Kind likes

 Like

Liked Chris Siebenmann (@cks@mastodon.social)
Post details
Current status: looking around for a test server that gives you scratch accounts that you can then enable TOTP MFA for, so you can test TOTP MFA clients so you can understand them and the tricks you can pull for TOTP authentication. There are public expendable-account test servers for email, but I imagine the MFA TOTP case is more obscure (and maybe requires more backend work).

 Like

Liked Terence Eden (@Edent@mastodon.social)
Post details
Attached: 4 images Earlier this year we stayed at a hotel in Berlin. They had a little sign that said if we opted not to have our towels washed, they'd give us a present. On our last day, we were given a little packet of mixed seeds to plant when we got home. The results so far have been delightful 🥰 #BloomScrolling

 Like

Liked mnl mnl mnl mnl mnl (@mnl@hachyderm.io)
Post details
worse than touch interfaces are touchscreen interfaces. not only are they even more annoying because they usually have badly calibrated touch, but they all but promise that your UI will look like dated fugliness one year in. he rants, trying to hit the pixelated water symbol on a TFT with wonky LED backlight on what looks like a new coffee maker.

 Like

Liked Ian Cooper (@ICooper@hachyderm.io)
Post details
I am helping out on project at work. I worked on the project when it started, and one decision we made was to store ADRs for design decisions local to the project within the repo Two years later, re-reading these is really helping me get up to speed on why some things work the way they do. In particular we had a mob exploration of the codespace and questions popped up which were answered by these ADRs.

 Like

Liked Nickolas Means (@nmeans@ruby.social)
Post details
TIL the hard way that GitHub domain verification and GitHub Pages domain verification are separate things. Quite the footgun. I'm thankful for a security researcher who reached out about a hijackable subdomain rather than exploiting it. Post those responsible disclosure policies, friends!

 Like

Liked Joseph Nuthalapati :fbx: (@njoseph@social.masto.host)
Post details
From @ratfactor@mastodon.art 's blog post https://ratfactor.com/leaving-github > Independent FOSS developers do not owe anything to companies, including the slightest effort to "secure the software supply chain" for "consumers." As the licenses say, THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND …​ As somebody else on fedi once said, we ain't part of your corporation's supply chain because you didn't sign any agreement with us to that effect.

 Like

Liked Chris Siebenmann (@cks@mastodon.social)
Post details
I wonder how soon Github will start force-updating repositories for 'important software supply chain elements' whose developers have walked away from Github because of their policies and no longer push changes, bug fixes, security updates and so on to GH. I have other thoughts, but they boil down to 'software supply chain security demands seem like they're going to kill your free ride, enjoy what happens next'. In re: https://mastodon.social/@njoseph@social.masto.host/111008214514033676