Readit News logoReadit News
hiimkeks commented on F-Droid site certificate expired   gitlab.com/fdroid/fdroid-... · Posted by u/kxxt
jimmaswell · 12 days ago
> API changes

This should be an oxymoron. We've forgotten the point of an API as a profession and it's downright shameful when something this important breaks needlessly. Would it have been that hard to just keep supporting whatever API calls were in existence as e.g. "v1" and put their new stuff in "v2"?

hiimkeks · 12 days ago
Maybe in this context the I in API stands for Implementation detail, so no guarantees are made.
hiimkeks commented on How I use Tailscale   chameth.com/how-i-use-tai... · Posted by u/aquariusDue
jen729w · a month ago
See their blog post about this from last week.

https://tailscale.com/blog/tailscale-privacy-anonymity

# What Tailscale isn't: an anonymity service

Tailscale is a secure connectivity tool that puts the highest value on the privacy of your packets. But we made an intentional choice from day one that we weren't going to try to be an anonymity tool. Quite the opposite in fact! We're an identity-centric network.

Anonymity tools, like Tor, need to be architected very differently. They trade away speed to reduce traceability. They are hard to inspect and diagnose and debug, as a feature. They make enemies, both political and corporate. They are inherently hard to audit and control, by design. In short, they are the exact opposite of what you want your corporate (or even homelab) network to be.

We believe anonymity tools are essential to safe network infrastructure and a free society. But, those tools are made by other people.

But if you’re looking for complete anonymity online, Tailscale is not the tool for you. Y'all, we're an identity-centric network with a centralized control plane. You should assume law enforcement can easily find out that you use Tailscale. Tailscale packets are pretty easy to detect, so you can assume they could know, through ISP logs, the shape and size of data you send between different nodes in different places (albeit without knowing the decrypted packet contents). You should assume they can correlate that flow metadata with your login identity.

hiimkeks · a month ago
Open and Close events are not related to identity or anonymity, so that post isn't in itself relevant. It does show that the team is very pragmatic, though.

I get why they capture this data, and by doing so they managed to build an exceptionally great service. But I also understand why one would be uncomfortable with exposing this data.

hiimkeks commented on Random selection is necessary to create stable meritocratic institutions   assemblingamerica.substac... · Posted by u/namlem
sebmellen · 2 months ago
If you're curious about this topic, I'd recommend you look up interviews with the jurors in the OJ Simpson trial. Many were black and by their own admission made their decision about OJ's guilt-based entirely on a feeling of racial justice. They considered it “payback.”

https://youtu.be/BUJCLdmNzAA?feature=shared

hiimkeks · 2 months ago
I don't think one of the most high-profile and racially charged cases in history can serve as a reasonable benchmark for how the bulk of cases are handled.

Edit: Not sure why I am being downvoted, I tried to say the same thing dmonitor said.

hiimkeks commented on White Noise – secure and private messenger   whitenoise.chat/... · Posted by u/onhacker
miloignis · 2 months ago
I looked up the spec, and it seems like they just tiebreak on time and hash and throw away the losing commit:

https://github.com/nostr-protocol/nips/blob/001c516f72943081...

hiimkeks · 2 months ago
Huh, that would make it easy to provoke forks by just backdating a second commit.
hiimkeks commented on White Noise – secure and private messenger   whitenoise.chat/... · Posted by u/onhacker
hiimkeks · 2 months ago
Congratulations on the release!

As someone who used to be in the Secure Scuttlebutt community an now works on OpenMLS, I wonder how they (you?) deal with concurrency of Commit messages. I spent quite some time thinking about ways to detect and resolve forks, and the current iteration of MLS doesn't really have good answers here.

hiimkeks commented on The Grug Brained Developer (2022)   grugbrain.dev/... · Posted by u/smartmic
juliangmp · 3 months ago
You don't need developers with 20 years of experience in a specific language.

Any decent engineer must be able to work with other languages and tools. What you're looking for is someone with experience building systems in your area of expertise.

And even then, experience is often a poor substitute for competence.

hiimkeks · 3 months ago
> You don't need developers with 20 years of experience in a specific language.

You may in trivia quiz languages that have more features than anyone can learn in a lifetime

hiimkeks commented on What happens when clergy take psilocybin   nautil.us/clergy-blown-aw... · Posted by u/bookofjoe
nooneinpart2 · 3 months ago
The letter to the Galatians (5.19-23) may distinguish between drunkenness and drug use depending on if you consider φαρμακεία (pharmaceia) to include the use of psychedelics:

Now the deeds of the flesh are obvious, which are: adultery, ... sorcery (φαρμακεία), ... drunkenness (μέθαι), ... and things like these; of which I forewarn you, even as I also forewarned you, that those who practice such things will not inherit God’s kingdom. But the fruit of the spirit is love, joy, peace, patience, kindness, goodness, faith, gentleness, and self-control. Against such things there is no law.

hiimkeks · 3 months ago
At the same time, monasteries have a long history of producing beer, wine, liqeur (think Chartreuse) and liqour (think Klosterfrau Melissengeist).

At the same time - having a glass of wine for stimulation while contemplating the divine might not be the same as drunkenness? And is the different the dose ("a glass of wine") or the purpose ("stimulation while contemplating the divine")?

hiimkeks commented on X's new "encrypted" XChat feature doesn't seem to be any more secure   theregister.com/2025/06/0... · Posted by u/01-_-
tonyhart7 · 3 months ago
wdym, elaborate
hiimkeks · 3 months ago
The first time zoom announced E2EE, they didn't actually have it and then said something like "well the server is the end, and then there is another end...". IIRC In the end they acquihired keybase so they fix the crypto for them.
hiimkeks commented on X's new "encrypted" XChat feature doesn't seem to be any more secure   theregister.com/2025/06/0... · Posted by u/01-_-
tonyhart7 · 3 months ago
then what happen if E2EE receiver is server itself???

I want to prevent vector attack such MiTM if TLS is somehow hacked

hiimkeks · 3 months ago
Ah, the Zoom Gambit
hiimkeks commented on L-Theanine (ETCS)   domofutu.substack.com/p/l... · Posted by u/domofutu
hiimkeks · 4 months ago
I appreciate the evidence-based approach, but it would be nice if the evidence was linked.

u/hiimkeks

KarmaCake day107August 15, 2022View Original