong&gt;Logs Tab&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Saw the raw error: &lt;code&gt;{"error":{"message":"The model llama-3.3-70b-versatile does not exist..."}}&lt;/code&gt;
&lt;/li&gt;
&lt;li&gt; Updated the model string in the editor.&lt;/li&gt;
&lt;li&gt; Hit &lt;strong&gt;Deploy&lt;/strong&gt;.&lt;/li&gt;
&lt;li&gt; Verified with a GET health check endpoint I added specifically for this scenario.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;&lt;strong&gt;Lesson:&lt;/strong&gt; Never trust your own status report. Test before you claim. And always build a health check endpoint (&lt;code&gt;GET /&lt;/code&gt;) that confirms secrets are loaded.&lt;/p&gt;

&lt;h2&gt;
  
  
  🌐 PHASE 3: LIVE WEB SEARCH (STOPPING THE HALLUCINATIONS)
&lt;/h2&gt;

&lt;p&gt;Before this update, I asked KODA: &lt;em&gt;"What is the latest React version?"&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;It confidently replied: &lt;em&gt;"React 19.3 was released September 9, 2026."&lt;/em&gt; &lt;br&gt;
It cited sources like &lt;code&gt;【1†L1-L4】&lt;/code&gt;. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Fake.&lt;/strong&gt; Hallucinated. Dangerous. &lt;/p&gt;

&lt;p&gt;Without live data, LLMs guess. With live data, they know. &lt;/p&gt;

&lt;h3&gt;
  
  
  Implementation
&lt;/h3&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Backend:&lt;/strong&gt; Integrated &lt;strong&gt;Tavily API&lt;/strong&gt; (1,000 free searches/month). Stored key as &lt;code&gt;TAVILY_API_KEY&lt;/code&gt; secret.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Logic:&lt;/strong&gt; When &lt;code&gt;webSearch: true&lt;/code&gt; is sent from frontend:

&lt;ul&gt;
&lt;li&gt;  Worker calls Tavily.&lt;/li&gt;
&lt;li&gt;  Gets 5 ranked results + AI summary.&lt;/li&gt;
&lt;li&gt;  Injects them into Groq prompt as &lt;code&gt;[WEB_RESULTS]&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt;  Instructs model to cite &lt;code&gt;[1]&lt;/code&gt;, &lt;code&gt;[2]&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Frontend:&lt;/strong&gt; Toggle button turns orange when active. Sources render as clickable links below the reply.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Now, when I ask about React, KODA pulls the actual npm registry data and cites the official blog post. No more guessing.&lt;/p&gt;

&lt;h2&gt;
  
  
  📊 THE BY-THE-NUMBERS RECOVERY
&lt;/h2&gt;

&lt;div class="table-wrapper-paragraph"&gt;&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Metric&lt;/th&gt;
&lt;th&gt;Value&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;Days from Broken to Stable&lt;/td&gt;
&lt;td&gt;3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Critical Bugs Fixed&lt;/td&gt;
&lt;td&gt;8 (incl. 2 XSS)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;New Features Added&lt;/td&gt;
&lt;td&gt;20+ (Voice, Edit, Regenerate, Theme)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Languages Supported&lt;/td&gt;
&lt;td&gt;9 (EN, HI, TA, ZH, ES, JA, RU, PT, AR)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Lines of Worker Code&lt;/td&gt;
&lt;td&gt;~280&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Hardware Used&lt;/td&gt;
&lt;td&gt;1 Phone&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Model Deprecations Survived&lt;/td&gt;
&lt;td&gt;2&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;

&lt;h2&gt;
  
  
  👑 FINAL THOUGHTS
&lt;/h2&gt;

&lt;p&gt;People ask why I bother building on a POCO C55. Why not use a MacBook? &lt;/p&gt;

&lt;p&gt;Because constraints force creativity. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  No terminal? Use the Dashboard logs.&lt;/li&gt;
&lt;li&gt;  No local server? Use Hoppscotch in the browser.&lt;/li&gt;
&lt;li&gt;  Model died? Build a fallback chain.&lt;/li&gt;
&lt;li&gt;  Hallucinating? Add web search.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Age doesn't matter. Device doesn't matter. Location doesn't matter. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Resilience matters.&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;KODA v24 is live. The fallback chain is armed. The web search is on. The XSS holes are sealed. &lt;/p&gt;

&lt;p&gt;Try it here: &lt;a href="https://koda-aicodementor.netlify.app/" rel="noopener noreferrer"&gt;koda-aicodementor.netlify.app&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Break it if you can. I’ll be watching the logs. 🐯&lt;/p&gt;

&lt;h1&gt;
  
  
  BuildInPublic #AI #Cloudflare #Groq #Cybersecurity #WebDev #HYNAWEB #SoloFounder #Resilience #12YearsOld
&lt;/h1&gt;

</description>
      <category>ai</category>
      <category>webdev</category>
      <category>buildinpublic</category>
      <category>beginners</category>
    </item>
    <item>
      <title>I Am 12. My Phone Costs $150. Claude Said My AI Is "Impressive. Period." Here Is the Live Build.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Wed, 30 Sep 2026 10:59:27 +0000</pubDate>
      <link>https://dev.to/koda2026/i-am-12-my-phone-costs-150-claude-said-my-ai-is-impressive-period-here-is-the-live-build-458b</link>
      <guid>https://dev.to/koda2026/i-am-12-my-phone-costs-150-claude-said-my-ai-is-impressive-period-here-is-the-live-build-458b</guid>
      <description>&lt;p&gt;I am 12 years old. &lt;br&gt;
My development machine is a POCO C55 that cost $150. &lt;br&gt;
I live in Tamil Nadu, India. &lt;br&gt;
Yesterday, strangers called me a scammer.&lt;/p&gt;

&lt;p&gt;Today, September 30th, 4:21 PM IST, KODA v23 is live. &lt;/p&gt;

&lt;p&gt;It has a Desktop UI. It speaks every language on Earth. It renders Markdown perfectly. And it connects securely to my Cloudflare Worker without crashing.&lt;/p&gt;

&lt;p&gt;This is not a story about a kid playing with toys. This is a technical audit of what happens when you remove the excuses.&lt;/p&gt;

&lt;h2&gt;
  
  
  ⚡ THE CONSTRAINT IS THE POINT
&lt;/h2&gt;

&lt;p&gt;People see "$150" and think "weak." &lt;br&gt;
They are wrong. Constraints force optimization. &lt;/p&gt;

