cofacts

Month: 2022-03

2022-03-01

mglee 10:19:09
Cofacts 的夥伴大家好,我明天晚上將在台大人類學系演講關於cofacts的故事,這是公開演講歡迎大家來參加!
(p/s這是該系教職候選人演講之一,並沒有安排直播錄影錄音,會後我在來分享我的簡報)
https://www.facebook.com/groups/175026375965921/permalink/2506663249468877/
mglee 10:24:10
Cofacts 的夥伴大家好,我明天晚上將在台大人類學系演講關於cofacts的故事,這是公開演講歡迎大家來參加!
(p/s這是該系教職候選人演講之一,並沒有安排直播錄影錄音,會後我再來分享我的簡報)
https://anthro.ntu.edu.tw/111-%e5%b9%b4%e8%87%ba%e5%a4%a7%e4%ba%ba%e9%a1%9e%e5%ad%b8%e7%b3%bb%e6%96%b0%e8%81%98%e6%95%99%e5%b8%ab%e5%80%99%e9%81%b8%e4%ba%ba%e6%bc%94%e8%ac%9b/
mglee 10:24:10
Cofacts 的夥伴大家好,我明天晚上將在台大人類學系演講關於cofacts的故事,這是公開演講歡迎大家來參加!
(p/s這是該系教職候選人演講之一,並沒有安排直播錄影錄音,會後我再來分享我的簡報)
https://anthro.ntu.edu.tw/111-%e5%b9%b4%e8%87%ba%e5%a4%a7%e4%ba%ba%e9%a1%9e%e5%ad%b8%e7%b3%bb%e6%96%b0%e8%81%98%e6%95%99%e5%b8%ab%e5%80%99%e9%81%b8%e4%ba%ba%e6%bc%94%e8%ac%9b/
🙌 2
calee 16:32:58
@samuel.c.a.lee has joined the channel
JuJu Yang 17:32:42
@judy.yang has joined the channel
cai 17:42:34
為什麼早安圖收費那麼多人問啊 😅
因為訊息上有 3/1 吧
跟本月 20 號的訊息會在每個 20 號以前很多人問一樣
這次的問題則數很誇張,會直接洗版的,比假貼圖還誇張
Hmm 這確實不太正常 @@
https://cofacts.tw/article/22akj4wjiazxw
https://cofacts.tw/article/3ccm83yubr04o
https://cofacts.tw/article/2y8q7qnwxld9s
https://cofacts.tw/article/41gsxu6eq8pp
https://cofacts.tw/article/3af48wxermvr2
https://cofacts.tw/article/3j91qmf9y7n47
https://cofacts.tw/article/23jjv0sikqna2
https://cofacts.tw/article/384lj0oref09h
https://cofacts.tw/article/cq7ylnzo2b6s
https://cofacts.tw/article/3t6two7h261xn
https://cofacts.tw/article/3h6l2yoyxkq1u
https://cofacts.tw/article/1objns9ectyh8
https://cofacts.tw/article/3j9n0069mysl8
https://cofacts.tw/article/3p0sqgk1ci7jd
https://cofacts.tw/article/39msjyqukkzm8
https://cofacts.tw/article/2fhemqe66b1u0
https://cofacts.tw/article/3prgdtlf5wiss
https://cofacts.tw/article/nvib494cv21b
https://cofacts.tw/article/2rnxmo9jyvm8o
https://cofacts.tw/article/1og3ujfkbj4pv
https://cofacts.tw/article/3b7vzck0uv95z
https://cofacts.tw/article/1lx6fyzyjhoa
https://cofacts.tw/article/3bzigde8iocvi
https://cofacts.tw/article/ik3r42dc9dzb
https://cofacts.tw/article/2jidc4n0ayexz
https://cofacts.tw/article/6okjxjn86hko
https://cofacts.tw/article/3oolcqihqm4wn
https://cofacts.tw/article/1w18sitze2u8u
https://cofacts.tw/article/1q4kb582glfl2
https://cofacts.tw/article/194xxc0f0s5ym
https://cofacts.tw/article/23j481rrzgt0e
https://cofacts.tw/article/28oc5mm41hrz9
https://cofacts.tw/article/3a666unobnjmh
https://cofacts.tw/article/2z9ghua80il0n
https://cofacts.tw/article/ympwobjqtskl
https://cofacts.tw/article/13t2nqtfk2me1
https://cofacts.tw/article/ocme17jdfvbk
https://cofacts.tw/article/31aejphq6i7iq
https://cofacts.tw/article/200ew1va93lm9
https://cofacts.tw/article/1p2chuvlf9u9j
https://cofacts.tw/article/3uzlh41rh4oqm
https://cofacts.tw/article/2drpp4se12zdb
https://cofacts.tw/article/1tdqj7m02u0vk
https://cofacts.tw/article/3sstg61no3q6m
https://cofacts.tw/article/1psi9mffuscn
https://cofacts.tw/article/1r0z3k94p54sh
https://cofacts.tw/article/1bt35gvl4deho

