Comment on Piefed admin settings that allow to enable or disable content filters (they are disabled by default, see body for details)

<- View Parent
fiat_lux@lemmy.world ⁨3⁩ ⁨weeks⁩ ago

As others have pointed out, it does still require (with some caveats about the infra setup) the user to be an admin. But if someone manages to get in to the interface, or another person is granted admin access who shouldn’t have been, it makes it more risky than it needs to be. It also for me is a design choice that indicates other parts of the system should be carefully examined for how they’re handling and sanitizing input.

source
Sort:hotnewtop