Home | Notifications | New Note | Local | Federated | Search | Logout
silverpill@silverpill@mitra.social
Developer of ActivityPub-based micro-blogging and content subscription platform Mitra. I help maintain the FEP repository and write my own FEPs too. Currently working on ActivityPub Next.
Code: https://codeberg.org/silverpill/
Matrix: @silverpill:unredacted.org
XMPP: silverpill@were.chat
$XMR: 48YM8jwJqDkeUvD38vepSXFeMZH1zsjbvGwTTuaNSSq6Q5GyeWaeiheAZUsSmNn72YdyLpw8geb4FL3opZfGbguJLUj8Mi9
XMR subscription: https://mitra.social/@silverpill/subscription
PGP: 0541 49E3 0F91 C6D7 8FFA C49C 955F 5A6E 2123 25F0
OMEMO fingerprint: 689a2fb0ec87a9481fb45cb7d8870da6aeb4d8247bd69a39017701133b901f04
Matrix (backup): @silverpill:poa.st
Joined: 2026-01-05 16:03:27
435 notes, 1 following, 0 followers
Reply to @mariusor@metalhead.club
silverpill@silverpill@mitra.social (2026-05-09 02:01:16)
@mariusor It is possible that the signature is incorrect, but my own verifier can verify the signature. I assume that my verifier is good enough because it is compatible with several known RFC-9421 implementers (fedify, tootik, etc).
Another data point: mastodon.social accepts my RFC-9421 signed POST request, returns 202.
Components used in the signature base: @method, @target-uri, content-digest, @signature-params.
@Marius @marius
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-08 23:55:13)
@fedi Yes, for avatars the limit is 2MB
Reply to @mariusor@metalhead.club
silverpill@silverpill@mitra.social (2026-05-08 23:51:41)
@mariusor Made another one.
The response is {"@context":"http://marius.federated.id/ns#errors","errors":{"status":401,"message":"authorized Actor is invalid"}}
@Marius @marius
Reply to @mariusor@metalhead.club
silverpill@silverpill@mitra.social (2026-05-08 20:22:26)
@mariusor Still returns 401.
The timestamp is 2026-05-08T11:20:47Z
@Marius @marius
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-08 20:01:44)
@fedi It likely means your HTTP server is rejecting the request (not Mitra).
For nginx, you need to adjust this setting:
https://codeberg.org/silverpill/mitra/src/branch/main/contrib/mitra.nginx#L35
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-08 19:39:47)
@fedi 20M by default, can be changed in config
Reply to @rayslava@mitra.do.rayslava.com
silverpill@silverpill@mitra.social (2026-05-08 19:36:01)
@rayslava @fedi Have you reported this to mastodon.el maintainer? I would be happy to assist with the debugging but I need some clues. Perhaps the client logs out when some API call fails or returns unexpected data.
Reply to @xaetacore@neondystopia.world
silverpill@silverpill@mitra.social (2026-05-08 19:27:18)
@xaetacore @Saorsa Mitra can import posts from outbox.json (used by Mastodon and several other platforms), but I don't know if Misskey provides these exports
>also the client side compression and meilisearch is really nice, idk if that soft has those, it is crucial that its scalable
It it not designed for very large instances but should work fine if you have several dozen of active users.
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-08 03:38:58)
@fedi @captainepoch
Reply to @Saorsa@neondystopia.world
silverpill@silverpill@mitra.social (2026-05-08 03:30:22)
@Saorsa It's written in Rust and uses Postgresql as a database.
You can read about the installation process and hardware requirements in the readme:
https://codeberg.org/silverpill/mitra#requirements
Reply to @rayslava@mitra.do.rayslava.com
silverpill@silverpill@mitra.social (2026-05-08 03:22:59)
@rayslava @fedi There is no formal procedure. The list consists of clients with friendly and responsive maintainers and clients that I can debug myself.
I am not familiar with Emacs but if it works well let's add it to the list.
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-07 22:54:04)
@fedi Yes, there is a list of supported clients in the readme: https://codeberg.org/silverpill/mitra#supported-clients
Other clients should also work, but that's not guaranteed.
silverpill@silverpill@mitra.social boosted:
@gabriel@mstdn.starnix.network (2026-05-07 05:08:12)
The pattern of fungible digital infrastructure really is quite interesting.
By that I mean relays in Nostr & #DeltaChat and transport neutrality like #Mitra Mini & Manyverse.
Reply to @gabriel@mstdn.starnix.network
silverpill@silverpill@mitra.social (2026-05-07 05:56:55)
@gabriel
>fungible digital infrastructure
This is a really useful concept!
