52°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • πŸ‘‰πŸ˜ŽπŸ‘‰ Jay Phelps https://twitter.com/_jayphelps   •   Jan 5
    I thought the exact same thing but was too lazy to get my laptop out so I could scan the pictures with my phone to check if they indeed contain the unique code too or just the same generic URL πŸ˜‚ in case it wasn’t obvious they’re not my screenshots. Hopefully the codes expire.
    Aaron Parecki
    They do! They also don't (can't) contain any identifying information at this stage in the flow. The only risk in sharing these screenshots is if you share them within like 10 minutes of seeing it, and then the "attacker" can log in their account to your TV so πŸ€·β€β™‚οΈ
    Portland, Oregon • 42°F
    Tue, Jan 4, 2022 10:10pm -08:00
    3 replies
    • Aaron Parecki twitter.com/aaronpk
      Fair! Thankfully these codes come from the authorization server rather than the app, so unless you're also building our own AS there's less of a chance of messing that one up! Your comment about the QR code is spot on tho! That's an optimization the app dev can do for better UX
      Wed, Jan 5, 2022 2:04pm +00:00 (via brid.gy)
    • Tobi Adeleke twitter.com/TobiAdeleke4
      Same here but Lab_cyber on Instagram help me fix mine successful after a long wait go follow them for help
      Wed, Jan 5, 2022 8:03am +00:00 (via brid.gy)
    • πŸ‘‰πŸ˜ŽπŸ‘‰ Jay Phelps twitter.com/_jayphelps
      Hopefully so! I wouldn’t personally bet that the devs of every TV app correctly expire these codes within a short time frame πŸ˜… I’ve seen far worse security gaffes, I’m sure you have too.
      Wed, Jan 5, 2022 6:16am +00:00 (via brid.gy)
Posted in /replies using indigenous.abode.pub/ios

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • πŸŽ₯ YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • βš™οΈ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv