Working on building the Decayable Art site. One piece at a time.
Timeline
Post
Remote status
Context
9
@matty email + magic link is total niggercoal. don't do that.
If people want to sign up, just let them make username and password.
They'll want to use disposable ones
If people want to sign up, just let them make username and password.
They'll want to use disposable ones
Nope, don't care. Not handling password hashing and salting/breaches.
@matty don't you already handle this for ncd
I did not write the code for NCD. I only have patched/changed the frontend code. I do not know Elixir (I'd like to) but my focus is on React and NodeJS. If I'm going to build something, I'm going to make sure it's as secure as I can make it, and email security/OAuth is out of my hands for the most part.
@matty >React
looks like you got bigger fish to fry lol
joke aside, doesn't this setup still leak emails in the event of a breach?
looks like you got bigger fish to fry lol
joke aside, doesn't this setup still leak emails in the event of a breach?
I like React. It's a fun toy language for people like me who cannot take the time to learn C. I'd like to pick up Python eventually for machine learning/AI tasks eventually but I want to master this first.
Yes, but anyone on this side of the internet dumb enough to use firstnamelastname@gmail.com for their email is more or less asking for it. Besides, the platform isn't going to be for WN/fashy shit. It's just an art repository for their usage. If you cannot be fucked to use one of your fourteen burner Protonmail accounts to sign in then I'm not sure what to tell you.
Yes, but anyone on this side of the internet dumb enough to use firstnamelastname@gmail.com for their email is more or less asking for it. Besides, the platform isn't going to be for WN/fashy shit. It's just an art repository for their usage. If you cannot be fucked to use one of your fourteen burner Protonmail accounts to sign in then I'm not sure what to tell you.
@matty protonmail blocks verification and otc links on new accounts now btw, you need to verify.
>anyone on this side of the internet dumb enough to use firstnamelastname@gmail.com for their email is more or less asking for it
I agree. Why are you so worried about the salting/hashing and leakage of passwords though?
Not intentionally being annoying, just interested.
>anyone on this side of the internet dumb enough to use firstnamelastname@gmail.com for their email is more or less asking for it
I agree. Why are you so worried about the salting/hashing and leakage of passwords though?
Not intentionally being annoying, just interested.
@WandererUber protonmail's verification requirement is literally a cheeto lock.
i just used temp-mail.org and it works.
doesn't even prompt extra security when I log in from a new IP, just don't lose your password.
i just used temp-mail.org and it works.
doesn't even prompt extra security when I log in from a new IP, just don't lose your password.
@ehhh I know I had the pleasure of going through the rigamarole recently
I brought it up because basically anywhere does this these days and it's becoming a big problem.
I brought it up because basically anywhere does this these days and it's becoming a big problem.
Replies
0Fetching replies…