In my opinion, the infrastructure should be fungible, but not too fungible. On the one end of the spectrum, there is Fediverse, where each server is unique. This architecture helps communities grow and fosters decentralization, but moving between servers is difficult. On the other end, there are blockchains. Decentralized, but in practice they are just big databases where you dump your data. Nobody cares who the node operators are.
I'd like to build infrastructure that is fungible but not impersonal.
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-07 03:55:53)
@fedi Select "Repost with comment" in the post menu. The option is only visible when viewing a thread.
https://m.thefedi.town/objects/019dfdff-24bb-7b90-a6f3-41d1e83f1144
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-07 03:50:59)
@fedi You mean financially? I accept cryptocurrency donations, there are no other options unfortunately.
(Yes, I am the main developer of Mitra.)
Reply to @mariusor@metalhead.club
silverpill@silverpill@mitra.social (2026-05-07 03:46:53)
@mariusor I created it manually. Too lazy to add object :]
Reply to @mariusor@metalhead.club
silverpill@silverpill@mitra.social (2026-05-07 03:36:40)
@mariusor @Marius @marius Sent another one to https://marius.federated.id/inbox
2026-05-06T18:33:57Z
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-06 22:11:47)
@fedi You can also add a subscriber manually, without a payment. It could work as a private group.
Reply to @Marius@marius.federated.id
silverpill@silverpill@mitra.social (2026-05-06 21:53:27)
@Marius
>inbound verification
Is it enabled on this instance? I tried to send a POST request signed according to RFC-9421 to your inbox, the response was 401.
Timestamp: 2026-05-06T12:50:30Z
cc @mariusor
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-06 21:44:01)
@fedi It is similar to followers-only posts, but instead of simply following, subscribers need to pay a certain amount.
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-06 21:41:50)
@fedi You can generate them with Mitra CLI:
mitra generate-invite-code
https://codeberg.org/silverpill/mitra/src/branch/main/docs/mitra_cli.md
Reply to @fedi@m.thefedi.town
silverpill@silverpill@mitra.social (2026-05-06 21:40:18)
Hi @fedi !
I wanted to build a decentralized communication platform where you can truly own your online presence. Fediverse is not quite that, because you need to rent a domain name and often the hardware too, but it was the biggest decentralized network at the time, so I decided that it is a good place to start.
Mitra was a testing ground for various protocol extensions, and eventually grew into a full-fledged micro-blog.
Reply to @jdlh@mstdn.ca
silverpill@silverpill@mitra.social (2026-05-06 05:44:00)
@jdlh @Profpatsch @hongminhee @liaizon @Edent @north @aumetra Yes, sounds good, though it might be better to combine these FEPs into a big one because the topics are related (perhaps in a collaboration with @Profpatsch ?)
Reply to @akkoma@ihatebeinga.live
silverpill@silverpill@mitra.social (2026-05-06 05:04:00)
@akkoma
>wherein a badly configured firewall or other such fun could create the possibility for someone to use a weak http signature
Could you share more details?
Reply to @petitminion@socialhub.activitypub.rocks
silverpill@silverpill@mitra.social (2026-05-06 04:04:36)
The definitions of audience are ambiguous. For example, the "Library" table
https://codeberg.org/petitminion/fep/src/branch/fep-be68/fep/be68/fep-be68.md#library
states that audience is a String (URI).
But in the "Privacy level" section, privacy levels are defined as single-word strings, not URIs.
Also, is it correct that Audio objects don't have an audience property?
Reply to @Profpatsch@mastodon.xyz
silverpill@silverpill@mitra.social (2026-05-06 03:28:12)
@Profpatsch @jdlh @hongminhee @liaizon @Edent @north @aumetra Have you considered publishing a FEP about this?
Reply to @phnt@fluffytail.org
silverpill@silverpill@mitra.social (2026-05-04 17:02:55)
@phnt I don't quite understand what this is all about. It seems that Emelia is suggesting sticking to RFCs while Evan is pushing for a custom solution.
Is OAuth 2.1 a bad thing? On the surface, it is an improvement, basically an update to OAuth 2.0 that makes it less ambiguous and more secure.
Reply to @chlo@w.chlo.is
silverpill@silverpill@mitra.social (2026-05-04 16:10:44)
@chlo You probably need to add --features production flag:cargo build --release --features production
https://codeberg.org/silverpill/mitra#building-from-source
Reply to @jae@mastodon.bsd.cafe
silverpill@silverpill@mitra.social (2026-05-04 04:51:47)
@jae Thanks :3
The current implementation uses a single shared directory, so there is no privacy, but in theory this problem could be solved by creating a separate directory for each peer.
Older Notes