<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated>2026-04-18T04:39:03Z</updated>
  <generator>https://yabu.me</generator>

  <title>Nostr notes by William O&#39;Connell</title>
  <author>
    <name>William O&#39;Connell</name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://yabu.me/npub16l9rs7mt2au4zlwtacv4q4uwrp94km00mlm4letscxfty06z0j9q9ktrat.rss" />
  <link href="https://yabu.me/npub16l9rs7mt2au4zlwtacv4q4uwrp94km00mlm4letscxfty06z0j9q9ktrat" />
  <id>https://yabu.me/npub16l9rs7mt2au4zlwtacv4q4uwrp94km00mlm4letscxfty06z0j9q9ktrat</id>
  <icon>https://media.mas.to/accounts/avatars/000/178/635/original/8f562f4a08b47fcb.jpg</icon>
  <logo>https://media.mas.to/accounts/avatars/000/178/635/original/8f562f4a08b47fcb.jpg</logo>




  <entry>
    <id>https://yabu.me/nevent1qqswwzhjxvw84n3tc64sry2psveh7k5y3dxgjh52cnly0rsplyvn6xgzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5gdz3q8</id>
    
      <title type="html">Never seen that, but I&amp;#39;ve never had a Sony phone so it could ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswwzhjxvw84n3tc64sry2psveh7k5y3dxgjh52cnly0rsplyvn6xgzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5gdz3q8" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs0m46c5vq3s7khrnfvsxusv9ypv7tvg0j7xacfypu6hlrns9lxyscr3sfar&#39;&gt;nevent1q…sfar&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Never seen that, but I&amp;#39;ve never had a Sony phone so it could be something with their version of the UI? My experience has been that the Google and Samsung software is pretty good and some of the other ones are a little screwy (though not without their own merits).
    </content>
    <updated>2025-08-22T13:09:41Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdaxv0tgsgwmpkalktm49mgu02txffg4q0t0mz6kwhscqgal3lulgzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g570h2pc</id>
    
      <title type="html">This is your first post I&amp;#39;ve ever seen on this platform, I ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdaxv0tgsgwmpkalktm49mgu02txffg4q0t0mz6kwhscqgal3lulgzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g570h2pc" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsqz4gxefsg3vxr0e46guey0nwdpr73tkf0j6gsn0tf0jtrl9qqauspk4te4&#39;&gt;nevent1q…4te4&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;This is your first post I&amp;#39;ve ever seen on this platform, I have no idea what solutions you may have proposed aside from &amp;#34;passwords with no backup&amp;#34; which I don&amp;#39;t think is workable for the vast majority of users. The main issue I took with your post was the implication that Google&amp;#39;s authentication strategy comes from developers who &amp;#34;don&amp;#39;t have a clue about the real world&amp;#34;, which I don&amp;#39;t think is true at all.
    </content>
    <updated>2025-07-02T19:05:12Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsggzewcyyxzgshx98hg0826693nhhylhm82fkedd4cv4uvx0vff6szyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5wmxxu3</id>
    
      <title type="html">It seems like you&amp;#39;re expecting a perfect solution that works ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsggzewcyyxzgshx98hg0826693nhhylhm82fkedd4cv4uvx0vff6szyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5wmxxu3" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsg7jmamd95fq3wfz3acxfglj48rxwn4rg5pf7m8h2y9nnc053txscmww9k7&#39;&gt;nevent1q…w9k7&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;It seems like you&amp;#39;re expecting a perfect solution that works for 100% of people with no downsides, and you don&amp;#39;t want it to cost any money to implement. I don&amp;#39;t think I&amp;#39;m the one being unrealistic.
    </content>
    <updated>2025-07-02T18:56:07Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2eudarsv4ydarh8ffct03pk0qk5rrk9gsrl7mtuwq0khgwj907qszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5lmxs4r</id>
    
      <title type="html">When I say biometrics what I mean is something like Amazon One ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2eudarsv4ydarh8ffct03pk0qk5rrk9gsrl7mtuwq0khgwj907qszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5lmxs4r" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsdgxlq9u9ue4g7qdwet5w7pjg3k7c5vsxg2ys4hh2hk7hnqffxxjqy6mptm&#39;&gt;nevent1q…mptm&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;When I say biometrics what I mean is something like Amazon One where the hardware is public (in a library or a convenience store or something). So in this imagined scenario you wouldn&amp;#39;t have to own anything, you&amp;#39;d scan your palm at the library computer and your email would automatically open. Obviously there are privacy concerns there, but it&amp;#39;s the only thing I can think of that doesn&amp;#39;t require you to remember anything or posses anything.
    </content>
    <updated>2025-07-02T18:44:08Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsx7xyhec60ajyya35uqc9xnepqw68eh2nadpynt2kw75ruqkaz5jczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5hszaaz</id>
    
