GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    silverpill (silverpill@mitra.social)'s status on Wednesday, 05-Nov-2025 04:18:34 JST silverpill silverpill
    • Marius

    @Marius Why some of your activities have both actor and attributedTo ?

    I currently reject these.

    In conversation about 2 months ago from mitra.social permalink
    • Embed this notice
      silverpill (silverpill@mitra.social)'s status on Wednesday, 05-Nov-2025 04:58:13 JST silverpill silverpill
      in reply to
      • marius
      • Marius

      @mariusor @Marius I use these properties to determine who is the owner of an object. When both are present the result is ambiguous and that leads to a security risk in one situation which is currently theoretical but may be important for the client-to-server protocol that I am designing.

      So I made the validator more strict to see who is generating objects with ambiguous ownership. Your actor and attributedTo are the same but I currently don't account for that.

      In conversation about 2 months ago permalink

      Attachments


    • Embed this notice
      marius (mariusor@metalhead.club)'s status on Wednesday, 05-Nov-2025 04:58:15 JST marius marius
      in reply to
      • Marius

      @silverpill there's no particular reason, that's how they came out of the random object generator.

      It's not really against spec to have attributedTo on an activity. Why do you reject them?

      I'll probably streamline it to just the actor, to keep the tests to minimal relevant details, so thanx. :)

      @marius

      In conversation about 2 months ago permalink
    • Embed this notice
      silverpill (silverpill@mitra.social)'s status on Thursday, 06-Nov-2025 06:11:33 JST silverpill silverpill
      in reply to
      • marius

      @mariusor I ended up turning strict ownership validation off for S2S activities because some other implementations also add attributedTo to their activities.

      In conversation about 2 months ago permalink
    • Embed this notice
      marius (mariusor@metalhead.club)'s status on Thursday, 06-Nov-2025 06:11:35 JST marius marius
      in reply to
      • Marius

      @silverpill I feel like validating that if they exist, they should both point to the same actor is a better strategy. (Which I think is what I've been doing in GoActivityPub)

      @marius

      In conversation about 2 months ago permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.