Home | Notifications | New Note | Local | Federated | Search | Logout

Federated Timeline


FediFollows@FediFollows@social.growyourown.services (2026-05-12 03:03:09) 🔭 #Observatories & #Telescopes to follow:

@esoastronomy - European Southern Observatory
@astro_jcm - Astronomer & media officer at ESO
@ehtelescope - Global radio telescope network
@ORB_KSB - Royal Observatory of Belgium (in English, Dutch, French)
@WestportObservatory - Community observatory in Connecticut USA
@StellaLunaObs - Private observatory in Ohio USA
@BGO - Automated observatory in Nova Scotia, Canada
@spacelizard - Instrument scientist at Australian Astronomical Observatory in Sydney

fedicat@fedicat@pc.cafe boosted: @stefan@stefanbohacek.online (2026-05-12 02:39:42) FediLearns Classifieds is a pretty neat project from @inherentlee that lets you find people offering to teach various skills.

And you can submit a listing yourself!

https://fedilearns.fyi

#fediverse #FediLearns

Stefan Bohacek@stefan@stefanbohacek.online (2026-05-12 02:39:42) FediLearns Classifieds is a pretty neat project from @inherentlee that lets you find people offering to teach various skills.

And you can submit a listing yourself!

https://fedilearns.fyi

#fediverse #FediLearns

Linguist Gone Foreign 🌏@linguistgoneforeign@mastodon.social (2026-05-12 02:12:05) I'm very happy to see how my 3-year journey replacing big tech with privacy-oriented, humane platforms is shaping:

Gmail: Tuta and Proton

Google Calendar: Fossify

Google Maps: Organic Maps

Twitter: Mastodon

Facebook, Instagram: Pixelfed

WhatsApp, Telegram: Signal

Android: GrapheneOS

Windows: Linux Mint

It was overwhelming, it took time and research. But I can tell you that another digital experience is possible.

Now I'm thrilled to have devices that belong to ME, like in the old days.

fedicat@fedicat@pc.cafe boosted: @mkljczk@pl.fediverse.pl (2026-05-12 01:54:33) adding a feature to nicolium that lets you add a link to my profile to the menu, i know some of you really wanted this feature ---Attachments--- image: https://mediapl.fediverse.pl/media/4d/4e/a3/4d4ea317229ceeb05561cc1410172b4a4a83c2d6770005091d6d192ea23fa65c.png

nicole mikołajczyk@mkljczk@pl.fediverse.pl (2026-05-12 01:54:33) adding a feature to nicolium that lets you add a link to my profile to the menu, i know some of you really wanted this feature ---Attachments--- image: https://mediapl.fediverse.pl/media/4d/4e/a3/4d4ea317229ceeb05561cc1410172b4a4a83c2d6770005091d6d192ea23fa65c.png

fedicat@fedicat@pc.cafe boosted: @mkljczk@pl.fediverse.pl (2026-05-12 00:30:50) now nicolium+iceshrimp.net users can browse other instances' timelines by clicking the instance favicon next to account username (just as with pleroma)

fedicat@fedicat@pc.cafe boosted: @botkit@hollo.social (2026-05-12 00:49:48) BotKit security updates: 0.3.2 and 0.4.1
If you use BotKit, update to a patched release now. A private network protection bypass affects Fedify's remote document loading code, and it also affects BotKit which depends on Fedify.

The validatePublicUrl() function in Fedify, which ensures resources aren't fetched from private or loopback addresses, failed to correctly identify certain IPv6 literals. Specifically, URLs with private IPv4 addresses encoded as IPv4-mapped IPv6 literals (e.g., http://[::ffff:127.0.0.1]/) could bypass the check.

This vulnerability could allow an attacker to provide a malicious URL that bypasses security checks, potentially allowing them to make the bot fetch internal resources or interact with services on the private network that should not be accessible from the public internet.

All versions of BotKit up to 0.3.1 (in the 0.3.x branch) and 0.4.0 (in the 0.4.x branch) are affected. Patched releases are 0.3.2 and 0.4.1.

For BotKit 0.4.x, update @fedify/botkit:


npm update @fedify/botkit
yarn upgrade @fedify/botkit
pnpm update @fedify/botkit
bun update @fedify/botkit
deno update @fedify/botkit
For BotKit 0.3.x, update @fedify/botkit:


npm update @fedify/botkit@0.3.2
yarn upgrade @fedify/botkit@0.3.2
pnpm update @fedify/botkit@0.3.2
bun update @fedify/botkit@0.3.2
deno update @fedify/botkit@0.3.2
If you use other BotKit-related packages (e.g., @fedify/botkit-sqlite), update them as well. After updating, redeploy.

Thanks to Changkyun Kim (@me) for the report and responsible disclosure.

If anything is unclear, feel free to ask on GitHub Discussions or Matrix.

BotKit by Fedify :botkit:@botkit@hollo.social (2026-05-12 00:49:48) BotKit security updates: 0.3.2 and 0.4.1
If you use BotKit, update to a patched release now. A private network protection bypass affects Fedify's remote document loading code, and it also affects BotKit which depends on Fedify.

