Comment on Piefed admin settings that allow to enable or disable content filters (they are disabled by default, see body for details)

<- View Parent
fiat_lux@lemmy.world ⁨2⁩ ⁨days⁩ ago

Well, just copy and pasted rather than written. I would have hoped that infra read-level permission, infra write-level permission and admin interface permissions were all separate to begin with, even if the person who spun up the instance obviously has all three.

You do need a level of trust in an admin, of course, but wide open text boxes for putting in code are a questionable system design choice, in my opinion. It adds an extra point of possible entry that then relies on the security of the overall admin interface instead of limiting it to what should require highest level infra admin permissions to access. And if it is something that would be limited to someone who has those, then what is the actual utility of having a textarea for it in the first place?

source
Sort:hotnewtop