Emelia

Emelia's avatar
Emelia
npub1c9de...2llc
Corruptress of protocols, working on trust & safety tech, open-source contributor. You've probably used tech I've contributed to. 🏳️‍⚧️ 🏳️‍🌈 🇩🇪 I'm on the Fediverse: [hachyderm.io/@thisismissem](https://hachyderm.io/@thisismissem ) Bridged: @thisismissem.[hachyderm.io.ap.brid.gy](http://hachyderm.io.ap.brid.gy ) 🌉 [bridged](https://fed.brid.gy/bsky/thisismissem.social ) from 🦋 [thisismissem.social](https://bsky.app/profile/thisismissem.social ), follow nostr:npub1pqr3g2gk3vsnrqk9kwfqqcxc6d5cwjr0hyc0nlzz9py5nf92vd9sn02sck to interact Web site: https://bsky.app/profile/thisismissem.social Link: https://thisismissem.social Link: https://hachyderm.io/@thisismissem Link: http://hachyderm.io.ap.brid.gy
I want to clarify my position on this: I think just client_id in the current Service JWTs wouldn't provide the solutions to the problems listed, and could be easily manipulated. However, I think the problems listed are valid problems that we should collectively come up with solutions for. RE: View quoted note →
Hey friends ln the #ATmosphere, if you're thankful for my contributions to AT Protocol though my standards work and trying to figure out how to push things forwards, please do consider supporting my work: [support.thisismissem.social]( ) [Support Emelia Smith (@thisism...]( )
Whelp, I think I'm going to write an new OAuth internet draft.. There's apparently no property in OAuth Authorization Server Metadata for providing a link to where people can go to manage their authorized applications on the authorization server. So I'm going to propose one.
I'm needing to figure out what the next year is going to hold for me, as this year has been incredibly tough and I've barely scraped by: with any luck finishing the FIRES grant will hopefully be enough money to pay myself for December & January. I had applied for a job recently, but didn't get it.
Something I see repeatedly in the ActivityPub community & Fediverse, and with growing regularity in the ATmosphere is people pretending or thinking that they can control data once it has left their server/device. You can definitely ask nicely that they do certain things...
Okay, so, I finally built that OAuth Client ID Metadata Service that I've been talking about on an off, and also verified it works with bluesky: [cimd-service.fly.dev]( ) I did have to change my application_type to native to use localhost redirect URIs, which was annoying. #oauth #atproto