Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)L
Posts
3
Comments
100
Joined
2 yr. ago

  • You can get the image SHA. If you then provide the corresponsig tag, that you used, an application could check if a new image is available. Or maybe if you use docker compose, the app could get the tag from the compose file, and even check for new tagged versions based on a specific pattern.

  • Wow, thats one kind of a project. I'm impressed. Though it doesn't really fit my problem. It has to be something webbased, where everyone of us can use it without an app, without seeing each others information. From the github page it looks like a local tool. And also focused trading similar items. The presents in our secret santa are highly individualized, so randomly trading does not make much sense. And if the interface is too clunky, my non-tech siblings will just reject using it. I want to keep them from deciding for some free privacy nightmare app.

    But I thank you for the suggestion. Its an interesting project

  • Security noob here. Would it be sufficient (in addition to only local authorized access) to directly put the file in an unprivileged container, watching its log output? And of course limiting resource use and execution time of the container (don't know if common container tools like docker or podman have a way to limit resources out of the box)

    So lets say a simple interface for the file upload behind an authentication service, based on lets say python cgi, ramping up an unprivileged nonroot docker container, killing the container after a fixed time (a few seconds).

  • That looks promising. And I can contribute with a translation for another language

  • I will try it, when I'm home again. The commit history starts and ends about 5 months ago, so yeah, probably not fully finished. Thanks for the suggestion

  • Selfhosted @lemmy.world

    Self hosted secret santa app?

  • Not asian or bullying, but "I'm glad my mom died" by Jennette McCurdy is really strong. A mother living her own dreams through her daughters acting career, alternating between extreme emotional states. I thinks its writtem very well and describes her struggles getting out of the pressure by her mother and out of her own behavior pattterns learned since early childhood.

    Though I cannot say, if this can be used as a guide. From what I remember the key learnings maybe would be: Get out, suround yourself with better people and get therapy. Though I might misrepresent the book with that

  • I really would like to do without google appa. Though Android Auto has a great value for me, when we go on vacation. Thus I want to be informed about the facts, before I commit to a way to go. And without rooting or custom ROMs the possibilities are limited

  • Thanks for the suggestion. Seems like aa4mg either needs root (which I currently don't have done on my phone, since my banking apps are allergic to that) or a custom ROM (which honestly is too much tinkering for my available time and a device I use so much)

    e/OS also uses microG. Do you know anything about the privacy implications of those google apps here? As my time is limited currently, I would either just install android auto as per instructions or not doing it at all. Long tinkering, that might easily break other things are not my focus at this time.

  • Privacy @lemmy.ml

    Implications of Android Auto on e/OS

  • That one looks good. Though it seems the process to get the pairing key from the proriatary app on a non-rooted phone is currently broken. My phone is currently not rooted. Don't know, how that works with rooting on e/OS. If I can root it, get the key and then remove root without wiping the phone, then I might do that.

  • That is a US based company, so with shipping and taxes I certainly would also reach the over 60€. Honestly I wasn't that happy with my Pinetime. I tought about buying it again (destroyed mine when I dropped it) because it is cheap (26€). But for 66€ I might just get a different watch, that works with gadgetbridge

  • I'm currently also at that point, trying to decide what to buy.

    Does anyone have a good recommendation for a smart watch with good compatibility with gadgetbridge? I'm not sure where to look (gadgetbridges list is long).

    Something with a color display, maybe a week of battery life, being able to show my notifications and configuration without needing the manufacturers app

  • In the EU store it is currently out of stock and also priced at 66€. Can it be, that this is a victim of the US-EU trade war, that Trump started?

  • I run headscale on my VPS. The tailscale clients are already open source, though by default they connect to the companies servers for coordinating the net. Headscale is open source and replaces the companies servers with your own. Best to not rely on some corporate service, which could cease to exist or be enshittiefied.

  • A while ago we had an interesting situation at work. At regular intervals our team has a call with our direct boss, for communicating how the business is going and to give little talks about out current technological challenges with our customers. At that time the results of the employee survey were published and our team had low levels on the statement "My work fills me with meaning" (not sure about the translation here). Our boss was curious about why. We had a few moments of silence until one of my senior coworkers said honestly, that at least he is not searching for his lifes meaning in work. Which is also true for me. Wasn't a big thing after that. Our boss is totally fine with that.

    That being said, one important thing for our boss (and also for me, when coaching new coworkers) is seeing, that we have at least some fun and interest in our work. If you don't have that, then both the quality of your work and the relations to coworkers can suffer quite a bit. Then maybe doing a different job is better for you.

    You can be honest about being there for getting money AND being passionate about your job (or at least part of it) at the same time. So show that to management. If they are still pissed, then they are in fact shitty. If you have other good opportunities, it might be time to head out then.

  • Otherwise, you need to be some kind of freaking retro-engineering expert.

    Nah, often software is stupidly easy to breach. Often its an openly accessable database (like recently with the Tea app), or that you can pull other data from the webapp just by incrementing or decrementing the ID in your webrequest (that commonly happened with quite a number of digital contact tracing platforms used during Covid).

    Very often the closed source just obscures the screaming security issues.

    And yeah, there are not enough people to thorouhly audit all the open source code. But there are more people doing that, than you think. And another thing to mind is, that reporting a security problem with a software/service can get you in serious legal trouble depending on your jurisdicting - justified or not. Corporations won't hesitate to slap suit you out of existance, if they can hide the problems that way. With open source software you typically don't have any problems like this, since collaboration and transparency is more baked in into it.

  • Relevant xkcd: Average familiarity

    You severly overestimate the average persons tech literacy even when you try to correct for it. Booting from USB is already a really advanced topic.

    Though creating a lemmy account is not that complex. Typically all you have to do is fill out a form on the websiten instructions included. The problem there is not the tech literacyn but the willingness of the people to even interact with systems they don't know, like finding a home instance or understanding the concept of the fediverse. Most people could create a lemmy account, though also most people wouldn't.

  • Did the crowd also sang "Ill is in the box!"? >.<

  • Thanks, will definitely have a look at them

  • NSFW Deleted

    Permanently Deleted

    Jump
  • No, I think that you have that right for every contract, that you enter (buying contract or otherwise). Though there are exceptions (for example digital goods like ebooks). Ypu can very much bring back a retail good that you bought in a store for 14 days after the purchase. Though I think they can refuse, if you damaged the product in that time.

    For example I returned an item I bought in the tool store, because I realized I bought the wrong one.

  • Ask Lemmy @lemmy.world

    Suggestions for amplify lead singer at a camp fire