從2/26? 開始大概47則吧
可以拿來研究之前會議提到的 `問使用者是不是整篇複製貼上的`
cai 17:42:34
為什麼早安圖收費那麼多人問啊 😅
因為訊息上有 3/1 吧
跟本月 20 號的訊息會在每個 20 號以前很多人問一樣
這次的問題則數很誇張,會直接洗版的,比假貼圖還誇張
Hmm 這確實不太正常 @@
https://cofacts.tw/article/22akj4wjiazxw
https://cofacts.tw/article/3ccm83yubr04o
https://cofacts.tw/article/2y8q7qnwxld9s
https://cofacts.tw/article/41gsxu6eq8pp
https://cofacts.tw/article/3af48wxermvr2
https://cofacts.tw/article/3j91qmf9y7n47
https://cofacts.tw/article/23jjv0sikqna2
https://cofacts.tw/article/384lj0oref09h
https://cofacts.tw/article/cq7ylnzo2b6s
https://cofacts.tw/article/3t6two7h261xn
https://cofacts.tw/article/3h6l2yoyxkq1u
https://cofacts.tw/article/1objns9ectyh8
https://cofacts.tw/article/3j9n0069mysl8
https://cofacts.tw/article/3p0sqgk1ci7jd
https://cofacts.tw/article/39msjyqukkzm8
https://cofacts.tw/article/2fhemqe66b1u0
https://cofacts.tw/article/3prgdtlf5wiss
https://cofacts.tw/article/nvib494cv21b
https://cofacts.tw/article/2rnxmo9jyvm8o
https://cofacts.tw/article/1og3ujfkbj4pv
https://cofacts.tw/article/3b7vzck0uv95z
https://cofacts.tw/article/1lx6fyzyjhoa
https://cofacts.tw/article/3bzigde8iocvi
https://cofacts.tw/article/ik3r42dc9dzb
https://cofacts.tw/article/2jidc4n0ayexz
https://cofacts.tw/article/6okjxjn86hko
https://cofacts.tw/article/3oolcqihqm4wn
https://cofacts.tw/article/1w18sitze2u8u
https://cofacts.tw/article/1q4kb582glfl2
https://cofacts.tw/article/194xxc0f0s5ym
https://cofacts.tw/article/23j481rrzgt0e
https://cofacts.tw/article/28oc5mm41hrz9
https://cofacts.tw/article/3a666unobnjmh
https://cofacts.tw/article/2z9ghua80il0n
https://cofacts.tw/article/ympwobjqtskl
https://cofacts.tw/article/13t2nqtfk2me1
https://cofacts.tw/article/ocme17jdfvbk
https://cofacts.tw/article/31aejphq6i7iq
https://cofacts.tw/article/200ew1va93lm9
https://cofacts.tw/article/1p2chuvlf9u9j
https://cofacts.tw/article/3uzlh41rh4oqm
https://cofacts.tw/article/2drpp4se12zdb
https://cofacts.tw/article/1tdqj7m02u0vk
https://cofacts.tw/article/3sstg61no3q6m
https://cofacts.tw/article/1psi9mffuscn
https://cofacts.tw/article/1r0z3k94p54sh
https://cofacts.tw/article/1bt35gvl4deho

