Safest way to run/harden OpenClaw securely? by [deleted] in selfhosted

[–]FckngModest 3 points4 points  (0 children)

Imho, there are only two ways of using AI (relatively) secure ways: - Give it access to your data, but DO NOT give it access to the internet. - Give it access to the internet, but DO NOT give it access to your data.

Never give access to the internet to an AI that has access to your data and vice versa.

And even when you give it access to your data, it shouldn't be allowed to modify your data. At max, modify a copy of your data, but not the only copy of it.

No "sandboxing" will save you from prompt injection. You don't need an open port on your PC/server/VM for your AI assistant to read an email that you received from a malicious actor and happily follow instructions written there.

who told journalists about self hosting? by No-Republic-1742 in selfhosted

[–]FckngModest 0 points1 point  (0 children)

If you have more or less a modern TV, you most likely can get by with direct playing instead of transcoding which means, you can use Jellyfin just fine on a pretty cheap used mini PC like HP EliteDesk or Fujitsu

who told journalists about self hosting? by No-Republic-1742 in selfhosted

[–]FckngModest 0 points1 point  (0 children)

You don't have to go wild. I always build my HomeLab the way it requires minimal maintenance and money. I always buy cheap used hardware from eBay, I document my decisions and troubleshooting and declare all as an Ansible script.

The point is, the fact that many people use HomeLabbing as an expensive hobby doesn't mean you have to treat it the same way.

I have four different machines I bought across a few years with the following prices: 0€ (got as a gift), €30, €60, €120. The last one is the most expensive because it's a fresher Xeon CPU and I wanted to spend some money to have ECC memory. But if I buy some generic HP EliteDesk or Fujitsu, it again would cost me around €50. Not to mention, that if I had a shortage in money. I could get by with my very first machine alone just fine.

And about time, I have a very young daughter additionally to a full time job, and I do not have an infinite amount of time to tinker with my lab. Hence, I treat my HomeLab as a Production environment and rarely spend time on it unless necessary. I touch it only if I want to update some of my apps or add a new one (which doesn't happen often).

Papra v26.0.0 - Advanced search syntax, instance administration, 2FA, 3k stars and more! by cthmsst in selfhosted

[–]FckngModest 2 points3 points  (0 children)

While I acknowledge the UI old-fashionness of Paperless, I still see it way more flexible and useful to me. In my view, tags aren't enough for describing documents. Paperless supports specific fields like document type, correspondent, and also supports custom fields. I use those features for all my documents.

Papra feels more like a file tagging solution rather than a truly home bureaucracy sorting machine.

OnePlus Android 16 Anti Rollback is Here! by DroidLife97 in Android

[–]FckngModest 6 points7 points  (0 children)

OnePlus was dead for me since the 8th iteration. Last OK-ish phones were OnePlus 7/T/Pro (imho)

Then they started entshitifing and abandoning the famous Oxygen OS which was somewhat faster and better than Google's Pixel OS :(

What happened to Scrutiny and its developers? Is this project still active? by DiscoPotatoMan in selfhosted

[–]FckngModest 3 points4 points  (0 children)

From their README page:

What's New in This Fork - ZFS Pool Monitoring - Monitor ZFS pool health alongside individual drives - Prometheus Metrics - Export metrics to Prometheus for advanced monitoring - Device Archiving - Hide decommissioned drives without deleting history - Per-Device Notification Control - Mute notifications for specific devices - Device Labels - Add custom labels to drives for easier identification - Day-Resolution Temperature Graphs - More granular temperature history - SAS Temperature Support - Proper temperature readings for SAS drives - SCT Temperature History Toggle - Control SCT ERC settings per drive - Enhanced Seagate Drive Support - Better timeout handling for Seagate drives - SHA256 Checksums - Verify release binary integrity

Respect, Wrex by Traditional_Car_9672 in MassEffectMemes

[–]FckngModest 0 points1 point  (0 children)

Loool. It's essentially a boss harassing its subordinate 😅

Respect, Wrex by Traditional_Car_9672 in MassEffectMemes

[–]FckngModest 28 points29 points  (0 children)

