It's a known issue - I have been working with @melroy for a while now to resolve. I think we now understand what is happening under the hood, but not yet why it is happening.
wow.. then when I posted the above thread, it responded with “This page isn’t working” and looked like an error msg that was generated by the browser itself. So I reposted. Same thing. Then I discovered that it posted despite the error. So then I deleted the dupe.
I know it's not ideal, but I fully understand the whole situation. Let's focus on making Mbin better for the existing users who are now experiencing CSRF or log-out problems. Hopefully after that, we can focus on improving anti-spam (since hcaptcha is not preventing any spam accounts for some unknown reason).
Maybe even considering additional an optional question? With only 1 correct answer. Or maybe even enforce 2FA.. I dunno.. But spam is getting out of control. Coincidence due to the rise of LLMs? Who knows. But anti-spam like hCaptcha, even set to "difficult" doesn't seem to cut it anymore...
What works for me on both mastodon and Lemmy is a free text question: why do you want to join?
The user enters whatever they like and it goes into a moderation queue. Both lemmy and mastodon send me an email when a new account is ready to review.
I read the response and choose to whether to approve their account. At the moment, spammers are really bad at answering the “why do you want to join” questions.
The main thing I experience since the CDN update is that voting often ends up in an error page, similar to how adding comments sometimes directs you to a secondary page (luckily with the comment intact). Going back and trying to vote again may or may not work.
I did not have that 3 weeks ago though, and they're not 500s - at least they're not displayed as that. I get pages like this one: https://fedia.io/ecv/7319083/-1
Being a slow peep, & also not previously paying any attention to #kbin / #mbin til last week, i then "discovered" Fedia.io [having no idea at all it was another of your babies]. As i read thru the various admin info for users pages, i thought "hey, this all seems quite familiar, has someone copied Jerry's words from `infosec.exchange'?" Then, soon after, i realised my ignorance. I've not yet tried to sign up coz i still dunno if i "need" it, alongside / instead of my existing #Friendica & Masto accounts, but clearly based on your post here, if i do later decide to try it, i'll need to remember this new status.
Howdy! Mbin (and lemmy) are very different things. It’s sort of like the difference between Twitter and Reddit. You can sort of interact back and forth, but to get the full experience, you have to either be on a lemmy or mbin (or piefed) instance.
@jerry Fair enough. Any "decision" i end up making on this is a low-priority thing, but from my initial looking at your instance the other night, i suspect i'm prolly leaning towards not bothering... not as any slight against your fine work, but simply coz i'm not sure that i like the UI & its tools [compared to Friendica & even Masto]. Also, given that as a lot of my posts, & fav interlocutors' posts, regard #AusPol, my initial keyword search for that #hashtag there were rather underwhelming.
You don't search for hashtags on a content aggregator like this (Lemmy itself didn't even support hashtags until very recently), but for communities / magazines that fit your needs that you subscribe to for a more personalized feed (I'd use external search tools to find communities though, as mbin's magazine search can only find what's already federated) - or just browse /all and let whatever is federated hit you.
I did end up disabling registration due to spam. I can either open them up at a time you’re free to try again or I can manually create an account for you.
Oh, that would be super cool, thanks! I hate to have you do it for me, but my schedule is all kinds of abnormal right now. If you wouldn't mind, that would be great! DM me if you need any info!
I'm not sure where the guys are right now or if you still having that issue but it is likely related to the CDN news from a few days ago, which seems to be the cause for some other issues too.
Did this break federation with lemmynsfw? I just noticed a lack of certain posts on /all, and after double checking it seems there hasn't been anything federated for 4 days. https://fedia.io/d/lemmynsfw.com/
the privacy policy for kbin.earth is just empty for me, on Ungoogled Chromium. I get the page title in large bold, but then an empty box below it despite enabling some foreign 3rd party JS (jwr.one).
But I must say, something like Cloudflare should not be buried in a privacy policy. It should be something that no one misses especially if Tor is whitelisted. A lot of Tor users likely rely on CF’s “just one moment..” page to know it’s a CF page (a mitm we usually want to avoid).
Assuming Cloudflare counts as a CDN, then kbin.earth is also behind one. It's always been behind Cloudflare, but only recently (a few months ago) have I taken advantage of it's caching and security layers.
fedia
Hot
This magazine is from a federated server and may be incomplete. Browse more on the original instance.