Sign in

Mark Foster

@mfoster.io
1.6K followers 1.4K following 515 posts

I am all about tech and decentralization. The future of the internet is decentralized. futureinternet.io

PostsRepliesMedia
Reposted by Mark Foster
Sam Goto @sgo.to · 01/09/2026
@thisismissem.social @divy.zone and I recently went through an exploration of how the browser can help you login to websites with atproto accounts. We recently presented to the FedID CG and here is a sneak peek in case you couldn't join! This is early but we'd love your input before we go too far!
2227350
Reposted by Mark Foster
Eiji Kitamura / えーじ @agektmr.com · 09/07/2026
Personally, the most exciting auth-related feature since passkeys: Chrome just announced an origin trial for the Email Verification Protocol (EVP).
1135
Mark Foster @mfoster.io · 23/08/2026
:S :P :O
000
Mark Foster @mfoster.io · 03/08/2026
Nothing Like Rome
looproll.com
Nothing Like Rome
Reel by @retro on LoopRoll.
000
Mark Foster @mfoster.io · 29/07/2026
looproll.com
Sound Machine
Reel by @mfoster on LoopRoll.
000
Mark Foster @mfoster.io · 19/07/2026
My vibe right now . . .
youtu.be
twenty one pilots - The Hype (80s Remix)
YouTube video by petrichør
000
Mark Foster @mfoster.io · 19/07/2026
Time Warp complete on LoopRoll!
looproll.com
Time Warp
Reel by @LoopRoll on LoopRoll.
000
Mark Foster @mfoster.io · 17/07/2026
looproll.com
On the edge
Photo by @LoopRoll on LoopRoll.
000
Mark Foster @mfoster.io · 06/07/2026
Decentralized, Distributed, and Orthogonal systems are full of people with passion and intensity, it’s a complicated fusion. youtu.be/tx4Bhrxzuuw We are all catapulted towards death, our shared work in the wild is our legacy in segmented glances, laced in silver.
000
Reposted by Mark Foster
Mark Foster @mfoster.io · 30/05/2023
Every night! 🌒
021
Reposted by Mark Foster
Mark Foster @mfoster.io · 09/04/2026
🎧🎵🎶🎼☁️🚶🏻‍♂️Today, I took a walk in the clouds, and in the daylight I could swear we’re the same. But I’m just an ordinary human. Ordinary ways. I’m just an ordinary human, but I don’t feel so ordinary today. There'll be peace in the city tonight, and when I'm gone, I hope they get it right.
youtu.be
Ordinary Human
YouTube video by OneRepublic - Topic
001
Reposted by Mark Foster
Piccalilli @piccalil.li · 25/06/2026
It's the summer of Standard.site and overwhelmingly, we've heard folks find the process complicated so Declan Chidlow is here to break the process down into something rather straightforward for you. piccalil.li/blog/publish...
piccalil.li
Publishing on the Atmosphere with Standard.site
It's the summer of Standard.site and overwhelmingly, we've heard folks find the process complicated so Declan Chidlow is here to break the process down into something rather straightforward for you.
47620
Reposted by Mark Foster
Thomas Steiner @tomayac.com · 23/06/2026
Very excited to share a guest post I wrote for the Hugging Face 🤗 blog! Experimenting with the proposed Cross-Origin Storage API in Transformers.js! 👉 huggingface.co/blog/cross-o... This proposed API has the potential of revolutionizing the Web—a little bit. Learn more: github.com/WICG/cross-o...!
huggingface.co
Experimenting with the proposed Cross-Origin Storage API in Transformers.js
We’re on a journey to advance and democratize artificial intelligence through open source and open science.
082
Reposted by Mark Foster
Rowan Merewood @rowan.fyi · 24/06/2026
This is such a clearly structured set of #security guidance from @openwebdocs.org ! Intuitive progression through attacks, defence with specific web APIs, threat modelling, and then I'm extra fond of there being a whole section on authentication. openwebdocs.org/content/post...
The infographic displays four security categories with their corresponding topics:

  * Attacks: Clickjacking, Cross-site request forgery (CSRF), Cross-site leaks, Cross-site scripting (XSS), Insecure Direct Object Reference, Manipulator in the Middle (MITM), Phishing, Prototype pollution, Server Side Request Forgery, Subdomain takeover, and Supply chain attacks.
  * Defence: Certificate transparency, Content Security Policy (CSP), Fetch metadata, Input validation, Mixed content blocking, Operational security, Same-origin policy, Secure contexts, Subresource integrity, Transport Layer Security (TLS), and User activation.
  * Threat modelling: Threat modeling guide, Example threat model, Threat model for a PWA, and Frameworks and tools.
  * Authentication: Federated Identity, One-time passwords (OTP), Passkeys, Passwords, and Session management.
0135
Reposted by Mark Foster
Sam Goto @sgo.to · 19/06/2026
An interoperable EVT implementation appears in the wild by @rowan.fyi !!! rowan.fyi/made/email-p... rowan.fyi/made/email-v... Yay for interoperable relying parties and zero marginal costs!!! @paul.kinlan.me @nmarkoborodova.bsky.social
062
Reposted by Mark Foster
Sam Goto @sgo.to · 28/06/2026
I've been pondering about having the browser resolve at:// URLs. I have been thinking that we could introduce a DNS-like (maybe DNS itself?) entity that goes from did:plc to URLs, the same way DNS goes from names to IP, and have the browser depend on that similar to how it depends on a DNS server.
5132
Mark Foster @mfoster.io · 28/06/2026
010
Mark Foster @mfoster.io · 11/06/2026
signedobjects.com
Verified 🔏☑️🔒
C2PA · Content Credentials verified · SHA256 b984f5c9…834c98ec
000
Mark Foster @mfoster.io · 04/06/2026
youtu.be
The Meta AI Hack Is a DISASTER
YouTube video by Low Level
000
Reposted by Mark Foster
Wes @notwes.bsky.social · 04/05/2026
devEngines started as @geoffreybooth.bsky.social and I in DMs 2 years ago. It's now supported in @npmjs.bsky.social & @pnpm.io, and later this month will be our recommended way for developers at Netflix to define runtime and package manager versions in their projects. docs.npmjs.com/cli/v11/conf...
docs.npmjs.com
package.json | npm Docs
Specifics of npm's package.json handling
4449
Mark Foster @mfoster.io · 25/04/2026
buttondown.com
Email could have been X.400 times better
X.400 said what must be possible. SMTP said what must be done.
000
Reposted by Mark Foster
Mark Foster @mfoster.io · 19/04/2026
Nostr layers could fix this. I could imagine a local first relay with signed objects that shotgun on relays and under the hood having a PDS repository as a large collection on a cloud server somewhere.
011
Reposted by Mark Foster
David Thompson @flockofbirbs.bsky.social · 19/04/2026
Its simply too expensive to setup alternatives to the bluesky relay and appview. If there's only a handful of them then it's nearly as easy for a government to block all access, or for a ddos to take out a large portion of the network, etc. then if there was just a single provider.
42910
Mark Foster @mfoster.io · 16/04/2026
I was reading a book today and this reminded me of something. Can you guess what it is? 🧐
000
Mark Foster @mfoster.io · 12/04/2026
Browser Baselines just keep getting better. I would imagine AI is helping the Venn Diagram overlap inch by inch.
developer.mozilla.org
CredentialsContainer: preventSilentAccess() method - Web APIs | MDN
The preventSilentAccess() method of the CredentialsContainer interface sets a flag that specifies whether automatic log in is allowed for future visits to the current origin, then returns a Promise th...
000
Mark Foster @mfoster.io · 11/04/2026
Tamper‑proof preservation requires signing real‑world artifacts with cryptographic keys before they reach the cloud. A local‑edge TEE uses hardware attestations and assertion claims to protect history and ensure verifiable timelines in a post‑AI world. a16zcrypto.com/posts/articl...
000
Mark Foster @mfoster.io · 09/04/2026
🎧🎵🎶🎼☁️🚶🏻‍♂️Today, I took a walk in the clouds, and in the daylight I could swear we’re the same. But I’m just an ordinary human. Ordinary ways. I’m just an ordinary human, but I don’t feel so ordinary today. There'll be peace in the city tonight, and when I'm gone, I hope they get it right.
youtu.be
Ordinary Human
YouTube video by OneRepublic - Topic
001
Mark Foster @mfoster.io · 08/04/2026
Server‑side rendering of Web Components thanks to the Declarative Shadow DOM. web.dev/articles/dec... developer.mozilla.org/en-US/blog/m...
120
Mark Foster @mfoster.io · 07/04/2026
We can all make a difference. On this day in 1969, a 25‑year‑old grad student quietly drafted a document that would shape ARPANET. He wrote it overnight in a bathroom so he wouldn’t wake anyone. That late‑night effort became one of the early stepping stones toward the modern Internet.
