CameronDev

joined 1 year ago
[–] [email protected] 11 points 8 months ago* (last edited 8 months ago) (4 children)

~~I wrote a period tracker app that also encrypts/password protects the data at rest. If you're concerned about someone taking your phone and accessing your data, it may also be worth a look.~~

~~https://github.com/cameroncros/PrivatePeriodTracker~~

~~https://play.google.com/store/apps/details?id=com.cross.privateperiodtracker~~

~~Drip looks better for most people though. But they should add encryption if they dont already have it.~~

Use drip.

[–] [email protected] 27 points 8 months ago (4 children)

I think you make want to go the other way. Making tires more expensive wont make people choose smaller cars, they will choose worse tires. And then they will crash into you because they cant stop.

[–] [email protected] 1 points 8 months ago

Essentially, yeah? Unless you calculate the OTPs by pen and paper, you have to use some kind of software, and therefore you have to trust that it is safe. Writing your own like OP is actually a very safe option, because you can trust yourself, but everyone else needs to trust OP.

Attack vectors apply to the add-on itself, it is (potentially) the shady site. OP has the potential to update the add-on later with its own malicious code. This is true of all addons, hence the trust issue.

I dont have any problem with OP advertising their addon, but potential users should be aware of the risks.

[–] [email protected] 1 points 8 months ago (2 children)

Sorry, wasn't meant to be condescending, you just seem fixated on file size when it sounds like RAM (and/or CPU?) is what you really want to optimise for? I was just pointing out that they arent necessarily correlated to docker image size.

If you really want to cut down your cpu and ram, and are okay with very limited functionality, you could probably write your own webserver to serve static files? Plain http is not hard. But you'd want to steer clear of python and node, as they drag in the whole interpreter overhead.

[–] [email protected] 1 points 8 months ago (4 children)

RAM is not the same as storage, that 50mb docker image isn't going to require 50mb of ram to run. But don't let me hold you back from your crusade :D

[–] [email protected] 6 points 8 months ago (6 children)

Having PHP installed is just unnecessary attack surface.

Are you really struggling for space that 50mb matters? An 8gb usb can hold thar 160x?

[–] [email protected] 2 points 8 months ago

Yeah, there was a lot of reasons. CSAM was just the loud reason.

[–] [email protected] 35 points 8 months ago (12 children)

Just go nginx, anything else is faffing about. Busybox may not be security tested, so best to avoid on the internet. Php is pointless when its a static site with no php. Id avoid freenginx until its clear that it is going to be supported. There is nothing wrong with stock nginx, the fork is largely political rather than technical.

[–] [email protected] 7 points 8 months ago (2 children)

Sure sure, whatever you say Big Dick :D

[–] [email protected] 33 points 8 months ago (4 children)

Yeah, unverified user content had a lot of problems. Also piracy and gore etc.

https://arstechnica.com/tech-policy/2020/12/pornhub-purges-all-unverified-user-uploads-in-wake-of-abuse-allegations/

The purge appears to have hit almost 9 million of the 13.5 million videos on Pornhub as of Sunday, or nearly two-thirds of all the content hosted on the site.

[–] [email protected] 71 points 8 months ago (10 children)

PH had a pretty big problem with CSAM a few years ago, they ended up wiping ~2/3rds of their user submitted content to try fix it. (Note, they wiped all non-verified user submitted videos, not all of it was CSAM).

And im guessing they are trying to catch users who are trending towards questionable material. "College"✅ -> "Teen"⚠️ -> "Young Teen"⚠️⚠️⚠️ -> "CSAM"🚔 etc.

[–] [email protected] 8 points 8 months ago

Europeans are hardcore, we use plastic dummys to crash test our cars, theirs can talk!

Im.on board with buttons, and touch screens should be guesture only.

view more: ‹ prev next ›