Hello I am Banana. I work in the Silicon Hills (Austin, Texas) as a Developer. I work a lot with Artificial Intelligence its going to change the world. (For better or worse)

  • 1 Post
  • 12 Comments
Joined 1 year ago
cake
Cake day: June 9th, 2023

help-circle

  • In all seriousness, no one is talking about this, but this is the one disadvantage of open source software being developed by volunteers, we don’t know exactly how the admin accounts were hacked but the XSS stuff is really basic stuff, none of those fields were sanatised at all, and it makes me concerned what else has been missed, obviously the advantage of open source is in time this stuff can get fixed, but this is what happens when loads of people who aren’t experts contribute to a site.

    In comparison to sites where there is a fully hired developer team the quality of the code is significantly better. I really hope the passwords were hashed on these instances and the hackers didn’t get plain text passwords or anything really bad like this.

    One thing and credit to Ernest, as I’ve contributed there he does very thorough code reviews and his quality of code is very good, its why im confident kbin won’t be hacked.








  • I like the concept
    But it feels very much like its been designed by nerdy developers and has had little to no-input on user friendly design.

    The federated idea can work but it needs to be more seemless than this.

    1. Communities with the same name should be merged when viewing it from any instance, so you can see all the posts from these communities, they can be moderated seperatley and for advanced users you should be able to select which communities make up the merged community.
    2. By default you should see all of the merged communities in a central place and be able to subscribe to them easily, at the moment its handled different per instance but you have to seek out these communities to subscribe or follow them.
    3. I strongly believe there should be a centralised log-in system, so you can log into any instance with an account from another instance, this means if your instance goes down your account is centralised and is safe.