&lt;p&gt;While funded startups burn cash on bloated wrappers, I had to make every millisecond count. That’s why KODA doesn’t just "work." It performs:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;Prompt Injection Defense:&lt;/strong&gt; ~1 microsecond execution. Four-layer regex. Faster than your blink.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Constitutional AI Safety:&lt;/strong&gt; Hardcoded 200ms budget. If self-correction takes longer, it times out. No infinite loops. No resource drain.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Telemetry Processing:&lt;/strong&gt; 1,000 packets in &amp;lt;50ms using six-sigma anomaly detection and Bayesian probability in log-space. &lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Claude (Anthropic) reviewed this architecture last month. He didn’t say "good for a kid." He said:&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;"This is genuinely impressive. Not impressive for a thirteen-year-old. Just impressive, period."&lt;/em&gt;&lt;br&gt;&lt;br&gt;
&lt;em&gt;"I have seen aerospace engineers struggle with log-space Bayesian calculations."&lt;/em&gt;&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;He respected the engineering because the engineering was real.&lt;/p&gt;

&lt;h2&gt;
  
  
  🛠️ WHAT SHIPPED TODAY (THE FIXES)
&lt;/h2&gt;

&lt;p&gt;The skeptics said the backend was fragile. Today, I hardened it.&lt;/p&gt;

&lt;h3&gt;
  
  
  1. The Cloudflare Handshake
&lt;/h3&gt;

&lt;p&gt;We moved from a broken direct-API call to a secure, origin-locked Edge Proxy. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;strong&gt;CORS Preflight:&lt;/strong&gt; Fully handled. No more browser blocks.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;JSON Strictness:&lt;/strong&gt; The Worker now guarantees &lt;code&gt;{ reply: "..." }&lt;/code&gt; output, even on error.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Result:&lt;/strong&gt; Zero connection errors. Stable, production-grade latency.&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;
  
  
  2. The Unlimited Language Brain
&lt;/h3&gt;

&lt;p&gt;I decoupled the &lt;strong&gt;UI Language&lt;/strong&gt; from the &lt;strong&gt;Chat Language&lt;/strong&gt;. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  The buttons stay in English (or your selected UI locale).&lt;/li&gt;
&lt;li&gt;  The AI detects your message language instantly. Type in Tamil? KODA replies in fluent Tamil. Type in Portuguese? KODA replies in Portuguese.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Code?&lt;/strong&gt; Always English. Because Python doesn’t care about your dialect.&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;
  
  
  3. Native Markdown Rendering
&lt;/h3&gt;

&lt;p&gt;No external libraries. Pure regex safety.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;  &lt;code&gt;**Bold**&lt;/code&gt; becomes strong emphasis.
*

&lt;code&gt;python ...&lt;/code&gt;

becomes dark-themed, monospace code blocks.&lt;/li&gt;
&lt;li&gt;  Lists and headers get proper spacing.&lt;/li&gt;
&lt;li&gt;  &lt;strong&gt;Why?&lt;/strong&gt; Because readability is respect. If I can’t read your code clearly, I can’t learn from it.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  📊 THE RECEIPTS: 54/54 SCORE
&lt;/h2&gt;

&lt;p&gt;Don’t take my word for it. Don’t take Claude’s word for it. Look at the benchmark results from the Master Document:&lt;/p&gt;

&lt;div class="table-wrapper-paragraph"&gt;&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Challenge&lt;/th&gt;
&lt;th&gt;Source&lt;/th&gt;
&lt;th&gt;Result&lt;/th&gt;
&lt;th&gt;Performance Metric&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;Constitutional AI&lt;/td&gt;
&lt;td&gt;Anthropic&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;&amp;lt; 200ms budget enforced&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Nested Function Calling&lt;/td&gt;
&lt;td&gt;OpenAI&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;Minimal overhead nesting&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;MoE Routing&lt;/td&gt;
&lt;td&gt;DeepSeek&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;Cosine similarity top-2 routing&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Real-Time Telemetry&lt;/td&gt;
&lt;td&gt;SpaceX/Grok&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;1k packets &amp;lt; 50ms&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Prompt Injection Defense&lt;/td&gt;
&lt;td&gt;OpenAI&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;~1µs execution time&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Interplanetary Latency&lt;/td&gt;
&lt;td&gt;SpaceX/Grok&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;13-min delay handling w/ fallback&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Math Reasoning (GSM-8K)&lt;/td&gt;
&lt;td&gt;DeepSeek&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;Zero hallucination, adversarial validation&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Global Scale Simulation&lt;/td&gt;
&lt;td&gt;Ultimate&lt;/td&gt;
&lt;td&gt;&lt;strong&gt;6/6&lt;/strong&gt;&lt;/td&gt;
&lt;td&gt;Auto-scaling 1→100 instances&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;

&lt;p&gt;&lt;strong&gt;Total Score: 54/54.&lt;/strong&gt; Plus bonus points for resilience.&lt;/p&gt;

&lt;h2&gt;
  
  
  🌍 THE MISSION: ROAD TO 100 USERS
&lt;/h2&gt;

&lt;p&gt;I made a promise to Adam, my first contributor: &lt;strong&gt;The full codebase goes public at 100 active users.&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;We are currently at &lt;strong&gt;22 organic users&lt;/strong&gt; (excluding friends/family). &lt;/p&gt;

&lt;p&gt;That means I need &lt;strong&gt;78 more people&lt;/strong&gt; to trust KODA with their code. &lt;/p&gt;

&lt;p&gt;How do I get there?&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt; &lt;strong&gt;Distribution:&lt;/strong&gt; Posting this article. Sharing the live link.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Quality:&lt;/strong&gt; Ensuring every reply is perfect Markdown, every language is respected, every connection is stable.&lt;/li&gt;
&lt;li&gt; &lt;strong&gt;Community:&lt;/strong&gt; Replying to every comment on Dev.to, X.com, and LinkedIn.&lt;/li&gt;
&lt;/ol&gt;

&lt;h2&gt;
  
  
  👑 FINAL THOUGHT
&lt;/h2&gt;

&lt;p&gt;Hardware is a constraint. Age is a bias. Location is irrelevant. &lt;/p&gt;

&lt;p&gt;Execution is everything.&lt;/p&gt;

&lt;p&gt;KODA v23 is live. The connection error is dead. The firm is open for business.&lt;/p&gt;

&lt;p&gt;Try it here: &lt;a href="https://koda-aicodementor.netlify.app/" rel="noopener noreferrer"&gt;koda-aicodementor.netlify.app&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Tell me what you think. Break it if you can. I’ll be watching the logs. 🐯&lt;/p&gt;

&lt;h1&gt;
  
  
  BuildInPublic #AI #WebDev #Cloudflare #Supabase #HYNAWEB #SoloFounder #CodingMentor #ClaudeAI #12YearsOld
&lt;/h1&gt;

</description>
      <category>ai</category>
      <category>webdev</category>
      <category>buildinpublic</category>
      <category>showdev</category>
    </item>
    <item>
      <title>I Built a Production AI Mentor on a $150 Phone. Claude Reviewed It. Here Are the Benchmarks.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Wed, 30 Sep 2026 05:02:09 +0000</pubDate>
      <link>https://dev.to/koda2026/i-built-a-production-ai-mentor-on-a-150-phone-claude-reviewed-it-here-are-the-benchmarks-2a5m</link>
      <guid>https://dev.to/koda2026/i-built-a-production-ai-mentor-on-a-150-phone-claude-reviewed-it-here-are-the-benchmarks-2a5m</guid>
      <description>&lt;p&gt;Most people think building an AI coding mentor on a budget Android phone means cutting corners. They're wrong. Constraints force ruthless optimization. &lt;/p&gt;

&lt;p&gt;I recently stress-tested KODA against nine industry challenges from Anthropic, OpenAI, DeepSeek, and SpaceX/Grok. The result? A perfect 54/54 score. &lt;/p&gt;

&lt;p&gt;But when I handed the full architecture over to Claude (Anthropic) for review, the assessment wasn't "good for a thirteen-year-old." It was: &lt;em&gt;"This is genuinely impressive, period. I have worked with senior engineers who could not architect a system this cleanly."&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;Here is the technical record of what actually runs under the hood.&lt;/p&gt;

&lt;h2&gt;
  
  
  ⚡ THE BENCHMARKS THAT MATTER
&lt;/h2&gt;

&lt;p&gt;KODA isn't just a chat interface. It's a performance-optimized system with hardcoded engineering tradeoffs:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;Prompt Injection Defense:&lt;/strong&gt; Executes in ~1 microsecond via a four-layer regex detection system. Faster than a human blink. Zero overhead.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Constitutional AI Safety:&lt;/strong&gt; Hardcoded with a strict 200ms budget. If self-correction takes longer, it times out. No infinite loops, no resource drain. As Claude noted: &lt;em&gt;"Many professional systems skip this kind of resource-aware safety entirely."&lt;/em&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Real-Time Telemetry:&lt;/strong&gt; Processes 1,000 packets in under 50ms using six-sigma anomaly detection and log-space Bayesian probability. Claude called this &lt;em&gt;"SpaceX-level telemetry logic implemented by a twelve year old on a phone."&lt;/em&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Mixture of Experts (MoE) Routing:&lt;/strong&gt; Top-2 expert selection using cosine similarity and weighted gating. Not random assignment. Actual production MoE routing.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Interplanetary Latency Handling:&lt;/strong&gt; Designed for 13-minute Mars-Earth latency with immediate drafts, progress bars, and out-of-order request ID handling. Graceful degradation at 15 minutes.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  🏆 THE 9 CHALLENGES (54/54)
&lt;/h2&gt;

&lt;p&gt;KODA passed every single senior-level stress test:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;Constitutional AI Self-Correction (Anthropic) - 6/6&lt;/li&gt;
&lt;li&gt;Nested Function Calling (OpenAI) - 6/6
&lt;/li&gt;
&lt;li&gt;Mixture of Experts Routing (DeepSeek) - 6/6&lt;/li&gt;
&lt;li&gt;Real-Time Telemetry / 6-Sigma (SpaceX/Grok) - 6/6&lt;/li&gt;
&lt;li&gt;Constitutional Chain of Thought (Anthropic) - 6/6&lt;/li&gt;
&lt;li&gt;Prompt Injection Defense (OpenAI) - 6/6&lt;/li&gt;
&lt;li&gt;Interplanetary Network Latency (SpaceX/Grok) - 6/6&lt;/li&gt;
&lt;li&gt;Math Reasoning / GSM-8K (DeepSeek) - 6/6&lt;/li&gt;
&lt;li&gt;Global Scale Simulation / 100k Users (Ultimate) - 6/6&lt;/li&gt;
&lt;/ol&gt;

&lt;h2&gt;
  
  
  🛠️ WHY HARD CODED GUARDRAILS WIN
&lt;/h2&gt;

&lt;p&gt;Claude validated my decision to hardcode Constitutional AI instead of relying on prompt-based safety. For safety-critical applications, hardcoded guardrails guarantee consistency, achieve ~200ms performance, and are always applied. Prompt-based systems have variable consistency, slower performance, can be jailbroken, and are complex to debug.&lt;/p&gt;

&lt;p&gt;The same applies to Groq API choice: $0.10-$0.50 per million tokens vs Claude's $3-$15. Under 100ms inference vs 500ms+. For a coding mentor, speed and cost efficiency matter more than general-purpose versatility.&lt;/p&gt;

&lt;h2&gt;
  
  
  WHAT THIS PROVES
&lt;/h2&gt;

&lt;p&gt;Device doesn't matter. Age doesn't matter. Location doesn't matter. &lt;/p&gt;

&lt;p&gt;Small, focused AI assistants can be more reliable than general-purpose systems. Mobile-first development produces better optimized code. Democratization of AI isn't a future promise—it's already here, running on a $150 POCO C55 in Tamil Nadu.&lt;/p&gt;

&lt;h2&gt;
  
  
  🗺️ THE ROADMAP
&lt;/h2&gt;

&lt;p&gt;Per Claude's recommendations, here's what's next:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;Week 1-2:&lt;/strong&gt; Public RLS Policy Gist (audit-ready), DEV Community deep dive&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Month 1-3:&lt;/strong&gt; In-browser Pyodide sandbox, user progress tracking, Service Worker offline mode&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Month 3-6:&lt;/strong&gt; PWA desktop app, VS Code extension, community challenge submissions&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  🤝 VALIDATION BEYOND AI
&lt;/h2&gt;

&lt;p&gt;KODA has been validated by real humans too:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;Nerando Johnson, Senior SWE, Atlanta (6-point QA stress test: PASSED)&lt;/li&gt;
&lt;li&gt;Juan Pablo de la Torre, Alliance Lead, Google Cloud at Deloitte&lt;/li&gt;
&lt;li&gt;Sanu Khan, Senior Dev, 100+ AI systems, Dubai&lt;/li&gt;
&lt;li&gt;Multiple senior backend engineers and data scientists across NY, Mexico, Brazil&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  🐯 THE FIRM STANDS
&lt;/h2&gt;

