view the rest of the comments
news
Welcome to c/news! Please read the Hexbear Code of Conduct and remember... we're all comrades here.
Rules:
-- PLEASE KEEP POST TITLES INFORMATIVE --
-- Overly editorialized titles, particularly if they link to opinion pieces, may get your post removed. --
-- All posts must include a link to their source. Screenshots are fine IF you include the link in the post body. --
-- If you are citing a twitter post as news please include not just the twitter.com in your links but also nitter.net (or another Nitter instance). There is also a Firefox extension that can redirect Twitter links to a Nitter instance: https://addons.mozilla.org/en-US/firefox/addon/libredirect/ or archive them as you would any other reactionary source using e.g. https://archive.today . Twitter screenshots still need to be sourced or they will be removed --
-- Mass tagging comm moderators across multiple posts like a broken markov chain bot will result in a comm ban--
-- Repeated consecutive posting of reactionary sources, fake news, misleading / outdated news, false alarms over ghoul deaths, and/or shitposts will result in a comm ban.--
-- Neglecting to use content warnings or NSFW when dealing with disturbing content will be removed until in compliance. Users who are consecutively reported due to failing to use content warnings or NSFW tags when commenting on or posting disturbing content will result in the user being banned. --
-- Using April 1st as an excuse to post fake headlines, like the resurrection of Kissinger while he is still fortunately dead, will result in the poster being thrown in the gamer gulag and be sentenced to play and beat trashy mobile games like 'Raid: Shadow Legends' in order to be rehabilitated back into general society. --
I don't like this at all. Incredibly dangerous. From someone linking an attack-page with javascript and a zero-day that means one doesn't even have to leave the (presumably safe) site to get hit to someone trying an IP-scraper meaning you just have to visit/expand the post for your IP to be collected. This is a security nightmare. I'm not against click to play embedded videos or media where you can click to load but this is not good. Just scrape the website for text to create a locally hosted snippet or something. At least make it click to open.
At the very, very least run it off an allow-list though even then some of us may not like our computers unexpectedly accessing certain resources. I know some users in Europe could get in trouble if for example it was an RT page and I'd imagine some of the news sources around here (not this one but others) that people link definitely move one up the empire's automated threat radar merely by accessing them and that should be a consensual and conscious choice not something that happens because you open a comment thread.