從2/26? 開始大概47則吧
可以拿來研究之前會議提到的 `問使用者是不是整篇複製貼上的`
elisatychang 22:53:02
@elisatychang has joined the channel

2022-03-03

github2 00:39:19

<https://github.com/cofacts/rumors-line-bot/pull/298|#298 Drop similarity threshold to 0.8>

As discussed in <https://g0v.hackmd.io/dOAOGDNzTGCWEsXW8weIgg?view#Wording|20220302 meeting>. Related to <https://github.com/cofacts/rumors-line-bot/issues/245|#245>

github2 00:39:19

<https://github.com/cofacts/rumors-line-bot/pull/298|#298 Drop group chat similarity threshold to 0.8>

As discussed in <https://g0v.hackmd.io/dOAOGDNzTGCWEsXW8weIgg?view#Wording|20220302 meeting>. Related to <https://github.com/cofacts/rumors-line-bot/issues/245|#245>

:white_check_mark: No checks have passed

cai 13:01:16
一堆停電訊息中冒出個去年桃園停電公告的 😆
Screenshot 2022-03-03 at 12-57-14 等你來答.png
然後真的有拿前幾年的來騙的
https://cofacts.tw/article/1mb77hwb72gd2
事實上是 2017年815大停電的貼文
居然還沒藍勾勾 www
😂 1
github2 14:29:14

<https://github.com/cofacts/rumors-line-bot/issues/299|#299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

大佬,你好,我是<https://github.com/abbykimi|@abbykimi>,我IDE运行您这个项目的时候,提示有几个漏洞,项目调用了immer等1520个开源组件,存在17个安全漏洞,建议你升级下。 ``` 漏洞标题:Immer 安全漏洞 漏洞编号:CVE-2021-23436 漏洞描述: Immer是Immer社区的一个基于Javascript的状态管理库。。 immer 9.0.6之前版本存在安全漏洞,该漏洞源于当path参数中使用的用户提供的密钥是数组时,可能导致绕过CVE-2020-28477。 影响范围:(∞, 9.0.6) 最小修复版本:9.0.6 引入路径: rumors-line-bot@0.0.1-&gt;@storybook/addon-essentials@6.2.9-&gt;@storybook/addon-docs@6.2.9-&gt;@storybook/builder-webpack4@6.2.9-&gt;react-dev-utils@11.0.4-&gt;immer@8.0.1 ``` 另外16个漏洞 ,信息有点多我就不贴了,你自己看下完整报告:<https://www.mfsec.cn/jr?p=aec148|https://www.mfsec.cn/jr?p=aec148> 如果你对这个issues有任何疑问可以回复我哈( <https://github.com/abbykimi|@abbykimi> ),我会及时回复你的。

github2 14:29:14

<https://github.com/cofacts/rumors-line-bot/issues/299|#299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