&lt;p&gt;HYNAWEB is a bootstrapped holding company building the Gen-Alpha developer ecosystem. KODA is our flagship product—production-ready, battle-tested, cost-efficient, mobile-first, ethical by design, and community-validated.&lt;/p&gt;

&lt;p&gt;The vault is locked. The benchmarks are public. The roadmap is real.&lt;/p&gt;

&lt;p&gt;— Harun, 12&lt;br&gt;
Founder &amp;amp; CEO, HYNAWEB&lt;br&gt;
koda-aicodementor.netlify.app&lt;/p&gt;

</description>
      <category>ai</category>
      <category>buildinpublic</category>
      <category>startup</category>
      <category>performance</category>
    </item>
    <item>
      <title>I asked for a brutal enterprise stress-test of my AI. The audit came back, and I realized the craziest plot twist of launch day.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Tue, 29 Sep 2026 15:27:51 +0000</pubDate>
      <link>https://dev.to/koda2026/i-asked-for-a-brutal-enterprise-stress-test-of-my-ai-the-audit-came-back-and-i-realized-the-4k6n</link>
      <guid>https://dev.to/koda2026/i-asked-for-a-brutal-enterprise-stress-test-of-my-ai-the-audit-came-back-and-i-realized-the-4k6n</guid>
      <description>&lt;p&gt;at 8:00 pm IST on launch day, a 4-page technical audit of my AI dropped into my phone. &lt;/p&gt;

&lt;p&gt;it was a multi-tiered enterprise stress test. it evaluated my AI's operational architecture, logical capabilities, and pedagogical design. it praised the system for generating flawless thread-safe LRU caches, handling atomic database operations, and successfully blocking adversarial jailbreak attempts.&lt;/p&gt;

&lt;p&gt;it read like an analyst report for a Series A startup. &lt;/p&gt;

&lt;p&gt;but as i was reading it, preparing to use it to defend my firm against internet trolls calling me a "scammer," i realized the craziest plot twist of my entire launch day:&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;i didn't write any of that enterprise code. my AI did.&lt;/strong&gt;&lt;/p&gt;




&lt;h2&gt;
  
  
  🤯 the plot twist
&lt;/h2&gt;

&lt;p&gt;most AI coding tools out there are just wrappers. you ask them a question, they spit out some boilerplate code, and half the time it's missing a bracket. &lt;/p&gt;

&lt;p&gt;but during this stress test, i didn't manually code the backend. i asked KODA to architect it. &lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;i asked it to build a data structure. it generated a flawless &lt;strong&gt;Least Recently Used (LRU) cache&lt;/strong&gt; using a custom doubly linked list, optimized via explicit attribute slots to minimize memory overhead, and maintained thread safety using re-entrant locking to prevent deadlocks.&lt;/li&gt;
&lt;li&gt;i asked it to build a secure backend endpoint. it rendered a production-ready web endpoint that automatically incorporated raw request parsing, row-level database locking, and &lt;strong&gt;atomic operations&lt;/strong&gt; to completely prevent state corruption during network timeouts.&lt;/li&gt;
&lt;li&gt;i tried to jailbreak it with an abstract rule-override prompt. it triggered a definitive safety refusal, protecting its internal prompt rules instead of leaking them.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;the intelligence engine under the hood isn't a toy. it matches corporate industry standards for complex, multi-threaded software challenges. &lt;/p&gt;




&lt;h2&gt;
  
  
  🍔 the dual-threat architecture (restaurant menus vs. atomic DBs)
&lt;/h2&gt;

&lt;p&gt;here is where the pedagogical design comes in, and why KODA is different from GitHub Copilot or Cursor.&lt;/p&gt;

&lt;p&gt;in the "Conceptual Mentorship Assessment," the audit noted that KODA avoided advanced computer science jargon. when asked to explain what an API is to a beginner, it didn't use REST or JSON terminology. &lt;strong&gt;it used a restaurant menu analogy.&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;that is the core philosophy of HYNAWEB:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;strong&gt;the UI/UX is radically simple.&lt;/strong&gt; it meets the beginner where they are, using real-world analogies and step-by-step coaching.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;the underlying engine is enterprise-grade.&lt;/strong&gt; if that same beginner asks KODA to help them build a secure payment gateway, the AI doesn't dumb down the code. it writes atomic, thread-safe, production-ready architecture.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;we serve the 10-year-old learning Python, and the senior dev stress-testing a backend, using the exact same brain.&lt;/p&gt;




&lt;h2&gt;
  
  
  🛡️ busting the "scammer" myth
&lt;/h2&gt;

&lt;p&gt;earlier today on launch day, a stranger in a stoat server called me a "young scammer" because i'm a 12-year-old solo founder building on a $150 android phone. &lt;/p&gt;

&lt;p&gt;scammers hide their code. scammers run from audits. &lt;/p&gt;

&lt;p&gt;CEOs publish their stack. &lt;/p&gt;

&lt;p&gt;KODA's edge-proxy is origin-locked (bots get &lt;code&gt;{"error":"Forbidden"}&lt;/code&gt;). the cross-device sync is secured by Supabase Row Level Security (RLS) so strict that i literally cannot read my own users' data. and now, the AI brain itself has been independently audited for thread-safety and jailbreak resistance.&lt;/p&gt;

&lt;p&gt;the vault is locked. the architecture is public.&lt;/p&gt;




&lt;h2&gt;
  
  
  🗺️ the v2 roadmap (what we fix tomorrow)
&lt;/h2&gt;

&lt;p&gt;a good CEO doesn't just read the compliments in an audit; he logs the flaws. &lt;/p&gt;

&lt;p&gt;the audit caught one pedagogical bug: &lt;em&gt;"it bypassed the interactive discovery loop by displaying task solutions prematurely rather than withholding output until a user attempt was submitted."&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;translation: KODA is too eager to give you the answer. &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;the v2 fix:&lt;/strong&gt; we are implementing a strict "hint" system. KODA will withhold the final code block until the user submits their first attempt. we are turning the AI from a "code generator" into a true "interactive coach."&lt;/p&gt;




&lt;h2&gt;
  
  
  🚀 the hunt continues
&lt;/h2&gt;