020
Mark Foster @mfoster.io · 07/04/2026
010
Mark Foster @mfoster.io · 23/03/2026
010
Mark Foster @mfoster.io · 22/03/2026
000
Reposted by Mark Foster
Sam Goto @sgo.to · 13/03/2026
I think it is a bit of a miracle that I have been running my own PDS for roughly ~month and haven't had to maintain it at all ... Feels great to know that everything that I write, follow, etc all goes there ... Good stuff y'all.
1376
Mark Foster @mfoster.io · 15/03/2026
Crypto randomUUID is baseline. ✅
developer.mozilla.org
Crypto: randomUUID() method - Web APIs | MDN
The randomUUID() method of the Crypto interface is used to generate a v4 UUID using a cryptographically secure random number generator.
010
Mark Foster @mfoster.io · 11/03/2026
📸🔑🔏🛜☑️ c2pa-check.pages.dev media.primal.net/uploads2/b/9... 🤳🔏🛜
000
Mark Foster @mfoster.io · 11/03/2026
Exact DOM location and understanding DOM traversal is important for secure systems. If you are a Web Developer, spend some time learning it. 🔏
developer.mozilla.org
Document: caretPositionFromPoint() method - Web APIs | MDN
The caretPositionFromPoint() method of the Document interface returns a CaretPosition object, containing the DOM node, along with the caret and caret's character offset within that node.
000
Mark Foster @mfoster.io · 11/03/2026
🔏 🔏 🔏 🔏 ☑️ ☑️ ☑️ ☑️ C2PA.org
cnet.com
The iPhone 17 Is Missing a Crucial AI Camera Feature That Google Has Embraced
Commentary: Google is taking the lead on identifying AI image slop by incorporating C2PA photo tagging. Apple can still catch up.
000
Mark Foster @mfoster.io · 10/03/2026
I miss my Lycos homepage and MySpace!
000
Reposted by Mark Foster
dan @danabra.mov · 10/03/2026
i'm enjoying the new @pds.ls default view quite a bit. it's tricky to explain what the tool does *and* to provide shortcuts to the most common destinations, and this one does the job imo
a tile of buttony cards like search, my repo, jetstream, firehose, etc
31188
Reposted by Mark Foster
Brymo @brymo.bsky.social · 07/03/2026
Bee Butt On An Artichoke Flower 🐝 #photography #art #flowers
A honeybee on a purple artichoke flower
16138997
Reposted by Mark Foster
Pablo @pavlou.bsky.social · 09/03/2026
#AlphabetChallenge #WeekJforJuxtaposition Manchester. 📷 #photography #urbanphotography #shadows #highrise
1377775
Reposted by Mark Foster
Iestyn Lloyd-Wilkins @iestyn.net · 07/03/2026
First experiment with macro + flash + focus stacking with Affinity. While I like the way the flash makes these droplets sparkle, I'm going to need a proper macro diffuser!
042
Mark Foster @mfoster.io · 10/03/2026
youtu.be
The Verve - Lucky Man (Official Music Video)
YouTube video by TheVerveVEVO
000
Reposted by Mark Foster
Mark Foster @mfoster.io · 23/05/2024
FedCM is working in Google Canary now, I was able to configure IndieAuth today on mfoster.social! 🚀🙌 github.com/fedidcg/FedC... x.com/mfosterio/st...
163
Reposted by Mark Foster
Emelia @thisismissem.social · 09/03/2026
Heeey, look, it's me! I'm super hyped to announce that @bsky.app have given me a grant to work on the standards for the Federated Credential Management API (or FedCM) to make them really work for all decentralized web applications.
4144078
Mark Foster @mfoster.io · 27/02/2026
After all you’re my content Label Wall! nips.nostr.com/32 🤳🔏🛜 Maybe you’re gonna be the one that saves me, you’re my Wonder Wall! ✌️🫂
youtu.be
Oasis - Wonderwall (Official Video)
YouTube video by Oasis
001
Mark Foster @mfoster.io · 26/02/2026
Let’s make this an analog record year. 🎙️🎤
youtu.be
Eric Church - Record Year (Official Music Video)
YouTube video by EricChurchVEVO
000
Mark Foster @mfoster.io · 26/02/2026
I don’t know about you, but growing up as GenX, the real analog experience was getting out of the house and experiencing the world. In an AI‑driven world, let’s push for real‑world assertion claims. I hope you all stay a little longer.✌️🎸🥁
youtu.be
Brothers Osborne - Stay A Little Longer (Live from CMA Fest)
YouTube video by Brothers Osborne
000
Mark Foster @mfoster.io · 26/02/2026
@sgo.to What are your thoughts on this cawg.io? I built a c2pa blob and manifest json viewer. Look at the Verified Identities ingredient. c2pa-check.pages.dev?image_url=ht... 📸🔏
120
Reposted by Mark Foster
Electronic Frontier Foundation @eff.org · 25/02/2026
Limiting access to photos means “protecting yourself from accidentally uploading multiple pictures you do not intend, & ensuring that the app can’t access more than you want, either by accident or malicious intent,” EFF’s @thorinklosowski.com told @HuffPost.com. www.huffpost.com/entry/phone...
huffpost.com
Experts Say You Should Never Give Apps Full Access To Your Photos — The Reason Why Is Disturbing
Doing this is risky, security experts say.
511344