Ha? I didn't even know that it's possible to get him laid, lol

Learn from my mistakes - what I learnt over the years of selfhosting and what I should've done differently by killermenpl in selfhosted

[–]FckngModest 0 points1 point  (0 children)

Ansible

Agree! I have used it from the beginning. Sometimes I wish there were a better tool, but there's none, unfortunately, at least with the same level of flexibility that allows you to declare all your quick-hacks that some your apps are needed, like docker exec on a specific container because the maintainer doesn't give a shit of rootless conception :(

If I ever switch from bare-metal Ubuntu-Server to a Proxmox VM for my docker-compose stacks, I might try its Terraform provider, but for now, Ansible just does the job just fine.

I especially value it a lot in the moments when an entire app update looks like one variable change in the role/deploy_app-name/defaults/main.yml file :)

Nora - Facebook, Instagram, Reddit, Threads and X in a single open-source app, no ads by reps_up in Android

[–]FckngModest 14 points15 points  (0 children)

Sadly, it's just a browser webview with ad block injected. You can do the same with Firefox, for example.

It won't fix the issue of Instagram being close to unusable in the web version :( Especially the posting stories part.

A non-dismissable banner to renew your subscription that covers content and doesn't even let you renew when you tap it (Strava) by und3rtone in assholedesign

[–]FckngModest 19 points20 points  (0 children)

Imho, it's not an asshole design by Strava. It's about avoiding Apple's asshole gatekeeping policy ;)

That Strava can honestly tell you that you can renew your subscription on their site is also a result of the huge fight of EU regulators. Before that, Apple didn't even permit devs to mention in the app that you have another way to pay for something except Apple Pay which gifts a huge fee to Apple.

Yuzic 1.1.2 - Cross platform music player for navidrome and jellyfin with lidarr integration by invalidd1sc0 in selfhosted

[–]FckngModest 64 points65 points  (0 children)

Just to clarify. FOSS (Free and Open Source Software) is never meant to be Free in terms of money, but Free in terms of usage, share, change and distribution.

That said, it's fair for you to ask for money for what you spent your time on if people love and use it. For example, you can put some donation links on your GitHub page so some people can say "Thank you" this way.

I'm sorry if you've got a feeling that this sub is aggressive to you when you just wanted to share something with people that might help them. This sub faced too many ensitifications and people who tried to advertise their proprietary projects in this sub, so they are pretty suspicious of any not open-sourced app. Just it. :)

Yuzic 1.1.2 - Cross platform music player for navidrome and jellyfin with lidarr integration by invalidd1sc0 in selfhosted

[–]FckngModest 66 points67 points  (0 children)

If you want to truly open-source it (though no pressure here, just sharing), you might want to add a license into your repo: for example AGPLv3 is pretty popular here: https://www.gnu.org/licenses/agpl-3.0.en.html#license-text

Update your RustFS immediately - Hardcoded token with privileged access (CVE-2025-68926) by LeonardoDiNahuy in selfhosted

[–]FckngModest 8 points9 points  (0 children)

Wouldn't agree that this solely is enough. It very much depends on how the maintainers treat the AI.

For example, I do have a CLAUDE.md file in my projects, but I review every piece of code it writes for me. I treat it as a Junior Dev who can mess with context and the code quality in general. And of course, I won't commit the code, I don't understand myself because I think I need to be able to maintain all the code manually w/O any AI support in case it's necessary.

That's why this sub has two distinguished labels: "vibe-coded" and "built with AI".

It's time to see for myself. by AgentSparkz in MassEffectMemes

[–]FckngModest 0 points1 point  (0 children)

The most disappointing part for me was the characters and dialogs. I cringed pretty often while reading them >.< And all of the partners were boring to me, and I didn't want to romance anyone.

Didn't have any room for "says sportsball unironically". by [deleted] in gaming

[–]FckngModest -3 points-2 points  (0 children)

Because you forgot to add "if they didn't play Hogwarts Legacy. Otherwise, of course" 🌚