Tonight I’m trying out #Friendica on desktop (again). There is no Friendica client for #iOS.
1st thing I notice is that Friendica’s quote feature, including quote sharing of posts, uses #BBcode.
2nd is that Friendica (or at least the instance at Venera.social) does not search or index others’ quote-posts under the quoted post.
3rd is that Friendica shows original posts with larger text than replies, and that replies, even if posted from Mastodon, are still shown as anchor links.
Frage an die #pleroma Nutzer: Ist es bei Pleroma möglich einen Post mit #Markdown zu formatieren und anschliessend zu editieren?
Das ist nämlich etwas, was mich bei #Friendica stört. Wenn ich da einen Post mit Markdown formatiere und versuche ihn nachträglich zu bearbeiten, dann sehe ich einen mit #BBcode formatierten Text, der aber auch kein gültiges BBcode ist.
#bbcode #friendica #markdown #pleroma
I've been experimenting with hubzilla for translations. I'm developing a little racket script that will talk alternating paragraphs and put them into bb-code tables. I like to translate a pargraph at a time in org-mode. I should translate more writings by local farmers who do great small-scale work.
https://zotum.net/wiki/bsmall2/DigitalGarden/KunugiOakTalk
#orgmode #bbcode #FukuNagaFarm #福永農園 #Shiitake #ShiitakeMushrooms #oaks #OakTree #クヌギ #椎茸 #translation #Japanese #英訳
#英訳 #japanese #translation #椎茸 #クヌギ #oaktree #oaks #ShiitakeMushrooms #Shiitake #福永農園 #FukuNagaFarm #bbcode #orgmode
With #BBCode not serving a security purpose today and, in fact, often being a security risk – why does anybody still use it for a new project? It has the usability of raw HTML but way more undocumented edge cases. If people write markup by hand, #Markdown is the way to go today…
I’ve seen several #BBCode processors that already failed at flagging javascript: links. Or that had obvious flaws, allowing injection of arbitrary HTML attributes or tags. But even when obvious issues are taken care of, processing of nested tags is extremely tricky to secure.
Now back to #BBCode. It being seemingly simple means that most implementations don’t bother with HTML sanitization. Instead, the expectation is that you run a bunch of regexps to produce HTML code and it will just be fine. Except that usually it’s not: https://jeffchannell.com/Other/bbcode-xss-howto.html
#BBCode is more than two decades old and it made perfect sense back when it was introduced. It was somewhat of “HTML light” because at the time safely enforcing only a subset of HTML was very complicated. In 2007 I still witnessed MySpace fail at it, repeatedly.
I realized today that some applications out there still use #BBCode for non-legacy reasons. I really have no idea why anybody would do that in year 2020. It’s a very questionable decision security-wise, and it has no usability benefits either. #infosec #security #XSS
#bbcode #infosec #security #xss
@fla ahh thanks looking at this now https://diasporafoundation.org/formatting
but it looks like posts made with #bbcode on #friendica get partially rendered correctly by #diaspora. would like to make a diagram of the whole fediverse network and how the rendering of different things plays out.
#friendica and #diaspora both support #bbcode but use a different subset so as not to be totally compatible. example here: https://social.yl.ms/display/e18176ef165ac32118316de612617438
there is a mastodon instance that implemented #markdown in posts but not sure what the URL is or how they are doing.
#friendica #diaspora #bbcode #markdown
so now that features are really starting to diverge between different #activitypub sites we really need a way to come together and decide how these little bits can fit together. for instance #misskey has a ton of features they have implemented recently like polls and reactions other then 'star',
the masto fork now.kibousoft.co.jp has implemented #bbcode in their instance and it looked like misskey is doing something similar with https://misskey.xyz/notes/5b7c8643894f8100445b1f28
@fb10155987946582408 it supports this #bbcode [spin]FEDIVERSE[/spin]
[pulse]FEDIVERSE[/pulse]
[large=2x]FEDIVERSE[/large]
[flip=vertical]FEDIVERSE[/flip]
[flip=horizontal]FEDIVERSE[/flip]
[b]FEDIVERSE[/b]
[i]FEDIVERSE[/i]
[u]FEDIVERSE[/u]
[s]FEDIVERSE[/s]
[size=5]FEDIVERSE[/size]
[color=red]FEDIVERSE[/color]
[colorhex=A55A4A]FEDIVERSE[/colorhex]
[code]FEDIVERSE[/code]
[quote]FEDIVERSE[/quote]