this post was submitted on 31 Jul 2023
60 points (98.4% liked)

Linux for Leftists

138 readers
1 users here now

A Community for all leftists wanting to join and being part of a community that talks about Linux, Unix and the Free Software Community

founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 17 points 1 year ago* (last edited 1 year ago) (2 children)

The original google document was so vaguely written that I just assumed the smartasses were pretending they invented SSL certificates. Only now did I get it that it's for the server to verify the client, not the other way around, and that's a on a whole new level of absurd. Boy I sure love the idea of having anti-cheat for my browsers. The comments on github are fun to read, at the very least.

That, coupled with Manifest V3 preventing adblockers, is way more reason than one needs to completely forget Google as anything more than the video hosting service for Invidious.

From a github user kescherCode:

I believe that whenever possible, we shall implement this spec into our own websites - but reversed. Whenever the attestation passes, let users not access your site. When it fails or this proposed API is unavailable - let users access your site.

Edit: the mad lad actually started implementing it here.

[–] [email protected] 7 points 1 year ago

Haha what a hero! Hats of to him that's great XD

[–] [email protected] 6 points 1 year ago

WebKit also won’t comment because Web Environment Integrity spec is a personal repo instead of a standards group