- https://tech.lgbt/@risottobias
-
privacy, security, design
- Joined on
2024-12-29
notify failed attempts to haunt, guestbook, praetorian, etc - callback function injection
plausible + exclusion
guest acknowledgement or leave page
limit recovery email rate to one per user per day?
limit login attempts before engaging devicecookie lock
as primary SSO provider? or as passthrough, or as library to read other's SSO
error page / unlock links
if device cookie is present, allow them to send a link to their email (using mailer middleware)
compress/summarize views? if on the same day, don't note twice?
user (e.g. haunt / guestbook) integration via callback functions?