The validatePublicUrl() function in Fedify, which ensures resources aren't fetched from private or loopback addresses, failed to correctly identify certain IPv6 literals. Specifically, URLs with private IPv4 addresses encoded as IPv4-mapped IPv6 literals (e.g., http://[::ffff:127.0.0.1]/) could bypass the check.

This vulnerability could allow an attacker to provide a malicious URL that bypasses security checks, potentially allowing them to make the bot fetch internal resources or interact with services on the private network that should not be accessible from the public internet.

All versions of BotKit up to 0.3.1 (in the 0.3.x branch) and 0.4.0 (in the 0.4.x branch) are affected. Patched releases are 0.3.2 and 0.4.1.

For BotKit 0.4.x, update @fedify/botkit:


npm update @fedify/botkit
yarn upgrade @fedify/botkit
pnpm update @fedify/botkit
bun update @fedify/botkit
deno update @fedify/botkit
For BotKit 0.3.x, update @fedify/botkit:


npm update @fedify/botkit@0.3.2
yarn upgrade @fedify/botkit@0.3.2
pnpm update @fedify/botkit@0.3.2
bun update @fedify/botkit@0.3.2
deno update @fedify/botkit@0.3.2
If you use other BotKit-related packages (e.g., @fedify/botkit-sqlite), update them as well. After updating, redeploy.

Thanks to Changkyun Kim (@me) for the report and responsible disclosure.

If anything is unclear, feel free to ask on GitHub Discussions or Matrix.

nicole mikołajczyk@mkljczk@pl.fediverse.pl (2026-05-12 00:30:50) now nicolium+iceshrimp.net users can browse other instances' timelines by clicking the instance favicon next to account username (just as with pleroma)

Reply to @Coro@mstdn.maud.io Coro@Coro@mstdn.maud.io (2026-05-12 00:20:17) 「都市の鼓動」【全体的に厳しいNewCycle】Part6 - YouTube

https://youtu.be/TnfnvxQ2oBs

mbajur@mbajur@mastodon.social (2026-05-12 00:03:20) Does #mastodon support a root level domain handles yet? Like, say, user having his AP-enabled single-user website under example.com having a @example.com handle instead of @something@example.com

#help #fedidev #fediverse #mastodev #activitypub #needhelp

Reply to @Coro@mstdn.maud.io Coro@Coro@mstdn.maud.io (2026-05-11 23:56:21) > 米自動車業界と超党派議員らは「中国に米市場へのいかなるアクセ​スも与えないでほしい」と強く求めている。トランプ氏は(2026-)1月、中国の自動車‌メーカーが米国内に工場を建設し米国人を雇用したいと考えるなら「素晴らしい」と発言。「私はそれを大いに歓迎する。中国にも、日本にも進出してもらおう」と述べた。

「中国車販売認めるな」、米業界・議会が訴え 首脳会談控え懸念 | ロイター

https://jp.reuters.com/world/security/SOLBHHVOUZNC7IRQEV2WOKFABM-2026-05-11/

Reply to @Coro@mstdn.maud.io Coro@Coro@mstdn.maud.io (2026-05-11 23:49:24) EV に乗り換えてほしくないから補助金を続けてるんじゃないかと思わなくもない。日本市場だけ守ってもしょうがない気もするが。まだ、近い将来の EV 移行を政権が認識できていないというか認めたがらないのか?
---
> 経済産業省によると、直近のガソリンの全国平均価格は1リットル当たり169.7円だったが、補助金がなければ200.6円と歴史的に見ても高水準となっていた。補助がなくなった場合、EVに乗り換えるインセンティブが働く可能性が高い。

「EV不毛の地」日本で変化の兆し、4月2.6倍-中東情勢が今後影響も - Bloomberg

https://www.bloomberg.com/jp/news/articles/2026-05-11/TDTU4VKJH6V400

warabi餅@w4rabimochi@misskey.io (2026-05-11 22:09:44) 意味わからんタイミングでシャドウバンされてしまい、本当に​:unicode_1d54f_bg_black:​は​:kasu:​

Reply to @Coro@mstdn.maud.io Coro@Coro@mstdn.maud.io (2026-05-11 21:03:44) 世界で広がる電気への転換、EVや太陽光に追い風-原油高で流れ一変 - Bloomberg

https://www.bloomberg.com/jp/news/features/2026-03-27/TCJBUFKGZAJL00

Coro@Coro@mstdn.maud.io boosted: @K0eKaN@mstdn.maud.io (2026-05-11 20:33:09) BYD、エネルギー密度高めた蓄電池 設置スペース半分に - 日本経済新聞

中国の電気自動車メーカー大手、比亜迪の日本法人は送電網につなぐ系統用蓄電池(蓄電所)向けの新型電池を売り出した。従来の製品に比べて電池のエネルギー密度を高め、蓄電所を半分のスペースで建てられるようにした。

https://www.nikkei.com/article/DGXZQOUC288KP0Y6A420C2000000/

K0e@K0eKaN@mstdn.maud.io (2026-05-11 20:33:09) BYD、エネルギー密度高めた蓄電池 設置スペース半分に - 日本経済新聞

