Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

these are pretty boring. we've been playing with them for months now. there was no response because people have beat the hell out of this particular horse already

if you consider it an exploit you should probably consider, say, github issues markdown to be exploitable

the tl;dr is the server shouldn't trust the client and the client shouldn't trust the server to supply accurate link cards or link metadata.

right now it's not a huge deal because there's only one instance and it is invite-only. consider it demo grade software.



> all media uploads live forever and are publicly retrievable even if you mark the associated post for deletion

I have no idea what this is referring to


hmmm, maybe i misunderstood. edited out


We used to retain post history, but that’s been removed with repo v3. We prioritized taking media down ages ago. If anything like that is still happening, it’d be CDN cache and I’d have to pester the backend team to make sure it’s being cleared in delete reliably


Is video happening soon? As someone mostly going viral 8n twitter with videoes, it's the one thing missing from completing my move. Still use bsky a lot to discuss, but to share my videoes embedded in Twitter gives much more traction than a YT link on bsky.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: