I think it looks fun, kinda was hoping that more characters would survive but I guess I shouldn't have given the premise. I didn't expect the start to be so morbid with topics like suicide, workplace sexual abuse and Japan's terrible workplace culture. Excited to see how it turns out!
::: spoiler Spoiler: Character that didn't survive
Remote image embedding is not the issue, remote custom emojis would not have been an issue either. The issue, from my understanding, is that the way local emojis are rendered allowed for an XSS exploit.
There’s the camp that thinks the Fediverse should be a fully unmoderated peer to peer free for all, and there’s the camp that thinks the Fediverse should be a distributed governance model in which users are free to choose the admins whose moderation style matches their desired moderation style.
I really want to make a philosophy post on the effects of individualism on moderation...
Yeah, I think Lemmy needs a lot more granularity over roles. Currently there's two rules outside one of a user : Admin (You can literally do anything that is possible) and Community mod (Remove comments/posts, ban community-wide).
We need people who can remove comments/posts site-wide, ban site-wide, do application approvals. None of this can currently be delegated without giving full powers.
I'm not sure AI would work for detecting spam using email contents so surely it would use other metrics.. and if it does, it's just become another email filter. I don't think that solution would help much.
I think ultimately email failed as a federated service because in general people do not care about email. They just want to use it to login to services, get one time codes, receipts and maybe if they're fancy - a newsletter.
We had no messages on our database that had the vulnerability though some were federated from blahaj in the aftermath. The JWT, which is your session token, was changed as well so it seems very unlikely to me that this needs to be changed. There's no reason to believe the attack could've given access to passwords.
Yeah, it was quite nice. I've made a discussion thread for it : https://beehaw.org/post/1046744