iltg

u/iltg@sh.itjust.works
0 posts · 87 comments

Recent posts

No posts.

Recent comments

on YOLO · c/linuxmemes · 9 pts · 5d

what's a snapshot, new kernel? lets roll!! almost 2k packages in

never really broke my arch tbh, its been serving flawlessly for 7 years now. its a decently recent thinkpad tho so stuff tends to just work and i have no gpu to bother about

on Math is hard · c/microblogmemes · 5 pts · 12d

as far as i understand, godel's incompleteness doesn't touch reality or ability for math to describe reality. math is very vast and we only need a fraction of it to describe reality right now. whether this description is correct is debatable but not part of godel's proof, which to me only means math can't be "summarized" into a set of "universal" rules. i may be wrong tho, godel's work is a lot to take in

transphobes will use literally anything as dog whistles and slurs so we may as well keep using terms which allow us to describe, analyze and study our social relations and functioning

many transfemmes have good jobs because they graduated and got employed passing as male, so how should the feminist community point out that the wage gap applies differently to some woman?

also a lot of us carry trauma given to us by exactly that male socialization: competing, performing and taking space as social mechanisms get ingrained over years, so feminist spaces may use "male socialization" to point to our struggles and behaviors with an appropriate term, refusing such critics under the guise of "transphobia" surely does us no good

also it's not like you learned to lurk boy spaces and you can never change that, we can be male socialized and yet fully social women

on Woaaahhhhh · c/starwarsmemes · 1 pts · 67d

+1 for the expanse! the story isn't extraordinary but their take on space faring was so good. now all sci-fi looks dumb :( i wish there were more series like that

per oauth spec you get told what is shared. usually it's just your user id (which often is email or username), i haven't seen crazy scopes in the wild in a while

not 100% related but i think login should be less user friendly

"here take this 512 byte hash and store it and it's you and if you lose it or have it stolen i couldn't care less"

email verification is hard to do right (as said in top reply), oauth is annoying to get set up but more secure and all big providers have fancy recovery and login methods

no oauth? get the hash or go away

the diff is noise in the potentially big update log. the point of doing it manually is forcing you to take your time and verify stuff one by one. also pkgbuild is just one place, seeing the hash changed means nothing if you don't check what that archive contains, or seeing the install steps don't change mean very little when the installer invokes other scripts anyway

i understand that you aren't going to vet the source itself, but at that point you are exposing yourself to this kind of malware without mitigation. the aur is unsafe by design (fast way to publish a package without any involvement from anyone else) and should be avoided whenever possible. im not an arch hater, i too run arch

in theory? getting rid of paru and friends, manually reviewing the pkgbuild and the source of whatever it is installing

realistically? nothing. the AUR is a glorified repository of build scripts anyone can upload. the script or the package itself can ship malware

the AUR is mostly the same as downloading and running random exes on windows. you should avoid it, make it as manual as possible (forcing you to double check what's happening) and be able to review the installer/package or trust someone who can vouch for its safety

dark humor is not making fun of marginalized people, I'd call that bullying instead. you can make trans dark humor without being transphobic (e.g. joking around waiting lists), so answering transphobic complaints with "its dark humor" is not really good faith arguing

not at all: atproto works very differently. fedi instances "do it all", on atproto pds-es hold content, relays discover and aggregate, appviews show stuff. iirc relays can also implement moderation (such as blocks or bans). right now to my knowledge the only relays are bluesky's and blacksky's (because hosting a relay is very resource intensive)

i think my point kind of missed: i dont have specific recommendations unless an use case or a set of requirements is provided. most services from big providers are "catch all" because of budget and desire to capture market, privacy alternatives aren't

i also misunderstood this as a recommendation for others rather than sharing own's choices, so I'm sorry if I was annoyed for what I felt to be poor choices (and i feel these are for generic users trying to get free from big providers)

but really, drop brave

this is not good. stuff like google calendar and photos are cloud service, a local app isn't a replacement and there's so many good ones. brave stuff just injects their affiliates and ads and has paid models, plus is led by someone with very questionable views. arch linux as windows replacement is objectively a bad choice as first linux distro. keepass is great but again offline.

yeah, if you want privacy, de-cloud. even google photos is private if you never connect to the internet. we should recommend less bad alternatives with comparable features, talk about compromises and use cases, and generally avoid making such eye catchy "privacy packs" which don't work for most and are honestly a circle jerk for who already solved their privacy needs

also there's no private AI. your local model is built on stolen data, so if you care about our privacy and not just your own stop using ai crap or kindly fuck off back to your favorite techbro

on Continuwuity · c/selfhosted · 8 pts · 81d

it absolutely is! honestly all matrix homeservers are impressive, the protocol is not for the faint of heart

on Continuwuity · c/selfhosted · 11 pts · 81d

while i don't want to throw shade on the developers' intentions, nor have any real proof of what data is being kept, a fetch request bears by minimum the source ip (which can be geolocated) and the fact that the homeserver exists and runs continuwuity.

i'd suggest a matrix channel as alternative, so hosters can opt-in by joining. plus, by leveraging the matrix protocol, such announcements become federated push notifications, meaning they could come from any homeserver (limiting ip logging) and don't imply the continued existence of such deployment, or the software which is being run

even converting such mechanism to an opt-out "auto-join announcements channel" would be more privacy respecting

on Continuwuity · c/selfhosted · 23 pts · 82d

be warned that continuwuity phones home by default to fetch its news and feed it to the admin, you may want to turn that off before booting first time