中国の電気自動車メーカー大手、比亜迪の日本法人は送電網につなぐ系統用蓄電池(蓄電所)向けの新型電池を売り出した。従来の製品に比べて電池のエネルギー密度を高め、蓄電所を半分のスペースで建てられるようにした。

https://www.nikkei.com/article/DGXZQOUC288KP0Y6A420C2000000/

warabi餅@w4rabimochi@misskey.io boosted: @mkonekodaisuki@misskey.io (2026-05-11 18:00:59) ​:golden_bikini_week:​ ---Attachments--- image: https://media.misskeyusercontent.com/io/9fa6ed3d-74ab-4eca-97f8-25bd209b2e03.webp?sensitive=true

warabi餅@w4rabimochi@misskey.io boosted: @Yigyuki@misskey.io (2026-04-17 18:06:03) カイセイ ---Attachments--- image: https://media.misskeyusercontent.com/io/8648d809-b8bd-4ccd-8b03-7167628816d7.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/c8d22b2e-71e3-4092-a149-5ebdb97cbc5b.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/0907fc04-fbfa-4520-a3aa-1def83ce4ac2.webp?sensitive=true

warabi餅@w4rabimochi@misskey.io boosted: @nonogi6@misskey.io (2026-05-11 13:23:46) ゴールデンいいんちょウィークにしこしこ描いてた白“金ビキニ”ルナです ---Attachments--- image: https://media.misskeyusercontent.com/io/4b2d2ad5-d2cc-4ff1-aa9b-72cdfab9ce96.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/6bc387a7-2b24-498a-a7a9-513834a32a97.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/5d841a11-b604-43e3-9a6a-bdffe6d5a75e.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/00471a7d-d267-4c75-84f2-098f3a3f2458.webp?sensitive=true

warabi餅@w4rabimochi@misskey.io (2026-05-11 19:51:34) ​:yoru_gohan:​​:meow_rice:​

warabi餅@w4rabimochi@misskey.io (2026-05-11 19:47:28) 好きな人が寝てる ---Attachments--- image: https://media.misskeyusercontent.com/io/webpublic-93487cd5-5935-4ab2-ba0d-db57bc097ecd.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/webpublic-7d4ff480-4ce1-40ce-8183-dce52d95f3e0.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/webpublic-b444152a-6fb2-4a82-a04c-25f595b8e1fe.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/webpublic-feb35f29-f4fe-4c10-9e08-95e9b598a6be.webp?sensitive=true
image: https://media.misskeyusercontent.com/io/webpublic-dd202938-3a6f-41eb-acf9-7fb2432d7b71.webp?sensitive=true

三宮エリー :shokken_ranyo_1:@kyokolisianthus@msk.ilnk.info (2026-05-11 19:41:42) バス発車案内表示がBSoD→再起動→BSoDのループになっている面白い光景に出くわしたので ---Attachments--- image: https://msk.ilnk.info/storage/eaaa85dd-553e-455d-9002-7e554cfab9cf.jpg
image: https://msk.ilnk.info/storage/e9a9fc9d-93aa-4e01-a4d8-ea2580f47fcb.jpg

Reply to @cheeaun@mastodon.social Chee Aun 🤔@cheeaun@mastodon.social (2026-05-11 19:20:10) wow double "Remove me" buttons ---Attachments--- image: https://files.mastodon.social/media_attachments/files/116/555/435/668/225/573/original/6979603a48b006a9.png

Reply to @silverpill@mitra.social CaohuaK ❄️@caohuak@moon.lonewolf.zone (2026-05-11 19:08:15) @silverpill @frost @caohuak I saw the activity on my wafrn account.

you can try to send a Bite activity to my iceshrimp.net instance too @caohuak ---Attachments--- image: https://moon.lonewolf.zone/media/644fd85fd07b7f55a591ded20871a7ab96fc56c497c6617fe415d2d7511e252a.png

Reply to @caohuak@moon.lonewolf.zone silverpill@silverpill@mitra.social (2026-05-11 19:03:09) @caohuak @frost I've sent a Bite activity to your Wafrn account: @caohuak

Do you see it?

Reply to @deutrino@mstdn.io silverpill@silverpill@mitra.social (2026-05-11 18:51:16) @deutrino @liaizon

Mastodon devs: starter packs, FASP, E2EE...

Meanwhile, most upvoted Mastodon feature requests:

https://github.com/mastodon/mastodon/issues?q=is%3Aissue%20state%3Aopen%20sort%3Areactions-%2B1-desc

Coro@Coro@mstdn.maud.io (2026-05-11 18:42:01) 小説の虐殺器官 (2006) にメタデータ AI に自伝書かせる話が一瞬出てきた気がするな。あれいまなら現実味があるな。

Reply to @japananon@mitra.anon-kenkai.com silverpill@silverpill@mitra.social (2026-05-11 18:35:59) @japananon @coin 10 years after the initial OpenBazaar release and we still don't have a proper decentralized marketplace.

I can build it, but is there really a demand for such thing?
Older Notes