Claude just told me "Real security comes from: proper rate limiting and attempt monitoring, not just entropy"
hodlbod
hodlbod@coracle.social
npub1jlrs...ynqn
Christian Bitcoiner and developer of coracle.social. Learn more at info.coracle.social.
If you can't tell the difference between me and a scammer, use a nostr client with web of trust support.
Coming soon (tm), hopefully I'll have a demo put together by Christmas.
View quoted note →
Whenever I read the word "charcuterie" the voice in my head says "sharkeytookerey"
TIL I learned that if you set the `length` property of a javascript array, it will truncate it. So bizarre.
```
a = [1,2,3]
a.length = 0
a === []
```
Nothing like starting my day by helping a neighbor clean up a tree that fell in the 80 MPH winds last night
Implementing an email-based recovery flow right now, and it's incredibly prone to very bad security-related errors. Nostr makes everything so easy, the threat model is incredibly simple when the user holds their key. Having keys even makes email based recovery more secure, because I can use them to guarantee that the person who initiates the recovery process is the one who completes it, completely eliminating a whole class of MITM attacks.