65°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • fluffy https://twitter.com/fluffy   •   Dec 2
    @aaronpk It feels a bit ironic to me that there doesn't seem to be any RSS or Atom feed associated with https://aaronparecki.com/articles - is this intentional? I don't even see an h-feed on it...
    Aaron Parecki
    I link to my Atom feed from my home page, but all of my feeds are also available as Atom by adding .atom to the URL. I don't have h-feed markup because I haven't gotten around to it and things seem to be doing okay looking at just the list of h-entrys on the page.
    Seattle, Washington • 43°F
    1 reply
    Sun, Dec 2, 2018 10:58am -08:00
  • Vika https://fireburn.ru/   •   Nov 30

    I’m using notmuch to deal with my inbox. It sorts my email so I don’t have to. Maybe you should try it?

    Aaron Parecki
    I wish sorting were the problem, but i already know there are a few dozen high priority things I need to respond to 😖
    Las Vegas, Nevada • 54°F
    Thu, Nov 29, 2018 5:19pm -08:00
  • fluffy http://beesbuzz.biz/   •   Nov 29

    Federated access control with Atom and WebSub

    Aaron Parecki
    This is really interesting. I'm generally wary of adding encryption into a protocol at this level, instead, preferring it at the transport layer for example by providing an HTTP Authorization header. But you've made some interesting arguments about being able to reuse the existing WebSub mechanisms that are worth exploring more.

    I think my main concern, which you sort of hinted at, is that the feed will essentially leak info about how many followers someone has, as well as this potentially including a _lot_ of data as someone's followers grow to the hundreds.

    Have you seen the work going on around making IndieAuth work in a server-to-server environment without user interaction? The idea with that is to let a feed reader fetch a private feed on behalf of a user. https://indieweb.org/AutoAuth
    Las Vegas, Nevada • 52°F
    1 reply 1 mention
    Thu, Nov 29, 2018 3:08pm -08:00
  • Michael Vogel https://pirati.ca/profile/heluecht   •   Nov 29
    How much conferences do you attend per year?
    Aaron Parecki
    Nowhere near as many as some people I know, but I realized I didn't have a list of all of them so I started compiling one! It's still rough but it's a start: https://aaronparecki.com/conferences/ Thanks for the nudge!
    Las Vegas, Nevada • 53°F
    Wed, Nov 28, 2018 11:55pm -08:00
  • christopherchelpka https://micro.blog/christopherchelpka   •   Nov 28

    @EddieHinkle I’m using @aaronpk’s Aperture. But I’m not sure how to subscribe there either...

    Aaron Parecki
    Sorry it's not super obvious. Go into a channel in Aperture, then click "New Source" and you can enter a URL to subscribe to.
    Las Vegas, Nevada • 60°F
    7 mentions
    Tue, Nov 27, 2018 4:38pm -08:00
  • Tomas Quinones https://twitter.com/tomas_quinones   •   Nov 27
    @aaronpk Are you still happy with your Brompton? Lately, I've been seriously considering one for commuting and travel where a touring bike is just too much.
    Aaron Parecki
    yesssss it is still my main bike! The only times I don't ride it are when I have to haul 60 pounds of boxes and I use my cargo bike instead.
    Las Vegas, Nevada • 60°F
    1 reply
    Tue, Nov 27, 2018 4:26pm -08:00
  • Jonathan LaCour https://cleverdevil.io/profile/cleverdevil   •   Nov 26
    @aaronpk see you there! Maybe we can have an impromptu HWC?!
    Aaron Parecki
    omg yesss! HWC re:invent!
    Portland, Oregon • 48°F
    2 likes
    Mon, Nov 26, 2018 10:37am -08:00
  • gilcreque https://micro.blog/gilcreque   •   Nov 25

    @aaronpk is it a Samsung? My son turned off my TV using it's secret hidden button and I was confused for quite some time.

    Aaron Parecki
    Viewsonic actually! One of the last non-smart TVs, so I'm glad it isn't actually broken!
    Portland, Oregon • 38°F
    Sun, Nov 25, 2018 10:44am -08:00
  • Aaron Parecki https://aaronparecki.com/   •   Nov 22
    I did it. I found a TV and survived the crowds and carried the TV back to the MAX station.
    Aaron Parecki
    on the train
    Portland, Oregon, USA • 47°F
    1 reply
    Thu, Nov 22, 2018 7:03pm -08:00
  • Aaron Parecki https://aaronparecki.com/   •   Nov 22
    Shoulda brought my cargo bike. That's a long way to carry a TV box if this works
    Aaron Parecki
    I did it. I found a TV and survived the crowds and carried the TV back to the MAX station.
    Portland, Oregon, USA • 48°F
    1 reply
    Thu, Nov 22, 2018 6:56pm -08:00
  • Aaron Parecki https://aaronparecki.com/   •   Nov 22
    My TV broke just in time for the Black Friday deals. I'm on the train right now heading to the Best Buy by the airport, and with any luck will emerge with a new TV. Or I will find out how many people come down from Vancouver to shop at that Best Buy. Wish me luck.
    Aaron Parecki
    Shoulda brought my cargo bike. That's a long way to carry a TV box if this works
    Portland, Oregon, USA • 47°F
    1 reply
    Thu, Nov 22, 2018 5:06pm -08:00
  • UPS Customer Support https://twitter.com/UPSHelp   •   Nov 22
    Thank you for reaching out to us. Please, DM the details of your concern. Include your tracking and phone number. Please include your shipping address. ^LG
    Aaron Parecki
    sometimes people say nice things about you on twitter too
    Portland, Oregon, USA • 44°F
    1 like 1 reply
    Wed, Nov 21, 2018 4:57pm -08:00
  • Nov 19

    Has anyone here used Adobe Premiere Rush CC on the iPad? I started looking at it today and it looks like a great video editor for small projects. Curious if anyone has any experience with it for an entire project.

