This release includes 1 security fix for security teams reviewing exposed deployments.
Published 1d
Productivity & Wikis
✓ No known CVEs patched
This release patches 1 known CVE
Topics
anonymity
hidden-service
hidden-services
pkm
pkms
privacy
+2 more
telegraph
tor
Summary
AI summaryFixed scraping of created_at metadata used to infer authorship across posts.
Full changelog
This fixes an issue where people are scraping the created_at metadata to determine when a series of posts are made to increase certainty that multiple posts are by the same author.
Full Changelog: https://github.com/du82/nonograph/compare/v0.3.0...v0.3.1
Security Fixes
- Prevented created_at timestamp exposure that allowed authorship correlation attacks
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About An Anonymous Writing Platform
All releases →Related context
Related tools
Beta — feedback welcome: [email protected]