61°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Aaron Parecki
    at ARIA Convention Center
    Las Vegas, Nevada • Mon, August 29, 2016 5:31pm
    36.10594 -115.179448
    #oktane16 opening reception
    Las Vegas, NV, United States
    Mon, Aug 29, 2016 5:31pm -07:00 #oktane16
  • Aaron Parecki
    Just launched a big reorganization of https://oauth.net which should make it easier to find things! πŸ”’ #oauth2 #oktane16
    Las Vegas, Nevada, USA
    7 likes 2 reposts
    Mon, Aug 29, 2016 11:44am -07:00 #oauth2 #oktane16 #oauth
  • Aaron Parecki
    at ARIA Convention Center
    Las Vegas, Nevada • Mon, August 29, 2016 8:35am
    36.10594 -115.179448
    #oktane16 registration
    Las Vegas, NV, United States
    Mon, Aug 29, 2016 8:35am -07:00 #oktane16
  • Aaron Parecki
    Vegas here I come! #oktane16
    Seatac, Washington, USA
    8 likes 2 replies
    Sun, Aug 28, 2016 4:50pm -07:00 #oktane16
  • Aaron Parecki
    This is perhaps the first step in the fall of certificate authorities in favor of p2p root CA trust sharing. https://twitter.com/FiloSottile/status/735940720931012608
    Portland, Oregon, USA
    1 like 1 repost 2 mentions
    Thu, May 26, 2016 3:19pm -07:00 #security #ssl #https #bluecoat
  • Aaron Parecki
    Remember when everyone was building and promoting "open" APIs? What happened to that? http://developers.instagram.com/post/133424514006/instagram-platform-update
    Portland, Oregon, USA
    5 likes 3 reposts 2 replies
    Wed, Nov 18, 2015 7:59am -08:00 #instagram #api
  • Aaron Parecki
    Well this is progress... an in-app browser that shows the address bar and shares system cookies
    Portland, Oregon, USA
    3 likes 1 repost
    Tue, Jun 9, 2015 12:10pm -07:00 #ios9 #oauth #oauth2 #ios
  • Aaron Parecki
    How long do you think until things like this are possible? #homeautomation #quantifiedself #oauth
    7 likes 1 reply
    Fri, May 1, 2015 11:47pm -07:00 #oauth #quantifiedself #homeautomation
  • HTML is my API

    In August 2012, I wrote a quick script to stream front-page Hackernews stories to an IRC channel on Freenode. It broke after 2.5 years, at which point I switched to their new JSON API. That one broke after 2 days. Here is how we can fix this.
    continue reading...
    8 likes 5 reposts 2 bookmarks 1 reply 55 mentions
    Sun, Apr 26, 2015 9:48pm -07:00 #indieweb #api #html #microformats
  • Aaron Parecki
    @eyeficard Help! I can't connect my card to Flickr anymore! The auth screen pops up inside the app (which is bad OAuth practice) and now Yahoo rejects the request!
    Portland, Oregon, USA
    2 replies
    Thu, Feb 26, 2015 9:20am -08:00 #eyefi #flickr #oauth
  • Aaron Parecki
    OAuth: better than NoAuth.
    Portland, Oregon, USA
    6 likes 2 reposts 3 replies
    Fri, Jan 30, 2015 3:20pm -08:00 #oauth
  • So you implemented an OAuth 2.0 API...

    While OAuth 2.0 is a good framework for building an API, the spec itself leaves many things un-specified, and it's up to the implementer to make a decision based on their own security requirements. As such, most OAuth 2.0 implementations are not interoperable, which is often cited as a failure of OAuth 2.0. On the other hand, the current state of OAuth 2.0 implementations is that they are often similar enough that developers don't need to learn too many new concepts when dealing with them.
    continue reading...
    19 likes 6 reposts 3 replies 5 mentions
    Thu, Jan 15, 2015 12:15pm -08:00 #oauth #oauth2 #standards #web #authentication #checklist
  • A Little Twitter Developer History

    Back in the early days of Twitter, I noticed that several tweets I was seeing showed "via _____" next to the date, which linked to the application that was used to post the tweet. I thought "hey that's a clever way to give credit to applications" and thought it would be a good way to get people to discover the Twitter app I was creating at the time.
    continue reading...
    Sun, Nov 23, 2014 4:30pm -08:00 #twitter #oauth
  • Aaron Parecki
    Continuing last weekend's documentation of all the un-specified parts of OAuth 2.0, things were going pretty well until I hit the "Security Considerations" section, which basically recommends but doesn't require a whole bunch of things. Basically this means an API can be fully OAuth 2.0 compliant and also completely insecure.

    If you want to know more, keep an eye out for this blog post. Or hire me as an independent OAuth consultant and I'd gladly spend a day with you.
    Portland, Oregon, USA
    14 likes 6 replies
    Sat, Nov 22, 2014 7:23pm -08:00 #oauth2 #oauth
  • Aaron Parecki
    Currently documenting all the ways the OAuth 2.0 framework leaves choices up to the implementor. The list is long. #oauth2
    Portland, Oregon, USA
    3 likes 1 repost 2 replies
    Fri, Nov 14, 2014 8:27pm -08:00 #oauth2
  • Justin Richer http://bspk.io/
    The article on OAuth and Authentication that I helped write/edit is online now: http://oauth.net/articles/authentication/ (thanks to @aaronpk for publishing!)
    2 mentions
    Sun, Nov 2, 2014 11:22pm -05:00 (reposted on Sun, Nov 2, 2014 8:25pm -08:00) #oauth #oauth2
  • Aaron Parecki
    The comments on this "hacking a Gmail account with just a phone number" article make me reconsider using SMS/phone as a security mechanism at all. Original article: https://ello.co/gb/post/knOWk-qeTqfSpJ6f8-arCQ Comments: https://news.ycombinator.com/item?id=8541313
    Portland, Oregon, USA
    2 likes 5 reposts 1 reply
    Fri, Oct 31, 2014 6:33pm -07:00 #security
  • Aaron Parecki
    Launched some updates to the documentation at http://oauth.net/documentation/ with the OAuth group tonight! Will hopefully have more improvements to the site soon! #iiw
    San Francisco, California, USA
    3 likes 1 repost
    Wed, May 7, 2014 2:18am -07:00 #iiw #oauth
  • Aaron Parecki
    Just got this email from Dreamhost. https://gist.github.com/aaronpk/7475391 An interesting proactive response to the Adobe user db leak!
    Portland, OR, USA
    Thu, Nov 14, 2013 2:30pm -08:00 #security #passwords
  • Aaron Parecki
    The @Jawbone UP, my favorite of the #quantifiedself trackers, finally released their official API! https://jawbone.com/up/developer/
    Portland, OR, USA
    Thu, Sep 19, 2013 7:51am -07:00 #jawbone #quantifiedself #api
older
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
← πŸ•ΈπŸ’ β†’
WeChat ID
aaronpk_tv