Official Everybody Edits Forums

Do you think I could just leave this part blank and it'd be okay? We're just going to replace the whole thing with a header image anyway, right?

You are not logged in.

#1 2017-08-02 05:17:11

rdash
Member
Joined: 2015-02-25
Posts: 39

Can we disable HTTP referer checking on the forums?

Referers are easy to spoof and a gross violation of the forum users' privacy. Why is it enabled?


rdash

Offline

#2 2017-08-02 10:09:52

XxAtillaxX
Member
Joined: 2015-11-28
Posts: 4,202

Re: Can we disable HTTP referer checking on the forums?

It's used by FluxBB to prevent against XSRF attacks.


signature.png
*u stinky*

Offline

Wooted by:

#3 2017-08-02 11:23:31

Anatoly
Guest

Re: Can we disable HTTP referer checking on the forums?

its your 42 post, inverted, btw. your sig "you think you're clever?"

On-Topic: why do you care if its https or http? (if thats what the topic is about, my english is... NOT BAD!!)

#4 2017-08-02 13:54:02, last edited by Different55 (2017-08-02 13:54:46)

Different55
Forum Admin
Joined: 2015-02-07
Posts: 16,574

Re: Can we disable HTTP referer checking on the forums?

It's exactly as Atilla says. If we didn't do that, people could craft links and web pages that could trick your browser into doing things like making posts and editing your profile. HTTP referrers aren't logged (actually that's a lie, I believe Apache logs those in the access logs by default), no privacy is being invaded here except by the ads which are watching you sleep at night.

If you're concerned about your privacy, set your browser (or get an extension) to only send a referrer if the site you're being referred from is on the same domain. 0 privacy risk, and no features broken either.


"Sometimes failing a leap of faith is better than inching forward"
- ShinsukeIto

Offline

Wooted by:

#5 2017-08-02 13:55:58

Gosha
Member
From: Russia
Joined: 2015-03-15
Posts: 6,206

Re: Can we disable HTTP referer checking on the forums?

AnatolyEE wrote:

why do you care if its https or http?

https is a secure http.

it's all about privacy and personal info

Offline

Wooted by:
Gosha1501678558670745

Board footer

Powered by FluxBB

[ Started around 1714007529.1749 - Generated in 0.040 seconds, 10 queries executed - Memory usage: 1.4 MiB (Peak: 1.51 MiB) ]