Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Jim Manico https://twitter.com/manicode
    This is the problem with most JWT based systems around logout and revocation. I find this to be an anti-pattern and a very common one. Security here is sacrificed at the altar of scalability and statelessness. #tears
    Portland, Oregon • 79°F
    Thu, Sep 23, 2021 8:45pm +00:00 (liked on Sat, Sep 25, 2021 1:37pm -07:00) #tears
  • Evan Oslick https://twitter.com/eoslick
    If a user “logs out” and the JWT isn’t invalidated they can still perform actions. Most distributed apps don’t notify all micro services a JWT is no longer valid and the micro service just goes “okay”. And for performance, the micro service doesn’t verify validity.
    Portland, Oregon • 79°F
    Thu, Sep 23, 2021 7:38pm +00:00 (liked on Sat, Sep 25, 2021 1:37pm -07:00)
  • Greg Caplan https://twitter.com/gdcaplan
    Slack is just an all day meeting with no agenda
    Portland, Oregon • 79°F
    Fri, Sep 24, 2021 12:55pm +00:00 (liked on Sat, Sep 25, 2021 1:36pm -07:00)
  • paddington & mia khalifa stan account https://twitter.com/adriyoung
    wish i was bitcoin so someone would hold me
    Portland, Oregon • 70°F
    Thu, Sep 23, 2021 8:04pm +00:00 (liked on Fri, Sep 24, 2021 9:00pm -07:00)
  • Andy Reed 🍞 https://twitter.com/andykreed
    wish I was a deadline so someone would miss me
    Portland, Oregon • 70°F
    Thu, Sep 23, 2021 3:29am +00:00 (liked on Fri, Sep 24, 2021 9:00pm -07:00)
  • Chris Messina  (messina.eth) https://twitter.com/chrismessina
    OH on Discord: “Hey, what is the minimum USD amount for an OAuth transfer”

    (which is a mind-blowing concept if you’ve been around the protocol as long as I have)
    Portland, Oregon • 70°F
    Fri, Sep 24, 2021 11:48pm +00:00 (liked on Fri, Sep 24, 2021 8:57pm -07:00)
  • Chris Messina  (messina.eth) https://twitter.com/chrismessina
    OH on Discord: “Hey, what is the minimum USD amount for an OAuth transfer”

    (which is a mind-blowing concept if you’ve been around the protocol as long as I have)
    Portland, Oregon • 70°F
    Fri, Sep 24, 2021 11:48pm +00:00 (liked on Fri, Sep 24, 2021 8:55pm -07:00)
  • rabble https://twitter.com/rabble
    You know you could have just implemented edit and deployed it in an afternoon back in 2007 and we’d all have it today. I blame @blaine for the lack of the edit button.
    Portland, Oregon • 86°F
    Fri, Sep 24, 2021 6:38pm +00:00 (liked on Fri, Sep 24, 2021 3:12pm -07:00)
  • Tom Coates https://twitter.com/tomcoates
    Check twice a day, filter aggressively, only answer things that need an answer, try and keep replies under three sentences.
    Portland, Oregon • 54°F
    Fri, Sep 24, 2021 7:27am +00:00 (liked on Fri, Sep 24, 2021 6:13am -07:00)
  • skye it/its https://twitter.com/stimmyskye
    okay so as some people don't seem to know this is happening:

    when someone replies to one of your posts asking you for your paypal / venmo / etc, there are bots that will IMMEDIATELY clone your account and reply with a payment link. they block your account in the same second.
    Portland, Oregon • 62°F
    Thu, Sep 23, 2021 11:07pm +00:00 (liked on Thu, Sep 23, 2021 9:28pm -07:00)
  • 🎃Shadow🎃 Morse https://twitter.com/Snubs
    My @vidsummit talk is ready to goooo! But I have a question for attendees....
    Is your Wi-Fi on? 🍍🍍🍍
    Portland, Oregon • 63°F
    Fri, Sep 24, 2021 2:10am +00:00 (liked on Thu, Sep 23, 2021 9:24pm -07:00)
  • Kevin Marks https://twitter.com/kevinmarks
    I'm going to invent the concept of the slash tag where instead of #files you can have a hierarchy like /folder/directory/file
    Portland, Oregon • 72°F
    Thu, Sep 23, 2021 11:33pm +00:00 (liked on Thu, Sep 23, 2021 4:38pm -07:00) #files
  • William LeGate https://twitter.com/williamlegate
    Folks, do NOT buy the iPhone 13!

    They developed it in just 1 year. The first iPhone took billions of years to make… how can we trust an iPhone which was developed so fast?!
    Portland, Oregon • 72°F
    Thu, Sep 16, 2021 11:00pm +00:00 (liked on Thu, Sep 23, 2021 3:57pm -07:00)
  • foone https://twitter.com/Foone
    Scam website hacked, replaced with different scam
    Portland, Oregon • 67°F
    Thu, Sep 23, 2021 4:07pm +00:00 (liked on Thu, Sep 23, 2021 1:14pm -07:00)
  • Dare Obasanjo https://twitter.com/Carnage4Life
    Recently I learned about the Japanese concept of ikigai. We all have things that
    • we're good at
    • we can be paid for
    • we love doing
    • makes the world better

    We all aim to be in a spot where we hit all 4. The diagram below helps explain how you feel when you hit 2 or 3 of 4
    Portland, Oregon • 62°F
    Tue, Sep 3, 2019 1:52pm +00:00 (liked on Wed, Sep 22, 2021 9:33pm -07:00)
  • https://arstechnica.com/information-technology/2021/09/unpatched-macos-vulnerability-lets-remote-attackers-execute-code/
    Portland, Oregon • 57°F
    Wed, Sep 22, 2021 6:35am -07:00
  • ROTOPE~1📦 https://twitter.com/RotoPenguin
    It's a fine line between "NIST calibrated and traceable production practices" and "Comes in NIST-inspired sizes!"
    Portland, Oregon • 66°F
    Wed, Sep 22, 2021 3:52am +00:00 (liked on Tue, Sep 21, 2021 9:26pm -07:00)
  • Nat Sakimura https://twitter.com/_nat_en
    I actually do not agree with the characterization that PAR is an alternative to JAR. PAR complements JAR by profiling it down to a new endpoint called PAR Endpoint at AuthZ server. JAR is normatively required by PAR. #OAuth
    Portland, Oregon • 66°F
    Wed, Sep 22, 2021 3:16am +00:00 (liked on Tue, Sep 21, 2021 9:25pm -07:00) #OAuth
  • Davis W. Frank https://twitter.com/dwfrank
    A reminder that once you've upgraded to iOS 15, and you've saved your (California & others) COVID QR code, you can now import it into the Health app and view it there. QR is still visible, as is a JSON payload.
    Portland, Oregon • 66°F
    Tue, Sep 21, 2021 10:49pm +00:00 (liked on Tue, Sep 21, 2021 9:19pm -07:00)
  • https://adactio.com/notes/18472
    Portland, Oregon • 67°F
    Tue, Sep 21, 2021 8:47pm -07:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv