Damus
Russell Harrower 🎙️ · 3w
My two takes on this secure HLS. If you’re a hosting company and can’t handle the traffic, then get out of hosting. Our job is to deliver our clients’ content to the public if it’s in the RS...
Dave profile picture
@nprofile1q... I think it's more complicated than that. For the same reason things like Cloudflare exist, the desire is to serve content to people and legit bots, not scammers, spammers and that vibe coded AI project some dude doesn't even know is still running on a box in his closet.

Mastodon had to implement HTTP signatures for the same reason. Once you open up CORS *, you're at the mercy of the internet and it's a bad place.
2
John Spurlock · 3w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqln5q8np5aezhtt7ztv6tah86xk4t3smjuchdvxp0u6uta056204qlatd70 nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq4xqqhck4h85rex0cszue6ge0pw8ycle97qj880g7p3mc29azjqascxsqvl I'm with Russell on this - signed requests for a supposedly open forma...
Russell Harrower 🎙️ · 3w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqln5q8np5aezhtt7ztv6tah86xk4t3smjuchdvxp0u6uta056204qlatd70 I get where you are coming from but as a hosting company we serve HLS already and have no issues with bots. We have our WAF and PWAF services that we developed internally that can detect...