Emelia 👸🏻

@thisismissem.hachyderm.io.ap.brid.gy

Corruptress of Protocols, Tech Princess 👸🏻 Working on Trust & Safety, open-source software, and open social web as an Independent Contractor You've probably […] 🌉 bridged from ⁂ https://hachyderm.io/@thisismissem, follow @ap.brid.gy to interact

We've been working hard on FedCM to make it work better for the decentralised web! These new designs should enable us to support the Atmosphere (AT Protocol) and Fediverse (ActivityPub) better, including parity with centralised identity providers.

Sam Goto@sgo.to · last mo.

@thisismissem.social @divy.zone and I recently went through an exploration of how the browser can help you login to websites with atproto accounts. We recently presented to the FedID CG and here is a sneak peek in case you couldn't join! This is early but we'd love your input before we go too far!

Much like the work that goes into the protocols and software behind the web, most people don’t know about trust and safety—including the harms that exist and the tools to combat them. We attended FOSSY to chat with, learn from, and help educate fellow open source developers. #FOSSY #FediCon

T&S Across the Fediverse: ROOST at FOSSY 2026

Robust Open Online Safety Tools or ROOST is a new non-profit entity designed to address the urgent need for accessible, high-quality safety tools in the rapidly evolving digital landscape.

roost.tools

There was actually meant to be an update in the middle of May, however, due to health reasons, I had to carry that forward to the July update, which is also running behind schedule due to health reasons.

I've been working on the latest update for the FedCM grant. It is taking quite a while to write up everything that has happened since March. I am currently on about day two or three into writing and editing the update, but hopefully I'll have it out soon.

[Tod, Gewalt] Meine Gedanken sind bei den Angehörigen und allen queeren Menschen. Ein Fahrzeug wurde gestern in den CSD Berlin gelenkt. Eine Person wurde getötet, drei schweben in Lebensgefahr, dreizehn weitere wurden verletzt.

These changes also land native OAuth Authorization Server Metadata discovery in doorkeeper, upstreaming some code we added to Mastodon. There's also a change to properly enforce PKCE on all authorization code requests allowing for OAuth 2.1 compatibility

* note: client_secret_basic probably shouldn't be used because it's not actually HTTP Basic Auth, because it wraps the username and password in x-www-form-urlencoded encoding which is a right PITA to try and decode.

These changes enable metadata discovery and extensibility of the Client Authentication methods, allowing the doorkeeper developer ecosystem to add new methods easily, outside of the natively supported methods: - none - client_secret_basic* - client_secret_post

Some big changes to Doorkeeper (ruby gem for OAuth servers) that I started on are finally getting merged after someone stepped up to finish them off, as I no longer had the time to work on the project. Looking forward to seeing work I started in 2024 finally shipping. Sometimes you're in it long

being trans has a lower regret rate than being UK prime minister and yet somehow i'm the one people are "worried about"