|
|
|
|
|
by lionleaf
3410 days ago
|
|
Makes me quite nervous too. So far each dweet is run in a sandboxed iframe loaded from a separate subdomain. There are definitely things you can do, and I'm aware of some annoying ones. I'll just manually delete them at this point. Any security conscious person would view it with noscript and just read the javascript ;) |
|
A system to automatically hide dweets (for later manual review) after receiving a certain number of reports would likely solve the problem in the short term.