      <title type="html">In the meantime if you know specific people who have this ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsx7xyhec60ajyya35uqc9xnepqw68eh2nadpynt2kw75ruqkaz5jczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5hszaaz" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsx0u33vhd4ja57kp5psx4m5f6uj67nmayzuyszx36ac70jvwe0v4qjs4zgw&#39;&gt;nevent1q…4zgw&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;In the meantime if you know specific people who have this problem, I think Proton will give you free password-based email without needing a phone.
    </content>
    <updated>2025-07-02T18:31:09Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsx0u33vhd4ja57kp5psx4m5f6uj67nmayzuyszx36ac70jvwe0v4qzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5e8yhwp</id>
    
      <title type="html">Companies don&amp;#39;t care about anything, they&amp;#39;re machines ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsx0u33vhd4ja57kp5psx4m5f6uj67nmayzuyszx36ac70jvwe0v4qzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5e8yhwp" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqszc8xds7485nwvks2p70ueftv58m47cy8ul496hgrdqr03mff0eucmett49&#39;&gt;nevent1q…tt49&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Companies don&amp;#39;t care about anything, they&amp;#39;re machines that generate profit for their owners. Homeless Gmail users probably aren&amp;#39;t that profitable. If there are services that homeless people need from Google, either the law needs to force Google to serve those users, or some other not-for-profit entity needs to be created to serve them. But I think an effective solution would have to be based on biometrics, which people have a lot of reservations about.
    </content>
    <updated>2025-07-02T18:29:22Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsy59prw65l9m0nxlt2dk5tye0tmsq75jhlnpee9duv7jy7tv7mkrszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5y0zg77</id>
    
      <title type="html">How would that help? A new passkey created for example.net ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsy59prw65l9m0nxlt2dk5tye0tmsq75jhlnpee9duv7jy7tv7mkrszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5y0zg77" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsqzwzdf9hscvwmx3y8t33v6ns0epk4s9lu768cq0q6pmdupcnd0esasn3vp&#39;&gt;nevent1q…n3vp&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;How would that help? A new passkey created for example.net won&amp;#39;t let an attacker access your account at example.com. I don&amp;#39;t know how else to communicate this; passkeys are highly effective at preventing phishing. This has played out repeatedly in the real world. It&amp;#39;s not theoretical.
    </content>
    <updated>2025-07-02T18:27:20Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd32e0sjk7qpxnuajj8fu8r38le9zvgd88f354x055x73dxp39kgqzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5guu3c4</id>
    
      <title type="html">I don&amp;#39;t think users should be forced to use passkeys as their ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd32e0sjk7qpxnuajj8fu8r38le9zvgd88f354x055x73dxp39kgqzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5guu3c4" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsrgx3fumu6eu9hv9w8060x0c4zu7y3vs4jjj9txhem8yt0u49dt6cjur3eg&#39;&gt;nevent1q…r3eg&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;I don&amp;#39;t think users should be forced to use passkeys as their only authentication method, to be clear. And I agree that Google, etc. could do more to help homeless/phone-less people use their services. But I think basically every organization could do more to help people in that situation? IMO it&amp;#39;s more about incentives than &amp;#34;tech bros&amp;#34;.&lt;br/&gt;&lt;br/&gt;Web authentication for someone that has no possessions and can&amp;#39;t remember their password (no one can) is a tough problem.
    </content>
    <updated>2025-07-02T18:06:36Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsznfghzhdxem6cypyfznq2vqmdvd65urc6f76ygrxggj3556kgmnczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5y48nw6</id>
    
      <title type="html">That&amp;#39;s why passkeys are useful, they are immune to all of ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsznfghzhdxem6cypyfznq2vqmdvd65urc6f76ygrxggj3556kgmnczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5y48nw6" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs0gng7q67pv5e6krnmz2np476c8tcaztjqmkxjlp28angjd4ly2nszpu899&#39;&gt;nevent1q…u899&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;That&amp;#39;s why passkeys are useful, they are immune to all of that. If your bank is example.com, example.net cannot compromise your account. Even if you&amp;#39;re 100% convinced that example.net is your real bank, your passkey for example.com will not work there. This has been tested in the real world, it has stopped some very sophisticated phishing attempts.&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.cloudflare.com/2022-07-sms-phishing-attacks/&#34;&gt;https://blog.cloudflare.com/2022-07-sms-phishing-attacks/&lt;/a&gt;
    </content>
    <updated>2025-07-02T17:34:52Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgqlp5xeecx53gmfxrgwa6z0de73pegt48xwedptjem9jguenegyqzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g58lta9n</id>
    
