Readit News logoReadit News
deca6cda37d0 commented on SecureAppy: An encrypted app for families to store passwords, photos and more   secureappy.com/... · Posted by u/daniel_sushil
deca6cda37d0 · 6 years ago
Where are your servers located?

Why do you use your own servers instead of for example CloudKit?

How do you make money?

Is unlimited storage really unlimited? If I upload 2 TB of pictures that’s fine?

Are you iOS only or also available on other platforms?

If iOS only, why do you use an android design pattern (floating + button) and not conform to platform standards?

I guess your privacy policy is not finished yet. It’s lacks details to conform to gdpr and ccpa.

deca6cda37d0 commented on A-Shell: Terminal for iOS   holzschu.github.io/a-Shel... · Posted by u/_venkatasg
partlysean · 6 years ago
How about Prompt from Panic? https://panic.com/prompt/
deca6cda37d0 · 6 years ago
This used for years

Deleted Comment

deca6cda37d0 commented on Apple and Google Strengthen Privacy of Covid-19 Exposure Notification System   macrumors.com/2020/04/24/... · Posted by u/robin_reala
deca6cda37d0 · 6 years ago
- Apple and Google are now referring to "contact tracing" as "exposure notification," which the companies believe better describes the functionality of their upcoming API. The system is intended to notify a person of potential exposure, augmenting broader contact tracing efforts that public health authorities are undertaking.

- Keys will now be randomly generated rather than derived from a temporary tracing key, making it more difficult for someone to guess how the keys are derived and use that information to try and track people.

- Bluetooth metadata will be encrypted, making it more difficult for someone to try and use that information to identify a person.

- Exposure time will be recorded in five minute intervals, with the maximum reported exposure time capped at 30 minutes.

- The API will include information about the power level of the Bluetooth signal in the data that is exchanged between phones. This can be used in conjunction with the RSSI ("Received Signal Strength Indication") to more accurately estimate the distance between two phones when contact was made.

- Apple and Google will allow developers to specify signal strength and duration thresholds for exposure events.

- The API will now allow for determining the number of days since the last exposure event to better determine what actions the user should take next.

- The API's encryption algorithm is switching from HMAC to AES. Many devices have built-in hardware for accelerating AES encryption, so this change should help performance and efficiency on phones.

deca6cda37d0 commented on iCab: Alternative Browser for macOS   icab.de/... · Posted by u/kaptain
deca6cda37d0 · 6 years ago
I can't believe it still exists!
deca6cda37d0 commented on Ask HN: What is the best way for validating files?    · Posted by u/deca6cda37d0
necovek · 6 years ago
You'd have to define "best":

* how much do you care about performance?

* how much do you care about safety?

The simplest and fastest would be to check for the "PDF" signature at the start of the file. Refer to the open PDF spec to ensure you are allowing anything that's acceptable (eg. do you care about FDF files?).

If you need to protect against malicious attempts, rather than user errors, it gets much harder quickly (and theoretically impossible, since you can construct files which will be both valid PDFs and something else).

To give another example, if you are aiming to protect yourself from being used as a media-sharing service, PDF allows embedding media as well, so allowing PDFs will not stop that — they are container formats as much as anything else.

The safest would be to reprocess and re-render only the subset you allow: but that's most expensive in terms of implementation and CPU time, and also somewhat limiting — you can't keep digital signatures, for instance.

deca6cda37d0 · 6 years ago
Thanks for your answer.

It is to protect against user errors. Your suggestion to check for a signature sounds what I'm looking for.

deca6cda37d0 commented on Ask HN: Have you repurposed old iPads in an interesting way?    · Posted by u/smarri
smarri · 6 years ago
Did you write the software or use an app/similar to use it to control your home?
deca6cda37d0 · 6 years ago
I personally just use the default Home app to controle HomeKit enabled devices. It's luckily an old iPad that still runs the latest iOS version.

u/deca6cda37d0

KarmaCake day445January 19, 2019View Original