David Banes wrote:
> Just a note that maybe;
> 
> 5. Security Considerations
> 
> should mention privacy and identity theft, this would be one more piece
> of personal information available on the net for bots to grab when
> scanning social networking sites.

That wouldn't help a spammer if the URL points to a pubsub node. But I
suppose it might be a problem for MUC rooms and user accounts.

> Maybe there should be a recommendation to encode the address?

Like the MD5 hashes that FOAF uses for email addresses?

Personally I think it's the responsibility of those who run the XMPP
network to protect against abusive traffic natively, because people's
JIDs will leak out no matter what we do.

Peter

-- 
Peter Saint-Andre
https://stpeter.im/

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to