Hi Mike,

On Tue, Dec 3, 2013 at 11:03 AM, Mike Bartlett <[email protected]> wrote:
> Hi Joachim, Mike here from Gitter.
>
> We just posed an explanation on this on our blog:
> http://blog.gitter.im/the-write-stuff/
>
> Regarding JavaScript domains, it's fairly standard stuff:
> 1) Our own CDNs (multiple domains for performance reasons).
> 2) UserVoice Widget (for customer support)
> 3) MixPanel & Google Analytics (well, for analytics)
> 4) Optimizely (for split testing)
>
> Our APIs that talk to Github are all on our servers, not client side and are
> 100% within our control.
>
> Anyway. I hope the blog post shines some light on the situation and we'll
> soon be pushing an update which addresses some peoples concerns. The
> solution isn't brilliant as it now complicates the user experience. That you
> didn't know where to find revocation of oAuth permission is testament to
> this - what I mean by this is that now users have to publicize their org
> memberships in order to create or join org chats and it's not immediately
> obvious where you do this.
>
> Would love to discuss further if you're up for it. Either here or in the
> comments on the blog post.

Thanks for getting back to us. I just tried Gitter again and it again
asks for write permissions to my repositories. So I denied it.

I need GitHub for my daily work, so the I don't want to risk
something happening to my code/repositories.

I have no doubts that you wouldn't do some intentional harm,
but the risk of bad things happening is quite high, I fully
share the worries that Joachim described in the email above
(after your post).

So my personal policy is that I have no problems giving people write
access to my repositories, but I don't give it to websites which can
have bugs in the code or can be hacked.

Ondrej

-- 
You received this message because you are subscribed to the Google Groups 
"sympy" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/sympy.
For more options, visit https://groups.google.com/groups/opt_out.

Reply via email to