59°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Bushra Farooqui https://twitter.com/startuployalist
    Gall's Law:

    "A complex system that works is invariably found to have evolved from a simple system that worked. A complex system designed from scratch never works and cannot be patched up to make it work. You have to start over with a working simple system."
    Portland, Oregon • 81°F
    Mon, Sep 2, 2019 11:42pm +00:00 (liked on Mon, Sep 2, 2019 5:35pm -07:00)
  • KTamas ✈️ Portland πŸ”œ XOXO https://twitter.com/KTamas
    set up @aaronpk 's Compass as an experiment on my iphone for location tracking & visualization while in portland thanks to the help of @emorydunn
    Portland, Oregon
    Mon, Sep 2, 2019 7:55pm +00:00 (liked on Mon, Sep 2, 2019 1:02pm -07:00)
  • Hannah Hart https://twitter.com/harto
    I saw this on Reddit and it really spoke to me. Just posting this in case it speaks to you too. β™₯️ Love, Hannah
    Portland, Oregon
    Mon, Sep 2, 2019 2:49pm +00:00 (liked on Mon, Sep 2, 2019 12:22pm -07:00)
  • The Everyday Dad https://twitter.com/every_daydad   •   Sep 2
    I didn’t notice that unfortunately sorry.
    Aaron Parecki
    sounds like I might have another video to make tomorrow then πŸ˜‚
    Portland, Oregon
    1 like
    Sun, Sep 1, 2019 6:21pm -07:00
  • The Everyday Dad https://twitter.com/every_daydad   •   Aug 20
    Probably the best thing on the G7XIII is the lens.

    I wish this lens was on every point and shoot from now on. 24-100 1.8-2.8 πŸ”₯πŸ”₯
    Aaron Parecki
    I know you don't have this anymore, but did you see the weird thing when taking a picture, the screen would continue to show the live view for a second before the preview of the photo appeared? The previous gen didn't do that. I can't figure out if there's a setting somewhere...
    Portland, Oregon
    1 like 1 reply
    Sun, Sep 1, 2019 6:09pm -07:00
  • Beko Pharm https://twitter.com/BekoPharm   •   Aug 31
    Well I’d suggest a nifty video. IndieWeb in 5 minutes. Don’t talk about the details or the implementation (that’s tech babble). Show em what’s in for Joe. Solid reasons like displaying a feed the way you like it and not how \$silo AI decided. (Still working on that :))
    Aaron Parecki
    That's exactly the challenge, it means different things to different people. For example that example isn't appealing to everyone, only people who are annoyed with that particular feature of silos. Other people like the "own your data" aspect.
    Portland, Oregon
    1 like 1 repost 1 reply
    Sat, Aug 31, 2019 3:31pm -07:00
  • Blaine Cook https://twitter.com/blaine
    Accounts tweeting garbage was one of the primary threat models, of course, but I'll give you that we didn't anticipate Jack tweeting hate speech to many millions of people. 😒
    Portland, Oregon
    Sat, Aug 31, 2019 4:18am +00:00 (liked on Sat, Aug 31, 2019 11:05am -07:00)
  • Blaine Cook https://twitter.com/blaine
    Ahem. ;-) I spent a lot of time talking about how insecure SMS was (and mobile networks in general).
    Portland, Oregon
    Sat, Aug 31, 2019 4:15am +00:00 (liked on Sat, Aug 31, 2019 11:05am -07:00)
  • Stefán Jökull Sigurðarson - CCP Ghostrider https://twitter.com/stebets   •   Aug 31
    SMS 2FA is always better than no 2FA though.
    Aaron Parecki
    If SMS is purely for 2FA then yes. but quite often adding SMS 2FA also lets you use SMS for account recovery, and that is worse than having no 2FA.
    Portland, Oregon
    1 like 1 reply
    Sat, Aug 31, 2019 7:21am -07:00
  • Heather Downing https://twitter.com/quorralyne   •   Aug 30
    What factor would you prefer though?
    Aaron Parecki
    Something that can't be taken away from me without my knowledge. So, yubikey, TOTP, or even push notification, etc.
    Portland, Oregon
    2 likes 2 replies
    Fri, Aug 30, 2019 4:47pm -07:00
  • Aaron Parecki
    This @jack situation is making me rethink my phone number strategy. I've been treating my SIM number as disposable and easily replaceable, where the number I use for 2FA is a google voice number. But now I'm thinking treating my SIM number as a password is a better plan.
    Portland, Oregon, USA
    6 likes 1 repost 2 replies
    Fri, Aug 30, 2019 2:23pm -07:00 #security
  • fluffy https://twitter.com/fluffy
    What I like about IndieWeb is it gives a bunch of small, relatively-easy-to-implement building blocks that provide parts of that, but there's still a lot that needs to happen to make it all work nicely together and provide a UX that's sensible.
    Portland, Oregon
    Fri, Aug 30, 2019 9:08pm +00:00 (liked on Fri, Aug 30, 2019 2:08pm -07:00)
  • Scott Hanselman https://twitter.com/shanselman   •   Aug 30
    HOW did the CEO of Twitter's account get hacked? Don't y'all have people for that? An oh shit button? 2FA? Something?
    Aaron Parecki
    SIM hijacking is a thing, and why SMS should never be used for two factor authentication
    Beaverton, Oregon
    6 likes 3 replies
    Fri, Aug 30, 2019 1:48pm -07:00
  • jack 🌍🌏🌎 https://twitter.com/jack
    Cloud hopper?
    Beaverton, Oregon
    Mon, Jan 28, 2019 10:23pm +00:00 (liked on Fri, Aug 30, 2019 1:46pm -07:00)
  • EJ Fox 🌞 https://twitter.com/mrejfox
    Someone found out the number Jack Dorsey linked to twitter for SMS and used that to post. β€œCloudhopper” is how SMS posts show up because Twitter doesn’t give a shit about anything.

    Another great reason to treat your personal phone number like your password and use Google Voice.
    Beaverton, Oregon
    Fri, Aug 30, 2019 8:03pm +00:00 (liked on Fri, Aug 30, 2019 1:45pm -07:00)
  • Mike Purvis https://twitter.com/mikedotexe
    Radical, that's great to hear. I'll admit I'm not too familiar with the future goals of OAuth. This type of things seems like an easy win, both for sites using OAuth and users. Just one extra level of granularity makes such a difference.
    Portland, Oregon
    Fri, Aug 30, 2019 7:18pm +00:00 (liked on Fri, Aug 30, 2019 1:07pm -07:00)
  • Mike Purvis https://twitter.com/mikedotexe   •   Aug 30
    I just tweaked the DOM to illustrate what I'd like to see. I (would) love it, too. 🀞
    Aaron Parecki
    But for real, there's some new work going on around this right now, the idea is to add structure to the scopes requested so they can do things like this, or asking for permission into a specific bank account or for a specific dollar amount, etc
    Portland, Oregon
    1 like 1 reply
    Fri, Aug 30, 2019 10:49am -07:00
  • Mike Purvis https://twitter.com/mikedotexe   •   Aug 30
    I just tweaked the DOM to illustrate what I'd like to see. I (would) love it, too. 🀞
    Aaron Parecki
    πŸ‘πŸ‘πŸ˜‚
    Portland, Oregon
    Fri, Aug 30, 2019 10:31am -07:00
  • Mike Purvis https://twitter.com/mikedotexe   •   Aug 30
    I want to see this in @oauth_2 . Limits per usage with automatic revocation once the max is reached. Is anyone doing this? I've never seen it.
    Something similar found here, but not the same if I'm reading it correctly: https://tools.ietf.org/html/rfc6819#section-5.1.5.4
    Aaron Parecki
    I love this. What service is this? It doesn't look like the normal Facebook OAuth screen I've seen.
    Portland, Oregon
    2 replies
    Fri, Aug 30, 2019 10:27am -07:00
  • Aaron Parecki
    Finished the picture frame that shows my upcoming travel!
    ⁣
    ⁣It shows my current location and local time, the dates of my next trip, and my departing or arriving flight information! ⁣
    ⁣
    Let's call this v1 tho, because I need to get a better matte for the frame, not just the cheap cardboard that came with it that i tore while cutting it. I might spring for a bigger display next time too! ⁣
    ⁣
    But overall I'm pretty happy with it!
    23 likes 5 replies
    Fri, Aug 30, 2019 12:18am +00:00 #homeautomation #travel #travelframe #eink #e-ink
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • πŸŽ₯ YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • βš™οΈ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv