Show more
tassaron! :tassmuffin: boosted
PLEASE BOOST FOR VISIBILITY

HACKERS: I have a request

A notable, widely-used dating app I've been reverse engineering exposes user's postcodes, addresses, and google placeid via the public feed, meaning anyone can find anyone's location.

This is disastrous as the app caters exclusively to LGBTQIIA people, potentially exposing them to harassment.

I have been working on a python API for this application, and I would like to release it into the open.

I have contact the staff and while they state they will respond in 72 hours, it has been over a week and they have not responded (They did get the email, because an automated email was sent back to me).

I cannot in good conscience publish this API at the moment, despite that I would very much like to add it to my CV, as it represents the only recent work I have done.

What do I do? Is there a place I can file a report for this kind of thing? A CVE seems a bit too harsh.

How can I get them to deal with this, while staying legally protected?

Any advice on this matter would be GREATLY appreciated.

Usually I only use soap unless I'm at work, because I don't want to help create resistance, and this has left me with two unopened containers of Lysol wipes at a critical time! 🏋️‍♀️ I don't even remember how I got these 🤷‍♀️

tassaron! :tassmuffin: boosted

Turns out I was getting 500 errors because my instance didn't have permission to upload to the S3 bucket, due to it being a cross-origin request. This was accumulating in the background along with some pre-existing issues caused by relays. Both have now been fixed so my is finally using an appropriate amount of RAM again! 🔧 🐜

tassaron! :tassmuffin: boosted
Number of times I used F1 to show help:
0

Number of times I hit F1 when reaching for ESC and a browser opened:
i++

Fiancée and I did a week of meal planning this morning. First time I've frozen a loaf of bread since the 00s! ❄️🍞 I'll save my flour and yeast for pizza and bagels instead 🙂

tassaron! :tassmuffin: boosted

This article has information on quaternary ammonium (sanitizer used in foodservice) which wasn't covered in my Health Unit class: cleanlink.com/sm/article/Bindi Basically it's a huge reminder that I must start using the quat test strips more often when I'm at work ⚠️

If you normally buy music from Bandcamp like I do, then consider buying some music this Friday! Bandcamp is giving all money to the artists for sales made on March 20th. daily.bandcamp.com/features/ba

tassaron! :tassmuffin: boosted

From Mozilla’s support forum:

Using the HTML Validator for Firefox, I have found that every page I open has errors, not just the ones I have designed; why?

Ah yes,

Good luck to everyone! It's hard times. I'm not going to post about covid-19 much because I like to stay positive (I have to). I'm just trying to remain calm and hope that I don't need to stop working. So far I'm okay. I'm lucky to be young and child-free, but really wish I'd actually changed jobs like I intended to by 2020 🙃 Maybe this pandemic will give me the motivation to improve myself, once it's blown over. Positive spin 😬 Anyway. I'm sending love to everyone out there struggling right now

tassaron! :tassmuffin: boosted
tassaron! :tassmuffin: boosted

i've developed many secondary sex characteristics in my day and i can conclusively say it's a mixed bag

My instance is back online and shouldn't go offline again for a long time now that I've moved all the resources to object storage :kirby_happy:

To be fair I've never actually had a real problem maintaining my Mastodon instance, it's just annoying that I have to look up how to use Ruby developer tools every time ... And they're not very obvious compared to other languages. Or maybe that's just me. Mastodon has made me want to avoid Ruby forever 😛 I miss pip

I'm gonna try to move my instance's media to object storage today... this is the only newish writeup I've found about it: github.com/cybrespace/cybrespa It looks thorough and simple but Mastodon is never as easy as it seems 🙄😬😛🤷‍♀️ I'll stop the Mastodon services in 15 minutes so wish me luck while you can 🤞 ...Bye! :tassmuffin:

Every company is sending me good-PR emails 🙄 Most of them don't even interact with the public significantly. Meanwhile Wal-Mart sends an email saying they're gonna tell their employees to clean better or something. OK.

I started using Google Photos for cat photos and I have 250+ photos within the past three months 😺 Been a while since I posted any on Mastodon!

Show more
tassaron dot com

This is Brianna's federated microblog homepage! To follow my posts, find another Mastodon instance and join the fediverse.