At any rate, that decision was used to create a kinda confused deputy-ish attack, which is why it came up in the blogpost, and anyway, hi, I'm not a cryptographer, momentary reminder that I am not a cryptographer, but I have designed cryptographic certificate chains and I was pretty shocked by that
Notices by Raphael Lullis (raphael@mastodon.communick.com)
-
Embed this notice
Christine Lemmer-Webber (cwebber@social.coop)'s status on Saturday, 23-Nov-2024 06:01:02 JST Christine Lemmer-Webber -
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Saturday, 23-Nov-2024 03:32:54 JST Raphael Lullis Headbanging time...
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Saturday, 23-Nov-2024 01:32:58 JST Raphael Lullis @midgephoto @jwildeboer you can never be sure. The point is that any instance that is connected to the larger ones is easy to find and scrape even by the most primitive setups, so it makes little sense to claim that State-level Ators or Big Tech corps would have any trouble to map as much as they want out of it.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 20:18:30 JST Raphael Lullis Even the whole offside calls being made based on the player being half a knee ahead of the defender makes me want to get rid of the tech.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 13:59:10 JST Raphael Lullis @matkeith @Corb_The_Lesser@mastodon.social @popey @thelinuxEXP
You are right, I am not at all aware of what's going in this case.
What I am saying though is this belief that "we would have no problem if everyone just followed CoCs" is misguided, *precisely* because teams can be so diverse in backgrounds and values, which leads to different ideas of what is offensive or not, what is appropriate or not, what is "light humor" and what is "gross and discriminatory", etc, etc.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 10:38:10 JST Raphael Lullis What better way to illustrate that #Bluesky is not decentralized than by knowing that interoperation with the whole network can be unilaterally shut down?
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 03:14:11 JST Raphael Lullis @Corb_The_Lesser @popey @thelinuxEXP
So, yeah, not only you are doubling down on promoting mob rules, you are being overly aggressive for no reason.
I guess it's time to leave you to your own self-righteousness. Have a good one.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 02:45:14 JST Raphael Lullis @Corb_The_Lesser @popey @thelinuxEXP
No disagreement here. But you are failing to address the main point: different people will have different Interpretations in regards to the rules, and they will also have different opinions about what should be the consequences for each violation.
So, yes, while in principle I am on board with the idea of a "Code", I also understand those who disengage out of fear of being unfairly being accused of anything.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 02:06:50 JST Raphael Lullis @popey @Corb_The_Lesser @thelinuxEXP
I am responding to this idea that "rules are only worth anything if they can be enforced", not any specific team that published a CoC and kept it as ultimate doctrine.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 01:37:36 JST Raphael Lullis The interview process could be reduced to a simple process where the recruiter defines a priori what of those skills they would like to verify personally, and what they are satisfied with the crowdsourced assessment.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 01:33:39 JST Raphael Lullis Perhaps I should start working again on https://cupid.careers and make it more than just questions about culture.
Perhaps a system where we have a whole graph of skills (as granular as possible) and people can claim their own expertise level on the skills, and have other people meta-evaluating those claims. From there, each job the interviewer declares the minimum required level of skill(s) to that position and how important they are.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 01:26:55 JST Raphael Lullis Another job interview, another case of "let's test people on something that I like but only marginally related to the functions being performed at the role".
It should not be this complicated.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 00:54:16 JST Raphael Lullis @Corb_The_Lesser @popey @thelinuxEXP
1) Blind adherence to "the rules" brings us to a hellish society with low trust and favor those with authoritarian inclinations.
2) Countless cases in history where "the rules" were created with the interests of an elite and the detriment of "the majority". Jaywalking, for example. Do you think everyone crossing the street on a red light should be fined?
3) Why are you talking about "enforced", if the point I am talking about is "no good due process"?
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Friday, 22-Nov-2024 00:12:33 JST Raphael Lullis @Corb_The_Lesser @popey @thelinuxEXP
I'm not sure I follow. The rules are not for the majority, they should be for everyone. And when you talk about enforcement (when I was talking about due process to judge violations) it seems like you are advocating mob rule.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Thursday, 21-Nov-2024 20:02:50 JST Raphael Lullis The issue of CoC for me is not about the "code", but how to establish a proper way to judge violations in a way that does not become a tyranny of the majority.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Monday, 18-Nov-2024 20:44:55 JST Raphael Lullis Okay, cool. My objection though is to the first post. It doesn't matter whether we are here, Threads, Bluesky or Twitter. When it comes to social media, the only winning move for those concerned about state actors and large corporations is not to play.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Monday, 18-Nov-2024 20:35:33 JST Raphael Lullis Capital-P "privacy" is absolutely incompatible with publishing networks. Telling people that Mastodon is any better in this regard is at best wishful thinking and at worst irresponsible.
We *might* make it work with AP if we have better C2S implementations where end users control the keys and allow for E2EE, but if your threat model involves 3LAs and corporations building your profile, the best solution is to avoid any social network and stick with Signal/Matrix/XMPP.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Monday, 18-Nov-2024 20:18:04 JST Raphael Lullis Oh, please... I was toying with the idea of making a search engine for the Fediverse last year. It took me less than a week to scrape and index 8 million ActivityPub accounts last year, with all of the users posts, including those that had enabled authorized fetch.
From my home computer.
On a shitty 50MB DSL connection from O2.
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Monday, 18-Nov-2024 19:47:16 JST Raphael Lullis How could it not?
-
Embed this notice
Raphael Lullis (raphael@mastodon.communick.com)'s status on Monday, 18-Nov-2024 15:20:20 JST Raphael Lullis Wait, this argument does not hold.
Like you said, the data is already public on ActivityPub. Whatever adversaries interested in building the social graph or analyzing metadata can do so, regardless of your instance location or who is power.