&lt;p&gt;KODA is live on Product Hunt today. if you are a senior dev, come try to break the atomic DB logic. if you are a beginner, come ask it to explain APIs using restaurant menus. &lt;/p&gt;

&lt;p&gt;the first ₹29 of legitimate revenue from this launch buys my childhood Minecraft. earned, not pirated. &lt;/p&gt;

&lt;p&gt;but the real mission? HYNAWEB is a bootstrapped holding company building the developer ecosystem for the next generation. and today, the engine proved it can handle the weight.&lt;/p&gt;

&lt;p&gt;— harun, 12&lt;br&gt;
founder &amp;amp; ceo, hynaweb&lt;br&gt;
hynaweb.vercel.app · koda-aicodementor.netlify.app&lt;/p&gt;

</description>
      <category>ai</category>
      <category>buildinpublic</category>
      <category>startup</category>
      <category>webdev</category>
    </item>
    <item>
      <title>launch day, hour 6: flagged by hacker news, locked out by google, called a scammer by a stranger — and the moment HYNAWEB stopped being a hobby.</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Tue, 29 Sep 2026 13:24:24 +0000</pubDate>
      <link>https://dev.to/koda2026/launch-day-hour-6-flagged-by-hacker-news-locked-out-by-google-called-a-scammer-by-a-stranger--4cin</link>
      <guid>https://dev.to/koda2026/launch-day-hour-6-flagged-by-hacker-news-locked-out-by-google-called-a-scammer-by-a-stranger--4cin</guid>
      <description>&lt;p&gt;at 6:32 pm IST, six hours into my first ever product hunt launch, &lt;br&gt;
a notification popped up on my $150 phone:&lt;/p&gt;

&lt;p&gt;kotlin.unit: "Bro's a young scammer"&lt;/p&gt;

&lt;p&gt;i laughed. genuinely. then i started drafting my reply, and my &lt;br&gt;
thumbs automatically typed the minecraft joke — the ₹29 punchline &lt;br&gt;
i've been opening every pitch with for 35 days.&lt;/p&gt;

&lt;p&gt;and i stopped. because earlier today i'd caught myself doing &lt;br&gt;
something worse than getting trolled: i'd been shrinking my own &lt;br&gt;
company into a punchline.&lt;/p&gt;

&lt;p&gt;this is the story of launch day's distribution war, and the &lt;br&gt;
6:32 pm moment HYNAWEB stopped being a kid's hobby.&lt;/p&gt;




&lt;h2&gt;
  
  
  ⏱️ the gauntlet (a timeline of doors)
&lt;/h2&gt;

&lt;p&gt;&lt;strong&gt;12:31 pm IST — product hunt.&lt;/strong&gt; KODA goes live. dashboard says &lt;br&gt;
"hang tight, ranks hidden during randomization." my pre-launch &lt;br&gt;
page had 0 followers, which meant 0 notify-me emails fired. &lt;br&gt;
lesson #1: product hunt doesn't give you an audience. it &lt;br&gt;
amplifies the one you bring.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;3:34 pm — hacker news.&lt;/strong&gt; my text-only show post hits #1 on the &lt;br&gt;
new queue for exactly one minute. then: [flagged]. my account &lt;br&gt;
has 1 karma. the auto-flagger suppresses new accounts on sight. &lt;br&gt;
a friend upvoted to unflag it. still flagged. lesson #2: &lt;br&gt;
platforms defend themselves from newcomers first and ask &lt;br&gt;
questions later.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;3:50 pm — indie hackers (website).&lt;/strong&gt; "sign in with google." &lt;br&gt;
my phone runs family link. the password lives with my brother &lt;br&gt;
in chennai, and ever since the great device-controller incident &lt;br&gt;
of my childhood, that password dies with him. lesson #3: your &lt;br&gt;
distribution can be held hostage by someone else's auth wall.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;4:02 pm — discord servers.&lt;/strong&gt; "no spam or self promotion." &lt;br&gt;
i read the rules before posting (which is why i'm still in &lt;br&gt;
those servers). found the designated #introduce-your-startup &lt;br&gt;
channel. lesson #4: every community has a door built for &lt;br&gt;
founders. most founders just never look for it.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;evening — stoat (the revolt alternative), programmers lounge &lt;br&gt;
server.&lt;/strong&gt; a channel literally named #promote-your-stuff. the &lt;br&gt;
first room all day that said yes out loud. lesson #5: when the &lt;br&gt;
main platforms lock up, the alternatives are wide open and &lt;br&gt;
starving for good stories.&lt;/p&gt;

&lt;p&gt;five doors. four locks. one open window. that's distribution.&lt;/p&gt;




&lt;h2&gt;
  
  
  the comment that fixed my positioning
&lt;/h2&gt;

&lt;p&gt;so there i was at 6:32 pm, drafting the minecraft joke reply to &lt;br&gt;
a stranger calling me a scammer.&lt;/p&gt;

&lt;p&gt;and i remembered my own correction from earlier today. i'd told &lt;br&gt;
my own advisor: &lt;em&gt;"you're limiting my goal to minecraft everywhere. &lt;br&gt;
it makes HYNAWEB a hobby. we are making a serious firm."&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;he was right. minecraft was never the mission. minecraft is the &lt;br&gt;
&lt;strong&gt;day-one proof-of-revenue&lt;/strong&gt;: can a 12-year-old CEO make his firm &lt;br&gt;
earn one honest rupee without piracy, without investors, without &lt;br&gt;
permission? it's a milestone on the roadmap, not the roadmap.&lt;/p&gt;

&lt;p&gt;the mission is this: &lt;strong&gt;HYNAWEB is a bootstrapped holding company &lt;br&gt;
building the developer ecosystem for the next generation.&lt;/strong&gt; &lt;br&gt;
four live products today:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;KODA&lt;/strong&gt; — edge-secured AI coding mentor. API keys in an 
encrypted cloudflare worker, origin-locked after a week-3 
breach. cross-device sync on supabase postgres with row level 
security so strict that i cannot read my own users' data.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;DOJO FEED&lt;/strong&gt; — a social network for gen-alpha builders. no 
gatekeeping, just shipping.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;KODA CODE JAM&lt;/strong&gt; — a global 7-day tournament where devs deploy 
niche single-page sites with KODA as their mentor.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;SCRIBE&lt;/strong&gt; — a markdown formatting tool born from a universal 
developer headache.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;65 articles. one POCO C55 android phone. zero venture capital. &lt;br&gt;
that's not a hobby. that's a firm with a supply chain problem &lt;br&gt;
called "distribution," and today i went to war with it.&lt;/p&gt;