      <title type="html">I think the current design/implementation of passkeys pretty bad, ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgqlp5xeecx53gmfxrgwa6z0de73pegt48xwedptjem9jguenegyqzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g58lta9n" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs0sgpqh9t2ap3q842v0wph560m3p307e77xpsuva6yj7qu54lhk8ck2nl8s&#39;&gt;nevent1q…nl8s&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;I think the current design/implementation of passkeys pretty bad, but I also recognize that phishing is the #1 cyber threat facing most people so I&amp;#39;m generally supportive of movement away from passwords and towards phishing-resistant authentication. Am I a big tech bro?
    </content>
    <updated>2025-07-01T22:45:38Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszxe4ea58xu9kgzwymju6cz4sw2c87thgclvmv8pqqwvt3p4kkkgszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5vuvq4t</id>
    
      <title type="html">This almost certainly isn&amp;#39;t it but I&amp;#39;ll mention just in ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszxe4ea58xu9kgzwymju6cz4sw2c87thgclvmv8pqqwvt3p4kkkgszyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5vuvq4t" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsy76l6gya3a36ljy0ele5kv0u3s33r7vx0qku8f6s6tmphlrkfuzq4yd25g&#39;&gt;nevent1q…d25g&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;This almost certainly isn&amp;#39;t it but I&amp;#39;ll mention just in case: I had a computer that randomly started being very slow and it turned out the CPU fan had died so it was thermal throttling. Took me awhile to figure out because I don&amp;#39;t think task manager has CPU temperatures (or didn&amp;#39;t at that time anyway).
    </content>
    <updated>2025-06-26T22:38:54Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqx86uaq97209hf002rwvxt28z645tzhp7y3plxc7ngq3zrsqcm2qzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g54jw35d</id>
    
      <title type="html">&amp;#34;The only cloud storage that doesn&amp;#39;t track your ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqx86uaq97209hf002rwvxt28z645tzhp7y3plxc7ngq3zrsqcm2qzyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g54jw35d" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsyekulv4wcn8t443pn6md847xd5xlvy2p58z4jypffgydd5au0n9scvcaxd&#39;&gt;nevent1q…caxd&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;&amp;#34;The only cloud storage that doesn&amp;#39;t track your activities and protects your privacy.&amp;#34;&lt;br/&gt;&lt;br/&gt;This seems like a really silly claim. Did they audit every other cloud storage provider in existence?
    </content>
    <updated>2025-05-07T20:58:36Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswjvhaehenahgwqjls6p9rwtzdxsx9c5927rsckh3xrg2ec2s7s4szyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5wv26tz</id>
    
      <title type="html">I don&amp;#39;t know much about it, but the Unihertz Jelly Max is ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswjvhaehenahgwqjls6p9rwtzdxsx9c5927rsckh3xrg2ec2s7s4szyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5wv26tz" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsrchmkuwj90f7ey4rzltpys5chnw0h7rzqqsnegmukswf7sjuwxqgck7yu3&#39;&gt;nevent1q…7yu3&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;I don&amp;#39;t know much about it, but the Unihertz Jelly Max is advertised as being very small if you haven&amp;#39;t already seen it.
    </content>
    <updated>2024-12-25T18:56:09Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0j3rzxqvc258cjad4usphpwwexewne5n6zqzu9t0xupq26kgqxgczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5c9ccx5</id>
    
      <title type="html">What does &amp;#34;CDNs excluded&amp;#34; mean? If you embed from ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0j3rzxqvc258cjad4usphpwwexewne5n6zqzu9t0xupq26kgqxgczyrtu5wrmddthj5tae0hpj5zh3cvykkmdal0lwhl9wrqe9v3lgf7g5c9ccx5" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqswhszqh8ywp6c8vfewh6fk3szehp9rwlxwyf9cukqwrzls6ce4u5sl5peae&#39;&gt;nevent1q…peae&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;What does &amp;#34;CDNs excluded&amp;#34; mean? If you embed from code.jquery.com does that count for what you&amp;#39;re asking?
    </content>
    <updated>2024-12-09T20:03:49Z</updated>
  </entry>

</feed>