大佬,你好,我是<https://github.com/abbykimi|@abbykimi>,我IDE运行您这个项目的时候,提示有几个漏洞,项目调用了immer等1520个开源组件,存在17个安全漏洞,建议你升级下。 ``` 漏洞标题:Immer 安全漏洞 漏洞编号:CVE-2021-23436 漏洞描述: Immer是Immer社区的一个基于Javascript的状态管理库。。 immer 9.0.6之前版本存在安全漏洞,该漏洞源于当path参数中使用的用户提供的密钥是数组时,可能导致绕过CVE-2020-28477。 影响范围:(∞, 9.0.6) 最小修复版本:9.0.6 引入路径: rumors-line-bot@0.0.1-&gt;@storybook/addon-essentials@6.2.9-&gt;@storybook/addon-docs@6.2.9-&gt;@storybook/builder-webpack4@6.2.9-&gt;react-dev-utils@11.0.4-&gt;immer@8.0.1 ``` 另外16个漏洞 ,信息有点多我就不贴了,你自己看下完整报告:<https://www.mfsec.cn/jr?p=aec148|https://www.mfsec.cn/jr?p=aec148> 如果你对这个issues有任何疑问可以回复我哈( <https://github.com/abbykimi|@abbykimi> ),我会及时回复你的。

qqsss 14:42:16
@mevrmelhaddad has joined the channel
qqsss 14:48:30
@mevrmelhaddad has left the channel
cai 20:39:43
然後真的有拿前幾年的來騙的
https://cofacts.tw/article/1mb77hwb72gd2
事實上是 2017年815大停電
https://www.cna.com.tw/news/ahel/202203030127.aspx

cna.com.tw

高雄警逾600人疏導交通 籲勿轉傳停電原因假訊息 | 生活 | 中央社 CNA

高雄今天上午無預警大停電,市警局出動581名警力和50名義交疏導交通,目前已有56處路口恢復供電;市警局也籲大潭電廠異常為假訊息勿轉傳,目前刑大已進行社群媒體偵蒐。

👍 1

2022-03-04

github2 06:07:29

<https://github.com/cofacts/rumors-fb-bot/pull/32|#32 Bump urijs from 1.19.1 to 1.19.9>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.1 to 1.19.9. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.buildQuery()`> to properly handle empty param name - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/243|#243>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/243|medialize/URI.js#243>), [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/383|#383>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/383|medialize/URI.js#383>) &gt; • support Composer [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/386|#386>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/386|medialize/URI.js#386>) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.b…

github2 06:07:29

<https://github.com/cofacts/rumors-fb-bot/pull/32|#32 Bump urijs from 1.19.1 to 1.19.9>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.1 to 1.19.9. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.buildQuery()`> to properly handle empty param name - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/243|#243>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/243|medialize/URI.js#243>), [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/383|#383>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/383|medialize/URI.js#383>) &gt; • support Composer [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/386|#386>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/386|medialize/URI.js#386>) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.b…

github2 06:58:57

<https://github.com/cofacts/rumors-site/pull/479|#479 Bump urijs from 1.19.6 to 1.19.9>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.6 to 1.19.9. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Commits • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • <https://github.com/medialize/URI.js/commit/622db6d8d6e650d6de4300c97779de50e3331095|`622db6d`> docs: add security policy • <https://github.com/medialize/URI.js/commit/8e51b00911ba0f6e90949e2c4516b945c35021f7|`8e51b00`> fix(parse): prevent overwriting *proto* in parseQuery() • See full diff in <https://github.com/medialize/URI.js/compare/v1.19.6...v1.19.9|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.

github2 06:58:57

<https://github.com/cofacts/rumors-site/pull/479|#479 Bump urijs from 1.19.6 to 1.19.9>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.6 to 1.19.9. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Commits • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • <https://github.com/medialize/URI.js/commit/622db6d8d6e650d6de4300c97779de50e3331095|`622db6d`> docs: add security policy • <https://github.com/medialize/URI.js/commit/8e51b00911ba0f6e90949e2c4516b945c35021f7|`8e51b00`> fix(parse): prevent overwriting *proto* in parseQuery() • See full diff in <https://github.com/medialize/URI.js/compare/v1.19.6...v1.19.9|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.

