home.social

#grumbles — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #grumbles, aggregated by home.social.

fetched live
  1. Ah yes, the classic Linux "upgrade" 🤡 that "enhances" security by ceasing to wipe encryption keys from memory. Genius! 🔒💡 Meanwhile, the tech elite #grumbles on #Mastodon, assuming anyone knows what Mathstodon is, let alone cares. 🦄📉
    mathstodon.xyz/@iblech/1167695 #LinuxUpgrade #SecurityTech #EncryptionKeys #HackerNews #ngated

  2. Ah yes, the classic Linux "upgrade" 🤡 that "enhances" security by ceasing to wipe encryption keys from memory. Genius! 🔒💡 Meanwhile, the tech elite #grumbles on #Mastodon, assuming anyone knows what Mathstodon is, let alone cares. 🦄📉
    mathstodon.xyz/@iblech/1167695 #LinuxUpgrade #SecurityTech #EncryptionKeys #HackerNews #ngated

  3. Sigh. No hashes for you in browserland if your page is served from HTTP (self.crypto.subtle.digest is unavailable). Seriously? What an enormous pain in the ass.

    Now I need to setup SSL certs to do development which means either fighting with browsers hating self-signed, or jumping through hoops to get a cert for a non-public host, or moving my development to a VPS machine, etc.

    Update: I'm not asking how to do these things (I know how), just complaining about the necessity.

    #WebDev #Grumbles

  4. Sigh. No hashes for you in browserland if your page is served from HTTP (self.crypto.subtle.digest is unavailable). Seriously? What an enormous pain in the ass.

    Now I need to setup SSL certs to do development which means either fighting with browsers hating self-signed, or jumping through hoops to get a cert for a non-public host, or moving my development to a VPS machine, etc.

    Update: I'm not asking how to do these things (I know how), just complaining about the necessity.

    #WebDev #Grumbles

  5. The model of distributing javascript modules either via "import it directly from this CDN that you have to hope will still be there in the future" or "checkout our source code and use some miserable javascript build system" is pretty infuriating.

    This thing at least makes it possible to mirror/vendor this nonsense:
    simonwillison.net/2023/May/2/d

    #WebDev #Grumbles

  6. The model of distributing javascript modules either via "import it directly from this CDN that you have to hope will still be there in the future" or "checkout our source code and use some miserable javascript build system" is pretty infuriating.

    This thing at least makes it possible to mirror/vendor this nonsense:
    simonwillison.net/2023/May/2/d

    #WebDev #Grumbles

  7. It'd be really nice if some of the load-bearing technologies for login/auth in the web stack (webauthn, oauth2) were supported/supportable with a lot less middleware (like, say, small, clean, zero-deps libraries).

    #WebDev #Grumbles

  8. It'd be really nice if some of the load-bearing technologies for login/auth in the web stack (webauthn, oauth2) were supported/supportable with a lot less middleware (like, say, small, clean, zero-deps libraries).

    #WebDev #Grumbles

  9. I'm having fun poking at some app coding in modern vanilla javascript this week and am once again repeatedly annoyed by the security model making many things impossible to do unless you fire up a web server.

    I'd like to be able to use the browser as a host environment for "portable" local apps.

    It'd be really nice if there was a way to package up a bundle of html/css/js/images/etc (say in a zip file!) and treat that as a unique same-origin environment.

    #WebDev #Grumbles

  10. I'm having fun poking at some app coding in modern vanilla javascript this week and am once again repeatedly annoyed by the security model making many things impossible to do unless you fire up a web server.

    I'd like to be able to use the browser as a host environment for "portable" local apps.

    It'd be really nice if there was a way to package up a bundle of html/css/js/images/etc (say in a zip file!) and treat that as a unique same-origin environment.

    #WebDev #Grumbles

  11. Annoying. libusb requires you to open a device before reading string descriptors (necessitating you have read/write permission because libusb only opens devices RW).

    On modern Linux (and I believe on Windows and OSX) this is not actually necessary and makes enumeration and reporting errors to users that much more complicated than need be.

    This feature has been discussed, but there has been no forward motion, it seems:
    github.com/libusb/libusb/issue

    #projects #xdebug #libusb #grumbles

  12. Annoying. libusb requires you to open a device before reading string descriptors (necessitating you have read/write permission because libusb only opens devices RW).

    On modern Linux (and I believe on Windows and OSX) this is not actually necessary and makes enumeration and reporting errors to users that much more complicated than need be.

    This feature has been discussed, but there has been no forward motion, it seems:
    github.com/libusb/libusb/issue

    #projects #xdebug #libusb #grumbles

  13. CW: That word ("algorithm") you keep using ...

    Many have well-reasoned, insightful views on searching and content presentation. These views are alas often condensed down to fairly meaningless phrases like: "opposing algorithms".

    I am sure it saves time - but by god does it draw to mind the anti-intellectual phrasing of MAGA-folk and UK Brexiteers which (rightly) get so widely mocked.

    #algorithms #grumbles #language

  14. CW: That word ("algorithm") you keep using ...

    Many have well-reasoned, insightful views on searching and content presentation. These views are alas often condensed down to fairly meaningless phrases like: "opposing algorithms".

    I am sure it saves time - but by god does it draw to mind the anti-intellectual phrasing of MAGA-folk and UK Brexiteers which (rightly) get so widely mocked.

    #algorithms #grumbles #language