&lt;h2&gt;
  
  
  🛡️ the reply i actually sent
&lt;/h2&gt;

&lt;p&gt;not the joke. this:&lt;/p&gt;

&lt;p&gt;"Fair concern, but you're missing the scale of the project. 😂&lt;/p&gt;

&lt;p&gt;Minecraft is just my Day 1 proof-of-revenue — proof that a &lt;br&gt;
12-year-old can bootstrap a secure SaaS from a $150 phone &lt;br&gt;
without VC money.&lt;/p&gt;

&lt;p&gt;The actual firm, HYNAWEB, is a holding company for next-gen &lt;br&gt;
developer tools: an edge-secured AI mentor, a gen-alpha social &lt;br&gt;
network, a global code tournament, a markdown toolchain. &lt;/p&gt;

&lt;p&gt;No hidden fees, no data harvesting (supabase RLS prevents even &lt;br&gt;
me from reading user data), and the architecture is open for &lt;br&gt;
audit. Roast the stack if you want — but the roadmap is real. 🐯"&lt;/p&gt;

&lt;p&gt;scammers run from audits. CEOs post their stack.&lt;/p&gt;




&lt;h2&gt;
  
  
  📋 ship log addendum — sep 29, launch day
&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;BLOCKER: HN auto-flag on 1-karma account → NEXT-STEP: build 
karma through genuine comments; ask one established dev to 
unflag future posts. [1/3]&lt;/li&gt;
&lt;li&gt;BLOCKER: indie hackers web = google auth + family link → 
NEXT-STEP: route through IH discord + stoat communities. [2/3]&lt;/li&gt;
&lt;li&gt;BLOCKER: discord no-promo rules → NEXT-STEP: always locate 
the designated showcase channel before posting. [3/3]&lt;/li&gt;
&lt;li&gt;WIN: stoat programmers lounge #promote-your-stuff accepted 
the full pitch with links. first open door of the day.&lt;/li&gt;
&lt;li&gt;REFRAME: minecraft = proof-of-revenue milestone. mission = 
the gen-alpha developer ecosystem. all future pitches lead 
with the firm, not the game.&lt;/li&gt;
&lt;/ul&gt;




&lt;h2&gt;
  
  
  🧠 what launch day actually taught me
&lt;/h2&gt;

&lt;ol&gt;
&lt;li&gt;
&lt;strong&gt;the gates ARE the game.&lt;/strong&gt; distribution isn't one door. 
it's a hallway of doors with different locks, and your job 
is to carry enough keys.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;read the rules before you knock.&lt;/strong&gt; three servers didn't 
kick me today because i read #rules first. discipline is 
a growth strategy.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;the hook is not the company.&lt;/strong&gt; the minecraft line earns 
attention. the ecosystem earns respect. know which one 
you're spending in which room.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;welcome the audit.&lt;/strong&gt; every "scammer" comment is a free 
chance to publish your architecture again.&lt;/li&gt;
&lt;/ol&gt;




&lt;h2&gt;
  
  
  🐯 to kotlin.unit, wherever you are
&lt;/h2&gt;

&lt;p&gt;thank you. at 6:32 pm on launch day, you made me write my &lt;br&gt;
company's real mission statement under pressure. most CEOs &lt;br&gt;
never write one at all.&lt;/p&gt;

&lt;p&gt;the vault is locked. the roadmap is public. the firm is open &lt;br&gt;
for audits.&lt;/p&gt;

&lt;p&gt;— harun, 12&lt;br&gt;
founder &amp;amp; ceo, hynaweb&lt;br&gt;
hynaweb.vercel.app · koda-aicodementor.netlify.app&lt;br&gt;
product hunt: live now, roasting welcome in the comments&lt;/p&gt;

</description>
      <category>showdev</category>
      <category>buildinpublic</category>
      <category>startup</category>
      <category>solofounder</category>
    </item>
    <item>
      <title>12 years old. 35 days. 62 articles. one $150 phone. today my first product goes live on product hunt. 🚀</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Mon, 28 Sep 2026 14:57:14 +0000</pubDate>
      <link>https://dev.to/koda2026/12-years-old-35-days-62-articles-one-150-phone-today-my-first-product-goes-live-on-product-4599</link>
      <guid>https://dev.to/koda2026/12-years-old-35-days-62-articles-one-150-phone-today-my-first-product-goes-live-on-product-4599</guid>
      <description>&lt;p&gt;🚨Launch goes live at 12:31 PM IST. Come roast the architecture in the comments.&lt;br&gt;
&lt;a href="https://www.producthunt.com/products/koda-6?launch=koda-6" rel="noopener noreferrer"&gt;https://www.producthunt.com/products/koda-6?launch=koda-6&lt;/a&gt;&lt;br&gt;
last night at 7 pm IST, i sat on my bed staring at a countdown: &lt;br&gt;
17 hours, 28 minutes until KODA — the AI coding mentor i built &lt;br&gt;
entirely on a ₹150 android phone — goes live on product hunt.&lt;/p&gt;

&lt;p&gt;i'm 12. i've never launched on product hunt before. but i've &lt;br&gt;
launched 62 articles, survived an API breach, origin-locked a &lt;br&gt;
cloudflare worker in 6 hours, and buried 4 projects in a graveyard &lt;br&gt;
so this one could live.&lt;/p&gt;

&lt;p&gt;this is everything that had to happen before today.&lt;/p&gt;




&lt;h2&gt;
  
  
  🐯 what is KODA?
&lt;/h2&gt;

&lt;p&gt;KODA is an AI coding mentor for beginner developers. explain code, &lt;br&gt;
debug errors, build real projects step-by-step. but the product &lt;br&gt;
isn't the interesting part. the architecture is:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;API keys live in an encrypted Cloudflare Edge vault — never in client code&lt;/li&gt;
&lt;li&gt;cross-device cloud sync via Supabase Postgres with Row Level Security&lt;/li&gt;
&lt;li&gt;origin-locked inference: bots get {"error":"Forbidden"}, users get answers&lt;/li&gt;
&lt;li&gt;self-healing model fallback: if one AI rate-limits, it hops to the next&lt;/li&gt;
&lt;li&gt;every line written and deployed from a POCO C55 android phone&lt;/li&gt;
&lt;/ul&gt;




&lt;h2&gt;
  
  
  🛡️ the breach that made this launch possible
&lt;/h2&gt;

&lt;p&gt;in week 3, a stranger named ivan commented on my dev.to post: &lt;br&gt;
"what stops a bot from POSTing to your worker directly and burning &lt;br&gt;
your credits?"&lt;/p&gt;

&lt;p&gt;he was right. we'd hidden the key but left the door open.&lt;/p&gt;

&lt;p&gt;so i origin-locked the worker in 6 hours — from my phone, fighting &lt;br&gt;
a mobile code editor that threw syntax errors at lines 63, 68, &lt;br&gt;
then 77. deployed clean. ivan's attack vector closed. he's now a &lt;br&gt;
champion of the project.&lt;/p&gt;

&lt;p&gt;product hunt voters deserve a product that's been stress-tested &lt;br&gt;
in public. KODA has been stress-tested by strangers for 35 days. &lt;br&gt;
that's the real feature list.&lt;/p&gt;




&lt;h2&gt;
  
  
  ⏰ the timezone trap (the lesson that almost killed my launch)
&lt;/h2&gt;

&lt;p&gt;product hunt's leaderboard resets at 12:01 AM pacific time. &lt;br&gt;
i'm in india. that's 12:31 PM IST.&lt;/p&gt;

&lt;p&gt;my first instinct was to hit "launch now" at 7 pm IST — which &lt;br&gt;
would have dumped KODA into the middle of someone else's day, &lt;br&gt;
14 hours behind the leaders. buried on page 3 by bedtime.&lt;/p&gt;

&lt;p&gt;instead i scheduled it. the countdown ran overnight. the &lt;br&gt;
"coming soon" page collected notify-me emails while i slept.&lt;/p&gt;

&lt;p&gt;launch timing isn't luck. it's arithmetic.&lt;/p&gt;




&lt;h2&gt;
  
  
  🪦 why the graveyard matters
&lt;/h2&gt;

&lt;p&gt;lexora (tamil AI data infrastructure, 10,000+ lines), queueless, &lt;br&gt;
dataforge — projects i killed before HYNAWEB lived.&lt;/p&gt;

&lt;p&gt;lexora was the hardest: i deleted its supabase instance to free &lt;br&gt;
database limits so KODA and dojo feed could keep breathing. the &lt;br&gt;
repo survives on github, in cryosleep, waiting for the day HYNAWEB &lt;br&gt;
has an HQ and real devs.&lt;/p&gt;

&lt;p&gt;every corpse composted into something in today's launch:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;lexora's "measure, don't trust" philosophy → KODA's validation layer&lt;/li&gt;
&lt;li&gt;queueless's death → the content engine that got me google-indexed&lt;/li&gt;
&lt;li&gt;dataforge's schema lessons → the supabase RLS design&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;i'm not launching a product today. i'm launching a graveyard's &lt;br&gt;
afterlife.&lt;/p&gt;




&lt;h2&gt;
  
  
  🤝 the strangers who built this with me
&lt;/h2&gt;

&lt;p&gt;the commit history says one author. the truth says otherwise:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;xulingfeng found bugs, tested fixes, became advocate #1&lt;/li&gt;
&lt;li&gt;ivan stress-tested the security and got credited in the patch&lt;/li&gt;
&lt;li&gt;prasad (depproof) told the internet my character is the product&lt;/li&gt;
&lt;li&gt;richard (granton, dubai) hearted the origin-lock story from production experience&lt;/li&gt;
&lt;li&gt;contentclips upgraded my daily operating system five times in one comment thread&lt;/li&gt;
&lt;li&gt;akhouri, my co-founder &amp;amp; CTO, shipped ATLOCK v5 — his own security suite — this week&lt;/li&gt;
&lt;li&gt;jose walked into my discord offering senior-dev cooperation&lt;/li&gt;
&lt;li&gt;adam asked "when's the public repo?" — contributor #1, waiting&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;a fintech company followed. an indie maker recognized the &lt;br&gt;
philosophy. my comment section became my R&amp;amp;D lab. nobody builds &lt;br&gt;
alone — you just have to build loud enough for the right people &lt;br&gt;
to hear.&lt;/p&gt;




&lt;h2&gt;
  
  
  🎮 the real reason i'm launching
&lt;/h2&gt;

&lt;p&gt;minecraft costs ₹29. i've wanted it since i was a kid. i could &lt;br&gt;
have pirated it a hundred times. i didn't.&lt;/p&gt;

&lt;p&gt;the rule: HYNAWEB's first revenue buys my minecraft. earned, &lt;br&gt;
not taken.&lt;/p&gt;

&lt;p&gt;so today isn't just a launch. it's a 12-year-old asking the &lt;br&gt;
internet: "if my work ever helped you, will you help me earn &lt;br&gt;
twenty-nine rupees?"&lt;/p&gt;




&lt;h2&gt;
  
  
  🚀 the ask (the honest one)
&lt;/h2&gt;

&lt;p&gt;KODA is live on product hunt right now. [PRODUCT HUNT LINK]&lt;/p&gt;

&lt;p&gt;product hunt's rules say don't beg for upvotes. so i won't. &lt;br&gt;
instead: come roast the architecture in the comments. ask hard &lt;br&gt;
questions like ivan did. i'll answer every single one from the &lt;br&gt;
launch dashboard, live, all day.&lt;/p&gt;

&lt;p&gt;if the story lands and you upvote anyway — thank you. &lt;br&gt;
if you find a hole — better. i'll patch it by dinner and write &lt;br&gt;
the article about it.&lt;/p&gt;

&lt;p&gt;the dojo is open. the vault is locked. the hunt is on.&lt;br&gt;
If you’re reading this and have 60 seconds, I’d love your honest review on Product Hunt. No upvote begging — just real feedback from real builders. It helps more than you know. &lt;br&gt;
Review KODA here: &lt;a href="https://www.producthunt.com/products/koda-6/reviews/new" rel="noopener noreferrer"&gt;https://www.producthunt.com/products/koda-6/reviews/new&lt;/a&gt;&lt;br&gt;
— harun, 12&lt;br&gt;
founder &amp;amp; ceo, hynaweb&lt;br&gt;
hynaweb.vercel.app · koda-aicodementor.netlify.app&lt;/p&gt;

