!GsmxjHfeAYLsTEQmjS:nixos.org

Matrix Meta (Nix)

604 Members
Discuss your proposals for the Matrix space here, before suggesting them in #matrix-suggestions:nixos.org173 Servers

Load older messages


SenderMessageTime
19 Aug 2025
@cat:feline.supportCatAs of 2.6.0 the don't upgrade recommendation changed to a make sure you know what your doing type of recomendation.12:53:38
@cat:feline.supportCatSince room upgrades especially to v12 are a mess and if you dont know what your doing its easy to screw up.12:54:03
@cat:feline.supportCatEspecially as nobody who is responsible to any real degree can ethically use /upgrade API if they have been attacked in the past.12:54:38
@k900:0upti.meK900My personal take on this is that I'd want to see some sort of automation for upgrades too12:54:42
@cat:feline.supportCatDue to that you will be re sending offensive mxids.12:54:48
@k900:0upti.meK900 FWIW I absolutely don't care about resending banned MXIDs 12:55:07
@cat:feline.supportCatI agree. Thats why room upgrade tooling in Draupnir is a issue thats open.12:55:11
@k900:0upti.meK900That's extremely not my problem12:55:19
@cat:feline.supportCatWe had a problem in the past where they contained CSAM onion links.12:55:30
@k900:0upti.meK900OK, so?12:55:39
@k900:0upti.meK900That's already in the room history and can't be meaningfully removed12:55:49
@cat:feline.supportCatyes you cant remove it from the old room but adding it to your new room is bad optics especially when your bot renders it not needed.12:56:13
@cat:feline.supportCatThats the point im making. Like the API that Synapse provides for upgrades has that as one of its flaws.12:56:38
@cat:feline.supportCatAlso that is especially needed for v12 due to that in v12 the room creator has infinite power.12:57:07
@cat:feline.supportCatAnd said power is not revokable.12:57:12
@cat:feline.supportCatI know Ubuntu are going to do all their upgrades via system account due to that. And it looks likely that Fedora will also take that same direction. It wouldnt shock me if Nix will also end up doing that.12:58:23
@k900:0upti.meK900We already have an account like that and yes that would be the plan13:05:34
@emma:rory.gay@emma:rory.gayopensuse will too, but most likely just using the Guard Geeko account13:07:36
@emma:rory.gay@emma:rory.gaythe upgrade isnt that worthwhile13:08:12
@cat:feline.supportCatThe upgrade currently comes at too large a cost i would argue.13:11:32
@cat:feline.supportCatConsidering not all the homeservers people currently run are on v12 support yet.13:11:48
@emma:rory.gay@emma:rory.gaythere's the version issue, but also continuwuity outright not having a release with v12 support at all yet13:15:12
@ylagr:matrix.orgylagr joined the room.15:16:41
@sandro:supersandro.deSandroAlready did that with all Hackspace rooms to have the power on one account for all existing rooms15:40:21
@emma:rory.gay@emma:rory.gayim still holding off on room version 1215:48:54
@charles:computer.surgeryCharlesi think i would say the vulnerabilities are, uh, underblown, and the efficacy of the mitigations are overblown15:52:12
@charles:computer.surgeryCharlessee also my comment here https://lobste.rs/s/1ghsju/project_hydra_improving_state#c_eayyqo15:52:44
@emilazy:matrix.orgemily"More generally, I think that availability of write nodes is actually an undesirable property for public rooms" 💯15:54:22
@emilazy:matrix.orgemilythey should really just add a room type that is "owned" by a homeserver15:54:48
@emilazy:matrix.orgemilyI guess policy servers are basically this with extra steps or something15:54:56

Show newer messages


Back to Room ListRoom Version: 6