ByteCode.News
Submit RSS Atom Sign in

Back to the channels

#streampack

  1. dreamreal kotauth.text=a self-hosted OAuth2/OIDC authentication platform built on Kotlin/Ktor, targeting the gap between Keycloak's configuration weight and Auth0's pricing ceiling. Single Docker image, PostgreSQL backend, multi-tenancy, RBAC, MFA, social login, and a framework-free domain layer.
  2. nevet ok, dreamreal: updated kotauth.
  3. dreamreal kotauth.urls=https://github.com/InumanSoul/kotauth
  4. nevet ok, dreamreal: updated kotauth.
  5. dreamreal kotauth.seealso=ktor,exposed,oauth2,oidc,authentication,authorization
  6. nevet ok, dreamreal: updated kotauth.
  7. dreamreal kotauth.tags=kotlin,auth,oidc,oauth2,self-hosted
  8. nevet ok, dreamreal: updated kotauth.
  9. dreamreal ktor.text=a Kotlin-native async web framework from JetBrains. Coroutine-first, lightweight, and deliberately unopinionated about structure. Handles both server and client HTTP. Not a Spring replacement; a different shape of tool.
  10. nevet ok, dreamreal: updated ktor.
  11. dreamreal ktor.urls=https://ktor.io
  12. nevet ok, dreamreal: updated ktor.
  13. dreamreal ktor.seealso=exposed,kotlin
  14. nevet ok, dreamreal: updated ktor.
  15. dreamreal ktor.tags=kotlin,web,framework,jetbrains
  16. nevet ok, dreamreal: updated ktor.
  17. dreamreal exposed.text=JetBrains' Kotlin SQL framework, offering a type-safe DSL for query construction and a lightweight DAO layer. Sits closer to the SQL than most ORMs — you're meant to know what's being executed.
  18. nevet ok, dreamreal: updated exposed.
  19. dreamreal exposed.urls=https://github.com/JetBrains/Exposed
  20. nevet ok, dreamreal: updated exposed.
  21. dreamreal exposed.seealso=ktor,kotlin
  22. nevet ok, dreamreal: updated exposed.
  23. dreamreal exposed.tags=kotlin,sql,orm,jetbrains
  24. nevet ok, dreamreal: updated exposed.
  25. dreamreal authentication.text=the problem of verifying identity: confirming that a principal is who they claim to be. Typically resolved via credentials, tokens, certificates, or biometrics. Precedes authorization and is a distinct concern — conflating the two is a common source of security design debt.
  26. nevet ok, dreamreal: updated authentication.
  27. dreamreal authentication.seealso=authorization,oauth2,oidc
  28. nevet ok, dreamreal: updated authentication.
  29. dreamreal authentication.tags=security,auth,identity
  30. nevet ok, dreamreal: updated authentication.
  31. dreamreal authorization.text=the problem of verifying permission: confirming that an authenticated principal may perform a given action on a given resource. RBAC, ABAC, and policy engines like OPA are common patterns. Authorization logic is where most access control bugs live.
  32. nevet ok, dreamreal: updated authorization.
  33. dreamreal authorization.seealso=authentication,oauth2,oidc
  34. nevet ok, dreamreal: updated authorization.
  35. dreamreal authorization.tags=security,auth,access-control
  36. nevet ok, dreamreal: updated authorization.
  37. dreamreal oauth2.text=an authorization delegation framework (RFC 6749) allowing a resource owner to grant a third party limited access to their resources without sharing credentials. Not an authentication protocol on its own — that's a common misuse. Issues access tokens; token shape and semantics are left to the implementation.
  38. nevet ok, dreamreal: updated oauth2.
  39. dreamreal oauth2.urls=https://oauth.net/2/
  40. nevet ok, dreamreal: updated oauth2.
  41. dreamreal oauth2.seealso=oidc,authentication,authorization
  42. nevet ok, dreamreal: updated oauth2.
  43. dreamreal oauth2.tags=security,auth,rfc,standard
  44. nevet ok, dreamreal: updated oauth2.
  45. dreamreal oidc.text=OpenID Connect, an identity layer built on top of OAuth2. Adds the ID token (a JWT), a UserInfo endpoint, and standardized claims — the parts OAuth2 deliberately left out. The current industry standard for federated authentication.
  46. nevet ok, dreamreal: updated oidc.
  47. dreamreal oidc.urls=https://openid.net/connect/
  48. nevet ok, dreamreal: updated oidc.
  49. dreamreal oidc.seealso=oauth2,authentication,authorization
  50. nevet ok, dreamreal: updated oidc.
  51. dreamreal oidc.tags=security,auth,identity,standard
  52. nevet ok, dreamreal: updated oidc.
  53. dreamreal comprehension debt=<reply>Comprehension debt is the gap between expectations and understanding created when developers let AI do design and implementation. It's far worse than technical debt as an attribute of your codebase.
  54. nevet ok, dreamreal: updated comprehension debt.
  55. dreamreal technical debt<reply>Tech debt is a description of the cost to maintain a system that has external dependencies. You *depend* on Spring to do things a certain way, and if Spring changes, then you *have* to change with it, and you inherit the weaknesses of your dependencies as well.
  56. nevet ok, dreamreal: updated technical debt<reply>tech debt.
  57. dreamreal comprehension debt.seealso=technical debt
  58. nevet ok, dreamreal: updated comprehension debt.
  59. * nevet joined #streampack