Tink
ntfy
Our great sponsors
Tink | ntfy | |
---|---|---|
19 | 288 | |
13,457 | 16,590 | |
- | - | |
9.9 | 9.6 | |
8 days ago | 1 day ago | |
Java | Go | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Tink
-
“Please do not make it public” (Tencent’s Sogou Input Method)
> I wonder what people say when they find a bug despite you using standard crypto?
Not using TLS doesn't automatically mean you need to "roll your own crypto". They could have used a well documentend library such as Google Tink[1] instead of doing their own crypto.
[1] https://github.com/google/tink
-
What are you rewriting in rust?
I sort of rewrote google's tink project in rust. There is already a rust version by project oak but it didn't exactly jive.
-
PassManager
PassManager uses the Tink library for encryption, which provides state-of-the-art** security for your passwords. Tink uses industry-standard encryption algorithms like AES to ensure that your passwords are kept safe from prying eyes.
- Cryptographic Best Practices
-
Using Google Tink to sign JWTs with ECDSA
Note that in the example jwt refers to the Tink jwt package.
- What do you guys use for password hashing?
-
What's new in Jetpack Security Crypto Version 1.1.0-alpha04
What I can't tell is if the new version had any fixes related to the bug being discussed here
-
How do you handle encryption?
Even the slightest hiccup could leave me vulnerable. I don't want to roll my own encryption. I want to use something like tink (a secure crypto library by Google) but unfortunately they don't support node or Javascript (there's a library that was published 2 years ago).
-
Some help with cryptography?
I dont have an answer for you, but 2 resources that are worth checking out: https://developer.android.com/guide/topics/security/cryptography and https://developers.google.com/tink
-
Ask HN: Is there a portable encryption file format?
> Do C (or something where the mapping to C is known), and lots of languages have FFI libs where wrapping that is fairly trivial
That is an interesting idea, yet still a lot of work, sadly. I was hoping somebody had done the legwork already. I looked at Tink [1] and age [2] based on my co-worker's recommendation, but they all seem to have limited implementations in other languages.
[1] https://github.com/google/tink
[2] https://github.com/FiloSottile/age
ntfy
-
How I keep myself Alive using Golang
Slightly related, but I've also been working on and off for a few years on my own Type 1 Diabetes management solution (https://github.com/algao1/iv3).
I haven't had time to work on it recently, but it uses ntfy (https://ntfy.sh/) to send alerts and such.
I was thinking of eventually incorporating some kind of automatic remedial solution eventually to help keep my glucose in range, but haven't had any time to look into it yet.
-
FBI using push notification tokens to identify anonymous users
If you go to the settings, there should be a notification category, which then contains another menu "App Notifications" where you can see all the apps that are allowed to receive notifications, but I don't know if this will stop google play services to receive these identifiers.
I use GrapheneOS, so I don't have any google play services running, but for the apps where I need notifications I use https://unifiedpush.org/ (only a few apps implement it) and I host my own https://ntfy.sh server.
- I pwned half of America's fast food chains, simultaneously
-
Ask HN: What apps have you created for your own use?
Kind of similar, in the early days of COVID, I accidentally discovered that my state's website would have test results available several hours before they sent out the "view your results" email. So I made a script that would check the site every five or ten minutes and then ping me as soon as the result changed to something besides PENDING.
In the course of that I stumbled on https://ntfy.sh/ which solved the notification problem without needing Twitter, and I've used it since then to let me know when long-running scripts complete.
-
Governments spying on Apple, Google users through push notifications
I connect any app that supports https://unifiedpush.org/ to a self hosted https://ntfy.sh instance for fully self hosted push notifications
-
It's this time of the year again... which open-source project are you donating to?
changedetection.io just donated to the awesome crew over at ntfy.sh
-
2U Quiet & Efficient DIY Server Build
For further monitoring & alerting about critical cpu temperatures (unlikely now) for example, I plan to use notify & something else. Haven't thought about this much yet though.
-
Deno Cron
I've started tossing https://ntfy.sh/ alerts into my Deno apps to get push notifications for things I'm interested in
-
Planning for Low Energy Self Hosted Docker
ntfy.sh
-
Add extra stuff to a “standard” encoding? Sure, why not
If it was for fun and to learn how, that's fair. But are you aware of https://ntfy.sh?
What are some alternatives?
Jwks RSA
Gotify - A simple server for sending and receiving messages in real-time per WebSocket. (Includes a sleek web-ui)
Kalium - Java binding to the Networking and Cryptography (NaCl) library with the awesomeness of libsodium
apprise - Apprise - Push Notifications that work with just about every platform!
SSLContext-Kickstart - 🔐 A lightweight high level library for configuring a http client or server based on SSLContext or other properties such as TrustManager, KeyManager or Trusted Certificates to communicate over SSL TLS for one way authentication or two way authentication provided by the SSLFactory. Support for Java, Scala and Kotlin based clients with examples. Available client examples are: Apache HttpClient, OkHttp, Spring RestTemplate, Spring WebFlux WebClient Jetty and Netty, the old and the new JDK HttpClient, the old and the new Jersey Client, Google HttpClient, Unirest, Retrofit, Feign, Methanol, Vertx, Scala client Finagle, Featherbed, Dispatch Reboot, AsyncHttpClient, Sttp, Akka, Requests Scala, Http4s Blaze, Kotlin client Fuel, http4k Kohttp and Ktor. Also gRPC, WebSocket and ElasticSearch examples are included
NPushOver - Full fledged, async, .Net Pushover client
password4j - Java cryptographic library that supports Argon2, bcrypt, scrypt and PBKDF2 aimed to protect passwords in databases. Easy to use by design, highly customizable, secure and portable. All the implementations follow the standards and have been reviewed to perform better in the JVM.
Home Assistant - :house_with_garden: Open source home automation that puts local control and privacy first.
SecurityBuilder - Fluent builders with typesafe API for the JCA
Nextcloud - ☁️ Nextcloud server, a safe home for all your data
libsodium - A modern, portable, easy to use crypto library.
Portainer - Making Docker and Kubernetes management easy.