Announcing my latest open source project, in collaboration with @carl
🌵 Cactus Comments - Federated web comments, based on the Matrix protocol.
Docs: https://cactus.chat/Demo: https://cactus.chat/demoSource: https://gitlab.com/cactus-comments
@asbjorn @carl This is really cool, but having to ask for the user's matrix username/pw on my blog is... 😬
I know matrix doesn't really have better options right now, but still, that feels super unsafe. Matrix desperately needs an oauth flow or something
@jfred @asbjorn @carl
I was just about to open this as an issue as well. This is a huge security risk in offering (and normalizing) this "enter your matrix logins" functionality.
@Bubu @jfred @asbjorn @carl some link like that might be preferable: https://matrix.to/#/#test123:cactus.chat right?
@mray @Bubu @jfred @carl If you look at the replies to Jon's post, you'll see that the client actually does include a matrix.to link 🏜️
chaos.social – a Fediverse instance for & by the Chaos community