french.toast'); DROP TABLE Messages;-- on Nostr: > you need to mention what app you are using? currently, i'm not using an app; i'm ...
> you need to mention what app you are using?
currently, i'm not using an app; i'm just hitting the website in firefox directly. mostly cuz i know how to setup a vpn securely on linux so that it doesn't leak ip address via dns and know how to lock down desktop firefox so that ip doesn't leak via webrtc, etc. somebody just viewing or making idle comments probably doens't need to worry too much but i post a fair bit of things that trigger libs, especially the troons, so gotta make sure they cant doxx me lol
on android, i can either do vpn OR firewall (i want both). there's some convoluted workarounds that let you get both via a socks proxy but seems like a pain in the ass and might cause issues with some other stuff i use on my phone. mobile browsers are usually harder to lock down the webrtc leaks in (can do it with addons but not sure i trust those to never fail at any level). i haven't reviewed any nostr client code to see if they use webrtc or anything else that could pose a privacy risk, so even if i did get the firewall+vpn thing working, there could still potentially be leaks. not trying to say "android bad" per se, just that it pisses me off that i can't do shit there that I can do very easily in linux.
one option i plan on looking into if i ever get enough free time and energy is desktop client apps. there's at least 5 of them on linux (i think a few were crossplatform with windows/mac too). only one i remember the name of off the top of my head is called 'gossip'. but i haven't looked at which (if any) of them support communities, what other features they have, etc yet. was also wanting to write a firejail profile (or maybe bubblewrap?) to lock them down even further.
Published at
2023-09-02 06:20:14Event JSON
{
"id": "10bb2904311f167e374fb13186722231c115a2b1ffd0489e0d91a9ba7305f727",
"pubkey": "2ed460475939e733267a0d5b3ea147ce95b1457c5f29fb4208ba63e3c5864828",
"created_at": 1693635614,
"kind": 1,
"tags": [
[
"e",
"8ce4026dd19172b2d839e0a3f63510b2dcb5e7581412e0d901af704f925591ff",
"",
"root"
],
[
"e",
"083ac848c123a6421256c5da6777d19442095271d130c3007afc757151d275d9",
"",
"reply"
],
[
"p",
"66d44ec09664f9c8f2fcd3ab474dcdd063f231408da7ab46453c82b43da6ffb4"
],
[
"p",
"f17f9f6ff8e3a5ef95bbd20958678b0218df25d253a3485f756d8755e6208ead"
],
[
"p",
"2ed460475939e733267a0d5b3ea147ce95b1457c5f29fb4208ba63e3c5864828"
],
[
"p",
"460c25e682fda7832b52d1f22d3d22b3176d972f60dcdc3212ed8c92ef85065c"
]
],
"content": "\u003e you need to mention what app you are using?\n\ncurrently, i'm not using an app; i'm just hitting the website in firefox directly. mostly cuz i know how to setup a vpn securely on linux so that it doesn't leak ip address via dns and know how to lock down desktop firefox so that ip doesn't leak via webrtc, etc. somebody just viewing or making idle comments probably doens't need to worry too much but i post a fair bit of things that trigger libs, especially the troons, so gotta make sure they cant doxx me lol\n\non android, i can either do vpn OR firewall (i want both). there's some convoluted workarounds that let you get both via a socks proxy but seems like a pain in the ass and might cause issues with some other stuff i use on my phone. mobile browsers are usually harder to lock down the webrtc leaks in (can do it with addons but not sure i trust those to never fail at any level). i haven't reviewed any nostr client code to see if they use webrtc or anything else that could pose a privacy risk, so even if i did get the firewall+vpn thing working, there could still potentially be leaks. not trying to say \"android bad\" per se, just that it pisses me off that i can't do shit there that I can do very easily in linux.\n\none option i plan on looking into if i ever get enough free time and energy is desktop client apps. there's at least 5 of them on linux (i think a few were crossplatform with windows/mac too). only one i remember the name of off the top of my head is called 'gossip'. but i haven't looked at which (if any) of them support communities, what other features they have, etc yet. was also wanting to write a firejail profile (or maybe bubblewrap?) to lock them down even further.",
"sig": "fc42add60e2ce703d6548395def95119098d94c1ffa4571a48969e26d04871958353f9e5e058a9a084a027db95c5384fba562dced19b8470acbc0eab7f8b7805"
}