• 15 Posts
  • 365 Comments
Joined 1 year ago
cake
Cake day: June 20th, 2023

help-circle
  • Interesting, I tend to worry less about the password store than external password managers. Maybe you are onto something and I should research it further. But the breaches I hear about have all been with external managers. I particularly don’t want anything uploading passwords to remote storage. If I have to share a password between two machines (laptop and phone), I just transfer it manually. Another minor nuisance.


  • I just set fennec to delete all the cookies and stuff when I “quit” from the pulldown menu. Yeah that logs me off of sites but that’s ok, I use the built in password store to log back in quickly. If I just close the browser rather than selecting “quit”, the cookies stay around. So I use “quit” when I want to get rid of the cookies, maybe a few times a day.




  • If it’s from a memorable phrase, then the phrase has a lot of redundancy and it’s hard to estimate the actual entropy. Generating a random phrase and writing it on a slip of paper works for me. Keep the paper in your pocket and refer to it when you need to, instead of trying to memorize it. Once you’ve typed it into the computer a few times, you remember it automatically. At that point you can swallow the paper or use your favorite alternate secure disposal method ;).






  • I wouldn’t bother with the Fiverr thing but interesting personal projects and FOSS contributions are both good. Sizeable FOSS projects mean you’re working with other people which brings both benefits and challenges, and more closely resembles the “job” world. You could also look for actual paying work (not gig work like Fiverr, that is crap) if you have the time for it (summer job might be possible). Look at the monthly “Who is hiring” thread (first weekday of each month) on news.ycombinator.com, look on craigslist, etc.

    Getting involved in FOSS is pretty simple. Find a project with a list of open tasks or an issue tracker, find something that interests you, say you are interested in working on that task, and start contributing patches. Usually if the project is not a high-visibility one with a lot of contributors already, it will welcome any help it can get. Lots of such projects have Freenode IRC channels where you can chat with the other devs in real time. I’m less comfortable with the ones that use Discord, but that’s just me.











    1. I didn’t open that ticket. I encountered the issue, went to the tracker, and found there was already a ticket open.

    2. Tickets have priority labels. The existence of a workaround like pasting the password to a program with a different display font means this bug is not a showstopper. That doesn’t mean it is not a bug.

    3. No it’s not just this one bug. There are plenty more. I can link more tickets if you want. I was going to do that but the discussion about the password font bug spiralled.

    4. What is happening is mostly an attitude problem, it seems. People like you, seeing a code bug, instead of fixing it (or in this case at least recognizing that it should be fixed), go around searching for rationalizations for leaving it unfixed. It being unfixed while Mozilla continues to bloat up the browser with more new crap is instead evidence of Mozilla’s priorities being screwed up.