Our source is broken again, we'll reconsider the alternatives. (Such as self-hosting or switching to a Nitter source.)
And we're now on v3.5.10.
More information on the importance of the v3.5.9 release:
https://www.bleepingcomputer.com/news/security/critical-tootroot-bug-lets-attackers-hijack-mastodon-servers/
#ResPublicae has been upgraded to Mastodon v3.5.9, a security release.
https://github.com/mastodon/mastodon/releases?q=v3.5&expanded=true
The upgrade was painless. Thank you #MastoDev and especially @Claire[@]sitedethib.com for offering backports to pre-v4 releases and for the clear instructions.
While the details of CVE-2023-36459 have not been published yet, the title suggests the vulnerability may be exploitable even on an instance like ours where no third party can directly post anything.
https://github.com/mastodon/mastodon/releases?q=v3.5&expanded=true
To reduce truncation errors, we caved and increased the character limit for posts to 2000 characters.
#ResPublicae mirrors are catching up on the recent posts, using RSS input for the ever-wonderful #PleromaBot.
We're only able to get the 20 most recent posts from #RSSHub, so any account which posted more than that in the past ~2 weeks will have some posts missing. Some posts also get a bit messed up in the data conversion, so please be patient. (Most issues are already reported upstream.)
Please send patches or donations at https://pleromabot.robertoszek.xyz/pleroma-bot/!
So it finally happened. The #TwitterAPI access used to update #ResPublicae was cut off, all requests get an HTTP 401 response. Some discussion at
https://github.com/robertoszek/pleroma-bot/issues/120#issuecomment-1593688412
Venez nous retrouver aux @geekfaeries ! Notre stand se trouve au Village du Libre avec @Framasoft, @Mozilla et l' @aprilorg !
Et merci beaucoup @Pouhiou pour cette grue géante en crochet !!
The list currently includes:
@alexandrageese
@alynsmith
@anna_cavazzini
@ChristelSchaldemose
@Dobromir_Sosnierz
@echo_pbreyer
@guyverhofstadt
@janalbrecht
@karmel80
@marcel_kolaja
@MEP_Ismail_ERTUG
@mikulas_peksa
@nicosemsrott
@PaulTang
@sahra_wagenknecht
@senficon
@SLagodinsky
@sophieintveld@eupolicy.social
@toomas_ilves
@woelken
(Probably it's not complete. Updates can be made on the Wikidata items.)
@HistoPol Thanks! Most #ResPublicae mirrors are hosted without the original account's explicit cooperation. Hopefully, more MEPs and #EU institutions will notice the benefits of the fediverse and take the lead themselves, so at some point we become redundant.
On #Wikidata you can also see a list of "official" fediverse accounts for MEPs and former MEPs:
https://w.wiki/6mFE
Due to the growth of the #fediverse, which may have passed 10 million registered users depending how you count, we had to update our #DigitalServicesAct (#DSA) disclosures.
https://respublicae.eu/about/more
@JohanEmpa In case you do pre-emptive blocks: lists of accounts may help.
https://respublicae.eu/@praetor/110295228830456091
Other possibilities exist. The principle of least astonishment could be a guiding factor:
https://en.wikipedia.org/wiki/Principle_of_least_astonishment
We could mark posts from certain accounts unlisted if they regularly post to hashtags in ways which don't belong.
We could also forcefully add CWs to posts, but so far we don't. It's hard to come up with a CW which would be applicable for all accounts, or for entire classes of accounts equally. A catch-all CW like "From birdsite 🐦" is broadly correct but also potentially unhelpful.
Some accounts with no followers are sometimes considered problematic too, even though they're hard to find. Someone may accidentally stumble on something they were not prepared for.
I've surveyed a few accounts from known-controversial quarters and I've marked a few as forced-sensitive. I've also disabled mirroring RTs where they're mostly not about EU policy.
The #EuropeanParliament has a page on "Appropriate behaviour rules":
https://www.europarl.europa.eu/at-your-service/en/transparency/appropriate-behaviour
The Rules of Procedure, at Rule 10(1), state that:
«The conduct of Members shall be characterised by mutual respect and shall be based on the values and principles laid down in the Treaties, and particularly in the Charter of Fundamental Rights. Members shall respect Parliament’s dignity and shall not harm its reputation.»
https://www.europarl.europa.eu/doceo/document/RULES-9-2019-07-02-RULE-010_EN.html
Rule 176 deals with sanctions.
https://www.europarl.europa.eu/doceo/document/RULES-9-2019-07-02-RULE-176_EN.html
@norbert_r@mstdn.social I didn't say that only trans people need protection.
I also act proactively but I won't pretend I understand every subtlety of political discourse in languages I don't know.
This instance is about letting people follow what's going on in EU institutions. That includes knowing the political messaging of all European Parliament groups, as long as they're allowed in the EU institutions.
Another account seems to convey generic anti-establishment messaging. Its videos were not reported but I've made them forced sensitive.
Reports with specific clarifications on why a post is problematic are very welcome. (Often posts walk a fine line on topics like immigration, promotion of diversity.)
It's less helpful to send reports with no comments, about no specific posts or about generic policy disagreements (such as reporting anti-renewables posts, generic snipes against other parties).
Admin and host of respublicae.eu. Controlled by @nemobis.
The profile and banner photos are CC-0 by W.carter and GrandCelinien.