!GsmxjHfeAYLsTEQmjS:nixos.org

Matrix Meta (Nix)

607 Members
Discuss your proposals for the Matrix space here, before suggesting them in #matrix-suggestions:nixos.org171 Servers

Load older messages


SenderMessageTime
27 Jul 2025
@quadradical:federated.nexusQuadRadical (Ping) changed their display name from QuadRadical (Ping / Reply) to QuadRadical (Ping).19:57:23
28 Jul 2025
@lavenderdoll:matrix.orglavender joined the room.17:07:36
29 Jul 2025
@dontblameme:matrix.orgDontBlameMe joined the room.00:22:42
@lavenderdoll:matrix.orglavender changed their profile picture.17:40:12
30 Jul 2025
@jh-devv:matrix.org@jh-devv:matrix.orghttps://matrix.org/blog/2025/02/building-a-safer-matrix/13:22:06
@jh-devv:matrix.org@jh-devv:matrix.org

If you run a Matrix server
Open registration is disabled by default in Synapse, and we support that default. If your server offers open registration, you must invest in a safety team to provide appropriate moderation coverage, and mitigate the risks of allowing unknown users to use your server.
Review who is signing up for your server, and the rooms that your server joins.
Review reports from your users, and take action to remove harmful content they report. You should check your legal obligations in the country you host your server.
Work with other server operators to share information about harmful rooms and users. You can reach out to our Safety team at abuse@matrix.org to start that conversation.

13:22:08
@emma:rory.gay@emma:rory.gaywhat about it? its been known for years lol13:24:34
@jh-devv:matrix.org@jh-devv:matrix.org
In reply to @emma:rory.gay
what about it? its been known for years lol
I mean, should we invest in tooling such as the CSAM scanning tool?
matrix.org now uses it on all public chats
13:26:03
@emma:rory.gay@emma:rory.gaymatrix.org does not use a CSAM scanning tool.13:27:01
@jh-devv:matrix.org@jh-devv:matrix.org we still have the federation cache 13:27:07
@emma:rory.gay@emma:rory.gayand im 100% certain of that13:28:12
@emma:rory.gay@emma:rory.gaythey publicly state that they rely on cloudflare to prevent CSAM being uploaded to their homeserver, and images posted in their rooms are merely scanned by mjolnir's NSFW.JS based protection (that gets patched out in nixpkgs anyways)13:28:52
@jh-devv:matrix.org@jh-devv:matrix.org
In reply to @emma:rory.gay
matrix.org does not use a CSAM scanning tool.

đź”—Approaches to tackling CSEA
[...]
We use Cloudflare’s CSAM detection APIs on unencrypted content on Matrix.org.
We use the IWF Hash, URL and Keyword lists from the IWF on unencrypted content on Matrix.org.
[...]

13:29:52
@jh-devv:matrix.org@jh-devv:matrix.orgYea13:30:13
@jh-devv:matrix.org@jh-devv:matrix.org I was just confused 13:30:18
@emma:rory.gay@emma:rory.gayyeah, thats cloudflare13:30:19
@jh-devv:matrix.org@jh-devv:matrix.orgSorry!13:30:22
@emma:rory.gay@emma:rory.gayas for the IWF thing, that's not available to us anyways13:30:32
@jh-devv:matrix.org@jh-devv:matrix.org
In reply to @emma:rory.gay
matrix.org does not use a CSAM scanning tool.
I mean, they use cloudflrares one?
13:30:43
@emma:rory.gay@emma:rory.gayIWF only talks in "Notable registered businesses"13:30:48
@emma:rory.gay@emma:rory.gayyeah but thats not really something you can invest in13:31:21
@emma:rory.gay@emma:rory.gaythat's part of cloudflare's paid tier btw, and doesnt apply to media being proxied from other homeservers13:31:51
@emma:rory.gay@emma:rory.gay(and even then, enabling cloudflare on a matrix homeserver causes a whole host of problems for both local users and other homeservers)13:32:26
@emma:rory.gay@emma:rory.gayno matter how you turn it, you either pay cloudflare and only get protected for users on your own homeserver uploading CSAM, or you become a large for-profit company13:34:20
@emma:rory.gay@emma:rory.gay* no matter how you turn it, you either pay cloudflare and only get protected for users on your own homeserver uploading CSAM (and break federation), or you become a large for-profit company13:35:41
@cat:feline.supportCat
In reply to @emma:rory.gay
no matter how you turn it, you either pay cloudflare and only get protected for users on your own homeserver uploading CSAM (and break federation), or you become a large for-profit company
The Canadians have a project that supposedly is not as stupid
13:41:20
@cat:feline.supportCat As in they actually try to allow more people to do the right thing 13:41:26
@magic_rb:matrix.redalder.org@magic_rb:matrix.redalder.org
In reply to @emma:rory.gay
they publicly state that they rely on cloudflare to prevent CSAM being uploaded to their homeserver, and images posted in their rooms are merely scanned by mjolnir's NSFW.JS based protection (that gets patched out in nixpkgs anyways)
Why do we patch out nsfw.js btw?
14:16:37
@emma:rory.gay@emma:rory.gayiirc something about using ancient and vulnerable dependencies?14:21:39
@magic_rb:matrix.redalder.org@magic_rb:matrix.redalder.org Some of the false negatives/false positives reports are very entertaining lmao 14:27:06

Show newer messages


Back to Room ListRoom Version: 6