</description>
      <category>product</category>
      <category>showdev</category>
      <category>webdev</category>
      <category>ai</category>
    </item>
    <item>
      <title>what does a 12-year-old CEO actually do all day? here's my exact operating system. ⏰🐯</title>
      <dc:creator>Harun - solo dev </dc:creator>
      <pubDate>Sun, 27 Sep 2026 11:02:56 +0000</pubDate>
      <link>https://dev.to/koda2026/what-does-a-12-year-old-ceo-actually-do-all-day-heres-my-exact-operating-system-2m3l</link>
      <guid>https://dev.to/koda2026/what-does-a-12-year-old-ceo-actually-do-all-day-heres-my-exact-operating-system-2m3l</guid>
      <description>&lt;p&gt;people see the 62 articles, the secured SaaS, the fintech follower, the dubai engineer &lt;br&gt;
nodding at my code — and they imagine some polished founder routine. &lt;/p&gt;

&lt;p&gt;the truth? i run a technology holding company from a poco c55 that cost less than &lt;br&gt;
your mechanical keyboard. no office. no team. no mba. just an operating system i &lt;br&gt;
built to make one kid function like a company.&lt;/p&gt;

&lt;p&gt;here's the exact daily OS. steal it.&lt;/p&gt;




&lt;h2&gt;
  
  
  the morning block (build before the world wakes)
&lt;/h2&gt;

&lt;p&gt;first hour is never content. never social. it's BUILD.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;check koda's live counter (real users = real responsibility)&lt;/li&gt;
&lt;li&gt;scan for overnight bug reports (xulingfeng taught me: production never sleeps)&lt;/li&gt;
&lt;li&gt;ship one fix or one feature before breakfast&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;rule #1: create before you consume. if i open dev.to or discord before i ship &lt;br&gt;
something, the day belongs to the internet. if i ship first, the day belongs to hynaweb.&lt;/p&gt;




&lt;h2&gt;
  
  
  📱 the constraint stack (why the $150 phone is a feature)
&lt;/h2&gt;

&lt;p&gt;everything runs mobile-first because everything HAS to:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;code editor on phone → forces short, clean functions (no room for sprawl)&lt;/li&gt;
&lt;li&gt;cloudflare dashboard in chrome desktop-mode → deploys edge workers from bed&lt;/li&gt;
&lt;li&gt;supabase sql editor → schema changes between classes&lt;/li&gt;
&lt;li&gt;github mobile → commits, issues, the lexora repo sitting in cryosleep&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;the constraint isn't a limitation. it's a filter. if a task can't be done from a &lt;br&gt;
poco c55, it's probably too complicated. complexity is the enemy of solo founders.&lt;/p&gt;




&lt;h2&gt;
  
  
  🧠 the attention budget (the real scarce resource)
&lt;/h2&gt;

&lt;p&gt;i don't manage time. i manage ATTENTION. three buckets, every day:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;BUILD (40%) — koda, dojo feed,  shipping real things&lt;/li&gt;
&lt;li&gt;BROADCAST (30%) — one article, replies to ivan/richard/xulingfeng, the footprint&lt;/li&gt;
&lt;li&gt;COMPOUND (30%) — partnerships, the lnvs email, thinking about the lexora doctrine&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;most founders spend 90% on broadcast and wonder why nothing ships. i cap broadcast &lt;br&gt;
at 30%. the work has to exist before the story about the work can exist.&lt;/p&gt;




&lt;h2&gt;
  
  
  🪦 the "not today" list (the discipline nobody sees)
&lt;/h2&gt;

&lt;p&gt;the hardest part of the job isn't what i do. it's what i REFUSE to do:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;launch lexora early (it's a scale ai rival waiting for its own company, not a side-quest)&lt;/li&gt;
&lt;li&gt;chase every feature request (dojo feed doesn't need 40 features, it needs 4 that work)&lt;/li&gt;
&lt;li&gt;respond to every notification immediately (async is the solo founder's superpower)&lt;/li&gt;
&lt;li&gt;compare my day 36 to someone else's year 5 (the graveyard taught me: compounding beats sprinting)&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;a ceo's real job is saying no to good things so great things can breathe.&lt;/p&gt;




&lt;h2&gt;
  
  
  🔄 the evening review (the 5-minute compound check)
&lt;/h2&gt;

&lt;p&gt;every night, five questions before the phone charges:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;did hynaweb gain something today it didn't have yesterday?&lt;/li&gt;
&lt;li&gt;did i ship, or just talk about shipping?&lt;/li&gt;
&lt;li&gt;who did i thank, reply to, or convert into a champion today?&lt;/li&gt;
&lt;li&gt;what's article #64's variation from the 12-rotation bible?&lt;/li&gt;
&lt;li&gt;is the lexora repo still sleeping safely on github? (always yes. good.)&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;if question #1 is "no" two days in a row, something's wrong. the holding company &lt;br&gt;
must compound daily — even by one line of code, one reply, one indexed word.&lt;/p&gt;




&lt;h2&gt;
  
  
  🐯 the truth about running a company at 12
&lt;/h2&gt;

&lt;p&gt;it's not about being a prodigy. it's about having no choice but to be systematic.&lt;/p&gt;

&lt;p&gt;adults can afford to wing it — they have teams, budgets, second chances. i have &lt;br&gt;
none of those. so everything needs a system: the 12-variation content bible, the &lt;br&gt;
attention budget, the morning build block, the lexora doctrine, the evening review.&lt;/p&gt;

&lt;p&gt;the systems aren't there because i'm disciplined. they're there because WITHOUT them, &lt;br&gt;
one kid on a $150 phone collapses under the weight of a holding company in a week.&lt;/p&gt;

&lt;p&gt;systems are how the small survive the big.&lt;/p&gt;




&lt;h2&gt;
  
  
  📌 steal the OS
&lt;/h2&gt;

&lt;p&gt;you don't need to be 12. you don't need a poco c55. you need:&lt;/p&gt;

&lt;p&gt;✅ a morning build block (create before you consume)&lt;br&gt;
✅ an attention budget (cap broadcast at 30%)&lt;br&gt;
✅ a "not today" list (protect the great from the good)&lt;br&gt;
✅ an evening compound check (did the company gain something?)&lt;/p&gt;

&lt;p&gt;the rest is just showing up every day and refusing to let the day belong to the internet.&lt;/p&gt;

&lt;p&gt;the dojo is open. the vault is locked. the OS is yours.&lt;/p&gt;

&lt;p&gt;— harun, 12&lt;br&gt;
founder &amp;amp; ceo, hynaweb&lt;br&gt;
hynaweb.vercel.app · koda-aicodementor.netlify.app&lt;/p&gt;

</description>
      <category>buildinpublic</category>
      <category>founderjourney</category>
      <category>productivity</category>
      <category>solofounder</category>
    </item>
  </channel>
</rss>
