54°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • 📷 PhotoJoseph https://twitter.com/photojoseph   •   May 6
    Good morning, world! How did you start your week?
    Aaron Parecki
    a run is an excellent idea, but instead I spent the day editing my behind-the-scenes video of last week's shoot: https://www.youtube.com/watch?v=epKA84wK9ls
    Portland, Oregon, USA
    1 like
    Mon, May 6, 2019 8:37am -07:00
  • Aaron Parecki
    I got a lot of questions last week at @ML4ALL about how I was able to turn around the conference videos so quickly, so I put together a little behind-the-scenes video showing a walkthrough of my whole setup and workflow, including biking all the gear in and out! 🚲🎥🎉 https://www.youtube.com/watch?v=epKA84wK9ls
    Portland, Oregon, USA
    9 likes 5 reposts
    Mon, May 6, 2019 7:46am -07:00 #livestream #backpedaltv #video #ml4all
  • Bicycle-sized live-streaming rig using the Blackmagic ATEM

    Livestreaming a Two-Day Conference // Behind the Scenes of ML4ALL
    continue reading...
    Sun, May 5, 2019 9:07pm -07:00
  • Sony RX0 II vs DSC Pieni - TINY CAMERA BATTLE!

    A camera even smaller than the Sony RX0 II??? In this episode of Tiny Camera Gear, we'll compare the DSC Pieni against the Sony RX0 II and review each of their pros and cons.
    continue reading...
    Sat, May 4, 2019 12:51pm -07:00
  • Calum Ryan | calumryan.com https://twitter.com/calum_ryan
    Session planning time at IndieWebCamp Berlin (https://calumryan.com/note/2626)
    Portland, Oregon
    Sat, May 4, 2019 10:23am +00:00 (liked on Sat, May 4, 2019 9:47am -07:00)
  • Even André Fiskvik https://twitter.com/grEvenX   •   May 3
    In the process of changing how we authorize the users in our web app and I’m wondering what route to take. Do you know about any simple proxy-like services for Oauth 2 Auth code flow (not OIDC) that can keep sessions and handle Auth for any SPA ?
    Aaron Parecki
    Plenty of server-side frameworks can do this, I'm not sure about something as a service though. Also not sure if you'd really want to go down the path of offloading that kind of thing to a different site either.
    Portland, Oregon
    1 reply
    Sat, May 4, 2019 9:46am -07:00
  • Aaron Parecki
    at Salmon Street Springs Fountain
    Portland, Oregon • Fri, May 3, 2019 4:01pm
    45.515367 -122.673305
    Portland, OR, United States • 49°F
    1 like 15 Coins
    Fri, May 3, 2019 4:01pm -07:00
  • NSN https://twitter.com/nsnusername
    Implicit flow is history.
    Portland, Oregon • 49°F
    Thu, May 2, 2019 3:29pm +00:00 (liked on Fri, May 3, 2019 8:48am -07:00)
  • Lillian Karabaic https://twitter.com/anomalily
    Just found out that @juliensolomita used my suggestion in his most recent video to do a mac + cheese tasteoff and I am STOKED. Because I love nothing more than some vegan mac. https://www.youtube.com/watch?v=EBv5A7NC2eI
    Portland, Oregon • 49°F
    Fri, May 3, 2019 12:02am +00:00 (liked on Thu, May 2, 2019 8:22pm -07:00)
  • Aaron Parecki
    at Gate 27
    San Jose, California • Thu, May 2, 2019 5:20pm
    37.364881 -121.92392
    San Jose, CA, United States
    7 Coins
    Thu, May 2, 2019 5:20pm -07:00
  • Nico Kaiser https://twitter.com/nicokaiser   •   May 2
    ... assuming I can control what JS code runs on my site (which is a different problem), this should be safe, right?
    Aaron Parecki
    That's a big assumption (you don't know what browser extensions the user is using) but yes that's one way to be more confident. I wouldn't use absolute terms like "safe" though. "Less risky" maybe.
    San Jose, California • 49°F
    Thu, May 2, 2019 4:31pm -07:00
  • Drummond Reed https://twitter.com/drummondreed
    Biggest laugh at #IIW so far: when @justin__richer in his session on “Is #selfsovereignidentity really possible” turned to Dave Crocker and said that we can all blame him for the Internet not having #security built in from the start.
    San Jose, California • 49°F
    Thu, May 2, 2019 6:03pm +00:00 (liked on Thu, May 2, 2019 4:18pm -07:00) #IIW #selfsovereignidentity #security
  • Drummond Reed https://twitter.com/drummondreed
    At #IIW session on “Is #selfsovereignidentity really possible”, @xmlgrrl Eve Maler offers perhaps the most concise definition of of #privacy I’ve ever heard: “Privacy is context-controlled choice and respect.” Beautiful. And I believe actually possible with #SSI.
    San Jose, California • 49°F
    Thu, May 2, 2019 6:07pm +00:00 (liked on Thu, May 2, 2019 4:18pm -07:00) #IIW #selfsovereignidentity #privacy #SSI
  • Eve Maler https://twitter.com/xmlgrrl
    In @justin__richer’s #IIW “DIDn’t” session: Once more with feeling: Privacy is not secrecy; privacy is not encryption; privacy is context, control, choice, and respect.
    San Jose, California • 49°F
    Thu, May 2, 2019 6:10pm +00:00 (liked on Thu, May 2, 2019 4:18pm -07:00) #IIW
  • Aaron Parecki
    at The Club at SJC
    San Jose, California • Thu, May 2, 2019 3:57pm
    37.368421 -121.928393
    San Jose, CA, United States
    8 Coins
    Thu, May 2, 2019 3:57pm -07:00
  • Aaron Parecki
    at TSA Pre-Check Terminal B
    San Jose, California • Thu, May 2, 2019 3:48pm
    37.365179 -121.924013
    San Jose, CA, United States • 49°F
    4 Coins
    Thu, May 2, 2019 3:48pm -07:00
  • Aaron Parecki
    at Norman Y. Mineta San José International Airport (SJC)
    San Jose, California • Thu, May 2, 2019 3:43pm
    37.368438 -121.929042
    San Jose, CA, United States
    10 Coins
    Thu, May 2, 2019 3:43pm -07:00
  • Nico Kaiser https://twitter.com/nicokaiser   •   May 2
    What is your opinion on refresh tokens in client-side apps? The PKCE Auth Code flow allows issuing refresh tokens, so SPAs can refresh their tokens without relying on web_message (possibly cross-domain) iframes. ...
    Aaron Parecki
    Totally depends on your risk tolerance. Browsers are always a more risky environment, so that's something to keep in mind with refresh tokens.

    If you are going to issue refresh tokens to JS, definitely rotate them after every use.
    Sunnyvale, California • 49°F
    1 like
    Thu, May 2, 2019 3:32pm -07:00
  • Eve Maler https://twitter.com/xmlgrrl
    #IIW today is obv going to start with a bang. @justin__richer
    Mountain View, California • 49°F
    Thu, May 2, 2019 4:06pm +00:00 (liked on Thu, May 2, 2019 10:14am -07:00) #IIW
  • Chris https://twitter.com/gonji96
    PKCE is on my list to implement when no one is watching
    Mountain View, California • 49°F
    Thu, May 2, 2019 3:54pm +00:00 (liked on Thu, May 2, 2019 9:04am -07:00)
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2026 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv