Commenti
SwitzerlandNoTeefy3 years ago

Ferox summarized it pretty well. We do not have any glitchless category and from what I know also do not plan on creating one as the gameplay itself would only differ by a smidge compared to the NMG category. The community decided on what would be considered a major glitch. The cutscene glitches only allow you to gain about 6-8 seconds over a full run which is not much, hence it is allowed in our current ruleset. It also does not involve trying to break the game calculations as we do it with the indoor flying. It is just a input flag that the devs have forgotten to set on certain cutscenes , hence a "minor" glitch.

And for this:

So, according to the category rules I can clip over all the walls I find and that would be ok. I personally do not feel like this would be allowed as it skips world barriers/walls which would play into the definition of "out of bounds" or "out of playable bounds". We would need a community vote on that though; so far this probable case has not been discussed as far as I know.

Best regards

Ferox, Starcoin e 2 Altri ti piace questo
discussione: The Site
SwitzerlandNoTeefy4 years ago

https://www.speedrun.com/post/q1bli Can I get some input from a global moderator/designer on that one? Thank you very much.

Best regards

discussione: The Site
SwitzerlandNoTeefy4 years ago

We finally got that feature we all waited for so long, but why mail only? Can we get the option to use Google authentificator for this site aswell? I am not a big fan of mail 2FA because most of the "insecure/most likely to be compromised" users are using the same passwords for their mail account aswell...

Best regards

YUMmy_Bacon5 e BenInSweden ti piace questo
discussione: The Site
SwitzerlandNoTeefy4 years ago

Is there a reason behind why the table contents are displayed centered? It would look so much cleaner if they were pulled to the left, even on mobile. Here's a quick comparison: https://abload.de/img/speedrun_idea1skw2.png

Best regards

discussione: The Site
SwitzerlandNoTeefy4 years ago

@Liv @Volvagia

Hey, just wanted to ask about the current implementation state in regards to this important topic. In what kind of time frame could we expect some 2FA integrations on the site?

Best regards NoTeefy

discussione: The Site
SwitzerlandNoTeefy5 years ago

Most of you guys that are active in the Discord probably know about my concerns regarding the site's security and implementations. It is a great idea to include the long wished 2FA but PLEASE implement it in the most easy and user-friendly way. Just use Google Authentificator or any other code generator for it; e.g: https://medium.com/@richb_/easy-two-factor-authentication-2fa-with-google-authenticator-php-108388a1ea23

It is supported on all platforms, doesn't require you to transmit a phone number and also won't cost you any cent on the client and server side (I don't wanna receive authentification messages from another country making me pay fees for it everytime I need to log into the site). Let's not even start about being forced to provide sensitive data in form of a mobile number. Quoting another reply from above:

"If full 2FA is too much of a pain (requiring users to install a new application or give a phone number), an easier alternative might be requiring email confirmation the first time a moderator logs in (starts a new session) from a new IP. Not quite as secure, but perhaps sufficient."

That's one of the worst methods to implement a 2FA and has its roots from the early days of that technology. You'll end up with the same insecure scenario regarding bruteforced/leaked email accounts as it already was without it. You would also annoy a LOT of users who are living in countries with dynamic IP allocations like Germany (you automatically receive a new IP address every 24 hours). However be adviced that you're able to use a similar, user-friendly way of storing a session over multiple days/weeks. You can save the authentificated clients into a database which will allow the people to login without a 2FA prompt as long as they're on the same machine and didn't clear their browser cache or exceed the maximal amount of days before that authentification session is getting flagged as expired (you can set that on the server side again; most sites use a value of 14-30 days).

And for the other subject: I do not really care if all of the users are forced to use a 2FA as long as people with ANY sort of rights on the site are.

Best regards

Bogdan_mk, enamel e 2 Altri ti piace questo
Info su NoTeefy
Iscritto
8 years ago
Online
11 months ago
Runs
4
Giochi corso
Aer: Memories of Old
Aer: Memories of Old
Ultima corsa 3 years ago
4
Runs
Giochi seguiti
Asterix & Obelix XXL
Asterix & Obelix XXL
Ultima visita 2 years ago
92
visite
Astérix & Obélix XXL 2
Astérix & Obélix XXL 2
Ultima visita 3 years ago
82
visite
Aer: Memories of Old
Aer: Memories of Old
Ultima visita 11 months ago
642
visite
The Long Return
The Long Return
Ultima visita 11 months ago
105
visite
Astérix & Obélix XXL 3 : The Crystal Menhir
7
visite
Giochi moderati
Aer: Memories of Old
Aer: Memories of Old
Ultima azione 2 years ago
52
azioni
The Long Return
The Long Return
Ultima azione 3 years ago
4
azioni