:white_check_mark: All checks have passed

github2 07:02:20

<https://github.com/cofacts/rumors-site/pull/479#issuecomment-1058615590|Comment on #479 Bump urijs from 1.19.6 to 1.19.9>

<https://coveralls.io/builds/47066223|Coverage Status> Coverage remained the same at 73.942% when pulling *<https://github.com/cofacts/rumors-site/commit/c5545119e668e6751cf049599c957a27fdd18e1f|c554511> on dependabot/npm_and_yarn/urijs-1.19.9* into *<https://github.com/cofacts/rumors-site/commit/61c7e77da047d69bc2173c456ca0ca4a69be5d78|61c7e77> on master*.

github2 07:02:20

<https://github.com/cofacts/rumors-site/pull/479#issuecomment-1058615590|Comment on #479 Bump urijs from 1.19.6 to 1.19.9>

<https://coveralls.io/builds/47066223|Coverage Status> Coverage remained the same at 73.942% when pulling *<https://github.com/cofacts/rumors-site/commit/c5545119e668e6751cf049599c957a27fdd18e1f|c554511> on dependabot/npm_and_yarn/urijs-1.19.9* into *<https://github.com/cofacts/rumors-site/commit/61c7e77da047d69bc2173c456ca0ca4a69be5d78|61c7e77> on master*.

2022-03-05

2022-03-06

2022-03-07

mrorz 01:58:07
2022/3/7 上午 12:22:29 檢舉的這份,是 LINE 使用者在 reply feedback 裡面罵人,看起來也用真的假的用了一陣子,但好像對這些回應都不滿意(這個人是不是很不快樂?)
大家對這個要怎麼處理有什麼想法嗎
https://docs.google.com/spreadsheets/d/e/2PACX-1vRdcwXdC36xfgXfSMSk527Zbel9A-__vwRXk[…]7sI7SoaAFdPCfskugtQL-Md8JgH/pubhtml?gid=438362561&single=true

cofacts.github.io

Community Builder

Web site created using create-react-app

😢 2 🤔 2
foxhsiao 15:41:28
@fox has joined the channel

2022-03-08

cai 13:56:49
東西丟補充欄的缺點:忘記在哪篇有回過 😅
其實設計稿的 profile 頁面
原本是打算列出編輯自己的回報補充的
但一直沒有做 🤦
cai 13:56:49
東西丟補充欄的缺點:忘記在哪篇有回過 😅
其實設計稿的 profile 頁面
原本是打算列出編輯自己的回報補充的
但一直沒有做 🤦

2022-03-09

github2 06:19:34

<https://github.com/cofacts/rumors-fb-bot/pull/33|#33 Bump urijs from 1.19.1 to 1.19.10>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.1 to 1.19.10. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.buildQuery()`> to properly handle empty param name - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/243|#243>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/243|medialize/URI.js#243>), [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/383|#383>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/383|medialize/URI.js#383>) &gt; • support Composer [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/386|#386>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/386|medialize/URI.js#386>) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ Commits • <https://github.com/medialize/URI.js/commit/926b2aa1099f177f82d0a998da4b43e69fe56ec8|`926b2aa`> chore(build): bumping to version 1.19.10 • <https://github.com/medialize/URI.js/commit/a8166fe02f3af6dc1b2b888dcbb807155aad9509|`a8166fe`> fix(parse): handle excessive colons in scheme delimiter • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • Additional commits viewable in <https://github.com/medialize/URI.js/compare/v1.19.1...v1.19.10|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and …