    Aaron Parecki
    That does look nice! I hadn't heard of it before. I just downloaded it and went through the tutorial, not bad! I'll try to use it for my next project.
    Portland, Oregon, USA • 45°F
    Wed, Nov 21, 2018 7:12am -08:00
  • https://www.ietf.org/mail-archive/web/oauth/current/msg18477.html
    OAUTH-WG
    Aaron Parecki
    On Wed, Nov 7, 2018 at 7:20 AM Joseph Heenan <joseph at authlete.com> wrote:

    > It may be worth slightly rewording 7.2 as it may encourage a growing misconception that all native apps must be public clients. With many devices now having embedded HSMs, we’ve seen increasing interest in mobile apps being dynamically (per-install) registered oauth2 private clients, and that model has a lot of advantages. (I’m not sure if we might see a similar model evolving for web apps.)

    That's a great point, thanks. I've removed the reference to native apps being public clients since it doesn't really add anything to this spec if I have to caveat the description.

    On Thu, Nov 15, 2018 at 12:58 PM Torsten Lodderstedt <torsten at lodderstedt.net> wrote:

    > > > First of all the AS decides whether it issues refresh tokens or not. Having the ability does not mean the AS must do it. If you feel it’s safer to not do it. Fine.
    > > Sure, and this should be mentioned then somewhere (either in the threats doc or in this proposed best practice doc). Not all end developers using these protocols fully understand the ramifications.
    > @Aaron: I suggest this goes to the SPA BCP since this is client specific.

    Thanks, I agree that this document should include some recommendations around refresh token handling. Looking at the discussion in this thread, it seems there are a few different strategies folks are taking. Since it seems like there isn't a strong consensus, it sounds like this would be better suited for the "Security Considerations" section, and to not make MUST/SHOULD recommendations, but rather just point out the issues. Any thoughts on that before I take a stab at writing something?

    I've incorporated some of the other feedback here and published an updated version:

    https://tools.ietf.org/html/draft-parecki-oauth-browser-based-apps-01

    Thanks for the feedback so far.
    Portland, Oregon
    Mon, Nov 19, 2018 6:09pm -08:00 #oauth
  • Randall Degges https://twitter.com/rdegges   •   Nov 16
    Hohoho. About to give my new talk, 12 Factors of Pain and Suffering at #DOTIde in a few minutes! <3
    Aaron Parecki
    yesss i want to know how this goes
    Des Moines, Iowa • 43°F
    1 reply
    Thu, Nov 15, 2018 9:55pm -06:00
  • Aaron Parecki https://aaronparecki.com/   •   Nov 14
    whoa I've never been in a plane that's pulled out of the gate by making a u-turn and driving forwards before #tinyplane #travel
    Aaron Parecki
    Pulling out of the gate to the runway front first and taking off with no wait feels way more like riding in a car that can fly than an airplane
    Coal Valley, Illinois, USA
    Wed, Nov 14, 2018 6:47pm -06:00
  • yan https://twitter.com/bcrypt   •   Nov 14
    what was the first thing you ever did on the web? i think i was ~7 and i spent a few hours entering every URL i could think of into the browser to see what was there
    Aaron Parecki
    looked up MIDI versions of as many Beatles songs as I could find
    Milan, Illinois, USA
    1 like 1 reply
    Wed, Nov 14, 2018 5:00pm -06:00
  • https://micro.blog/manton/1041816
    Aaron Parecki
    Since Mastodon already supports OAuth 2, and all users already have a URL, adding IndieAuth to Mastodon would not be a huge leap.
    Portland, Oregon, USA • 44°F
    1 mention
    Tue, Nov 13, 2018 10:22am -08:00
  • Eddie Hinkle https://eddiehinkle.com/   •   Nov 11
    Oh wow!! Welcome to the iPhone X-life
    Aaron Parecki
    I'm pretty excited about the wireless charging! Not super thrilled about FaceID, since I thought TouchID was working just fine. I hear good things about the camera compared to the 6S too, so that should be fun!
    Portland, Oregon • 50°F
    1 like 1 reply
    Sun, Nov 11, 2018 7:53pm -08:00
  • https://micro.blog/boris/1022541
    Aaron Parecki
    I started working on a little proxy tool to do exactly that. It's just an API right now, but it lets you delegate all the activitypub stuff to an external service while still using your domain name as the identity. https://github.com/aaronpk/Nautilus
    Portland, Oregon, USA • 49°F
    1 reply
    Sat, Nov 10, 2018 2:20pm -08:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv