this post was submitted on 30 Jul 2023
1079 points (98.0% liked)

Lemmy.World Announcements

29084 readers
295 users here now

This Community is intended for posts about the Lemmy.world server by the admins.

Follow us for server news ๐Ÿ˜

Outages ๐Ÿ”ฅ

https://status.lemmy.world

For support with issues at Lemmy.world, go to the Lemmy.world Support community.

Support e-mail

Any support requests are best sent to info@lemmy.world e-mail.

Report contact

Donations ๐Ÿ’—

If you would like to make a donation to support the cost of running this platform, please do so at the following donation URLs.

If you can, please use / switch to Ko-Fi, it has the lowest fees for us

Ko-Fi (Donate)

Bunq (Donate)

Open Collective backers and sponsors

Patreon

Join the team

founded 2 years ago
MODERATORS
 

We just added Alexandrite to the server, it's an alternative desktop UI for Lemmy created by Sheodox who worked tirelessly to make the necessary changes to we could host it ourselves here. So go to https://a.lemmy.world and have a look!

He continues to update it constantly, you can follow the development on his github page or in his community. If you like what you see and want to support him, why not buy him a coffee? :)

For those who don't have Lemmy World as their home instance and want to use Alexandrite, either ask your instance admins to add it or go to https://alexandrite.app!

Edit: I should probably have mentioned that Alexandrite is meant for desktop!

you are viewing a single comment's thread
view the rest of the comments
[โ€“] fidodo@lemmy.world 14 points 1 year ago (1 children)

I want to caution that every new ui is a potential security risk. When it's a mobile app then it's entirely on the user to decide if they trust it, but when it's hosted the host is implicitly giving a seal of approval so I think at least a bit of a code audit should be done, especially since xss is much more of a risk on the web.

There's already been one security breach on the default Lemmy skin, so I think it would be a good idea to do an audit for every new hosted ui and include a section for it on these posts. You don't necessarily need to crawl through every line of course, but it'd be good to cover what framework and rendering engine it uses and acknowledge any risks associated with them.

[โ€“] antik@lemmy.world 5 points 1 year ago

We have the devs of all but one of the alternative UI's on our discord server. We try to provide options for our users as well as give some extra exposure to the Lemmy developers community by hosting these on LW. It's actually pretty cool to see that devs from different apps are going through each other's code and are being helpful. And other community members are actively helping the developers test (and request) new features.

So that is one of the things that we did to "play safe". But I understand your concern and I'll have a talk with the team how we can organise something like a code review of the UI's we host.

We have one more UI to be announced soon. And that will most likely be the last one we will add.