github2 06:19:34

<https://github.com/cofacts/rumors-fb-bot/pull/33|#33 Bump urijs from 1.19.1 to 1.19.10>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.1 to 1.19.10. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) &gt; &gt; *1.19.6 (February 13th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to rewrite `\` in scheme delimiter to `/` as Node and Browsers do - disclosed privately by <https://twitter.com/ynizry|Yaniv Nizry> from the CxSCA AppSec team at Checkmarx &gt; &gt; *1.19.5 (December 30th 2020)* &gt; &gt; • dropping jquery.URI.js from minified bundle accidentally added since v1.19.3 - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/404|#404>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/404|medialize/URI.js#404>) &gt; &gt; *1.19.4 (December 23rd 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - followed up to by <https://github.com/alesandroortiz|alesandroortiz> in [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/403|#403>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/403|medialize/URI.js#403>), relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.3 (December 20th 2020)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseAuthority|`URI.parseAuthority()`> to rewrite `\` to `/` as Node and Browsers do - disclosed privately by <https://github.com/alesandroortiz|alesandroortiz>, relates to [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/233|#233>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/233|medialize/URI.js#233>) &gt; &gt; *1.19.2 (October 20th 2019)* &gt; &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-build|`URI.build()`> to properly handle relative paths when a scheme is given - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/387|#387>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/387|medialize/URI.js#387>) &gt; • fixing <http://medialize.github.io/URI.js/docs.html#static-buildQuery|`URI.buildQuery()`> to properly handle empty param name - [Issue <https://github-redirect.dependabot.com/medialize/URI.js/issues/243|#243>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/243|medialize/URI.js#243>), [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/383|#383>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/383|medialize/URI.js#383>) &gt; • support Composer [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/386|#386>](<https://github-redirect.dependabot.com/medialize/URI.js/issues/386|medialize/URI.js#386>) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ Commits • <https://github.com/medialize/URI.js/commit/926b2aa1099f177f82d0a998da4b43e69fe56ec8|`926b2aa`> chore(build): bumping to version 1.19.10 • <https://github.com/medialize/URI.js/commit/a8166fe02f3af6dc1b2b888dcbb807155aad9509|`a8166fe`> fix(parse): handle excessive colons in scheme delimiter • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • Additional commits viewable in <https://github.com/medialize/URI.js/compare/v1.19.1...v1.19.10|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and …

github2 07:05:06

<https://github.com/cofacts/rumors-site/pull/480|#480 Bump urijs from 1.19.6 to 1.19.10>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.6 to 1.19.10. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Commits • <https://github.com/medialize/URI.js/commit/926b2aa1099f177f82d0a998da4b43e69fe56ec8|`926b2aa`> chore(build): bumping to version 1.19.10 • <https://github.com/medialize/URI.js/commit/a8166fe02f3af6dc1b2b888dcbb807155aad9509|`a8166fe`> fix(parse): handle excessive colons in scheme delimiter • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • Additional commits viewable in <https://github.com/medialize/URI.js/compare/v1.19.6...v1.19.10|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.

:white_check_mark: All checks have passed

github2 07:05:06

<https://github.com/cofacts/rumors-site/pull/480|#480 Bump urijs from 1.19.6 to 1.19.10>

