Spyke

Replies

main

Comment on

Announcement: Embracing a New Chapter: Towards a Community-Guided Direction and Accepting Donations

Agora (ἀγορά) is a great name for a community! I'm looking forward to seeing the posts in it.

I do have a question about the donations. Some projects/sites have a donation "goal" to keep a project going for a certain amount of time. Will you be doing something similar? Along the lines of a goal of X amount of $CAD to maintain the instance's running costs for one year.

main

Comment on

June 12 - Server Capacity Update

Just out of curiosity, would it help if when posting images we use services such as imgur (or alternatives)? I’m assuming if there is storage issues those type of posts are the biggest culprit.

Thank you for hosting this server @TheDude :)

main

Comment on

Beehaw* defederated us?

I actually am a little curious what TheDude’s opinion is on open vs closed registration policy. If having a closed registration policy is all that is needed for beehaw to refederate then perhaps that is an option, otherwise let us just hope the necessary mod tools (or more than 4 beehaw mods) happen to allow for refederation. It’s a shame since I feel like this is a really important / formative time and I do not think larger instances defederating is productive.

But that’s just my uneducated 2 cents :p

main

Comment on

How to determine instances sh.itjust.works is blocked by?

Reply in thread

Here is the post on Beehaw announcing the defederation from sh.itjust.works and lemmy.world

Tldr; there is a lack of moderating tools for this platform and given the community that Beehaw wants to create they cannot federate with large open-regestration instances. A few bad actors on these two instances were causing too much moderation hassle so they decided to defederate. They also wish for more granular federation controls akin to Mastodon, to avoid the nuclear option of defederation. At the time they also only had 4 moderators for the entire instance (people can't create their own communities)

Since then they have gotten more mods, and TheDude (our instance admin) has reached out to beehaw and they are currently collaborating which will likely lead to refederation (more can be found in this post on Beehaw)

Edit: I had some issues making this reply, so if you see this pop up more than once i sincerely apologize.

Comment on

What happens to Firefox forks if Firefox dies?

Normally I would say community forks have the power to continue the project. However, in this case I think chrome / safari would eventually add enough new features that Firefox forks can't add quick enough. Mozilla at least has some power in pushing the direction of web-standards, which these forks would lack, as well as the larger development team and some corporate usage of the browser which Mozilla has. I also don't see the smaller development community keeping up with security issues found in the browser, particularly pertinent for corporate marketshare and individuals with a stricter threat model (journalists, dissidents, etc.)

The only other factor, is whether Firefox dissapearing would officially create impetus for an anti-trust case against Google. I doubt so under the current American presidency, but I could see the EU being concerned (even if they lack the power the US has to force the company to split). If something were to happen here there would be substantial change in the browser market, but I wouldn't be too hopeful of this happening.

Comment on

Lemmy’s essential 25 PS1 games

I feel like the major one for me (that hasn't been listed) is Ape Escape. Growing up i played the (arguably worse) remaster of it for the PSP. Genuinely interesting to play a platformer so different yet so clearly reactionary to Mario 64. And it's also just interesting how they handle the analog sticks in terms of controls

Like many games of the era the controls are frankly janky, but they are just so much fun

Comment on

Password Managers

My personal choice right now is KeePassXC (PC) / KeePassDX (Android) + Syncthing And Aegis (Android) for 2FA codes, with a yubikey for services that support FIDO keys.

Overall I like this setup because it's decentralized and does not rely on a third party server structure. The only "weak" point would be the Syncthing relay servers or the Tailscale VPN that I use, but this goes back to ensuring encryption of the database is adequate with a long password, and using an open source synchronization protocol that ideally has been vetted by a trusted third party (or yourself if you're capable)

I used to use Bitwarden, and I highly recommend it. I really appreciated it's ability to integrate with email aliasing solutions to generate new aliases from within the bitwarden UI itself. However, my main reasons for switching were the following

  • I don't have the money to pay for it (uni student)
  • I prefer a more self-hosted approach (I will consider using vaultwarden in the future when I have more money)
  • I wanted to move away from using a browser extension for password management on desktop. KeePass' auto type feature is really good, and a more secure input method than a browser extension autofill.

The only additional advice I have for both recommendations is that I do not think it advisable to add Totp 2fa information to your password manager even if it supports it. I feel like this should be separate, on a single device, and backed up in ~2 locations (one preferably off site). This is really to avoid problems if a device is compromised and if your password manager is compromised, but this is definitely in the more unlikely category I feel.

My only major issues with keepass are the potential for sync conflicts and the some feature differences between platforms. A centralized server config like vault/bitwarden prevents the sync conflict issues, at the cost of having one point of failure. The feature differences problem isn't too great, but autotype doesn't work on Linux if you install with flatpak, and you can't prevent screen capture of the app on Linux (only on Android and Windows from my understanding)

Edit: I also tried gopass, it's really fun to have an entire CLI based password manager, but frankly the state of mobile companion apps are appalling. The Android option only is good if you use a dev version, and the iOS one I thought was just ok. I also dislike the metadata leaking that is inherent to the format, and that PGP is the main form of encryption for the time being (some clients were looking at using AGE at some point). Overall it's a cool but flawed concept, and I feel my other two recommendations are superior.

main

Comment on

De-federate from instances with loli

For the sake of argument I’ll approach this from a different perspective than everyone else.

Depending on jurisdiction there might be implications in hosting an instance that is federated with instances that host loli. I’m not familiar enough with Canada’s laws and / or le Code Civil du Québec to know if it is considered CSAM, but assuming it is does federating with those communities replicate the media on this instance as well? Would this count as ‘redistributing it’?

privacy

Comment on

Mozilla flamed by Firefox fans after promises to not sell their data go up in smoke

Reply in thread

For sending things to devices I use KDE Connect. I realize it is a fundamentally different application, but it is what I use generally to send / receive links between devices, as well as documents, images etc. It also is good for notification mirroring, and really just integrating Android devices into Windows / Linux computers.

For passwords I used KeePass (and I sync them between devices with SyncThing), but I usually recommend Bitwarden (which is what I used to use). Both are open source, have apps for all platforms, can integrate into your browser if you choose. The main advantage of Bitwarden is that it is open source, all necessary features are free, and you can host the server yourself if you want. It also integrates into some services, notably email aliasing ones, to allow you to generate new emails every time you make a new account.

For bookmarks / history your best bet is the extension everyone else is recommending here!