Bumps <https://github.com/medialize/URI.js|urijs> from 1.19.6 to 1.19.10. Release notes _Sourced from <https://github.com/medialize/URI.js/releases|urijs's releases>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Changelog _Sourced from <https://github.com/medialize/URI.js/blob/gh-pages/CHANGELOG.md|urijs's changelog>._ &gt; *1.19.10 (March 5th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle excessive colons in protocol delimiter - disclosed by <https://github.com/huydoppa|huydoppa> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.9 (March 3rd 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> handle leading whitespace - disclosed by <https://github.com/p0cas|p0cas> via <https://huntr.dev/|https://huntr.dev/> &gt; &gt; *1.19.8 (February 15th 2022)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> treat scheme case-insenstivie when handling excessive slackes and backslashes - [PR <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412>](<https://github-redirect.dependabot.com/medialize/URI.js/pull/412|medialize/URI.js#412>) by <https://github.com/r0hanSH|r0hanSH> &gt; &gt; *1.19.7 (July 14th 2021)* &gt; &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parseQuery|`URI.parseQuery()`> to prevent overwriting `__proto__` in parseQuery() - disclosed privately by <https://github.com/NewEraCracker|`@​NewEraCracker`> &gt; • *SECURITY* fixing <http://medialize.github.io/URI.js/docs.html#static-parse|`URI.parse()`> to handle variable amounts of `\` and `/` in scheme delimiter as Node and Browsers do - disclosed privately by <https://github.com/ready-research|ready-research> via <https://huntr.dev/|https://huntr.dev/> &gt; • removed obsolete build tools &gt; • updated jQuery versions (verifying compatibility with 1.12.4, 2.2.4, 3.6.0) Commits • <https://github.com/medialize/URI.js/commit/926b2aa1099f177f82d0a998da4b43e69fe56ec8|`926b2aa`> chore(build): bumping to version 1.19.10 • <https://github.com/medialize/URI.js/commit/a8166fe02f3af6dc1b2b888dcbb807155aad9509|`a8166fe`> fix(parse): handle excessive colons in scheme delimiter • <https://github.com/medialize/URI.js/commit/01920b5cda87d5dd726eab43d6e7f3ce34a2fd52|`01920b5`> chore(build): bumping to version 1.19.9 • <https://github.com/medialize/URI.js/commit/86d10523a6f6e8dc4300d99d671335ee362ad316|`86d1052`> fix(parse): remove leading whitespace • <https://github.com/medialize/URI.js/commit/efae1e56bd80d78478ffb8bcb8a75ee2c0f1031b|`efae1e5`> chore(build): bumping to version 1.19.8 • <https://github.com/medialize/URI.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249f|`6ea641c`> fix(parse): case insensitive scheme - <https://github-redirect.dependabot.com/medialize/URI.js/issues/412|#412> • <https://github.com/medialize/URI.js/commit/19e54c78d5864aec43986e8f96be8d15998daa80|`19e54c7`> chore(build): bumping to version 1.19.7 • <https://github.com/medialize/URI.js/commit/547d4b69d45d435eed88b04ec0a74cc8080c8694|`547d4b6`> build: update jquery • <https://github.com/medialize/URI.js/commit/aab4a43e0c0cab5bde140edcb73d29f77365ad02|`aab4a43`> build: remove obsolete build tools • <https://github.com/medialize/URI.js/commit/ac43ca8f80c042f0256fb551ea5203863dec4481|`ac43ca8`> fix(parse): more backslash galore <https://github-redirect.dependabot.com/medialize/URI.js/issues/410|#410> • Additional commits viewable in <https://github.com/medialize/URI.js/compare/v1.19.6...v1.19.10|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.

github2 07:08:25

<https://github.com/cofacts/rumors-site/pull/480#issuecomment-1062341016|Comment on #480 Bump urijs from 1.19.6 to 1.19.10>

<https://coveralls.io/builds/47184086|Coverage Status> Coverage remained the same at 73.942% when pulling *<https://github.com/cofacts/rumors-site/commit/740214fc3eac3c167509160bdd98ac76a39a328a|740214f> on dependabot/npm_and_yarn/urijs-1.19.10* into *<https://github.com/cofacts/rumors-site/commit/61c7e77da047d69bc2173c456ca0ca4a69be5d78|61c7e77> on master*.

github2 07:08:25

<https://github.com/cofacts/rumors-site/pull/480#issuecomment-1062341016|Comment on #480 Bump urijs from 1.19.6 to 1.19.10>

<https://coveralls.io/builds/47184086|Coverage Status> Coverage remained the same at 73.942% when pulling *<https://github.com/cofacts/rumors-site/commit/740214fc3eac3c167509160bdd98ac76a39a328a|740214f> on dependabot/npm_and_yarn/urijs-1.19.10* into *<https://github.com/cofacts/rumors-site/commit/61c7e77da047d69bc2173c456ca0ca4a69be5d78|61c7e77> on master*.

cai 19:16:38
https://i.imgur.com/1Dhv0ft.png
食力報導雞蛋紅盤價的圖被拿去當成日本雞蛋了 :sweat_smile:
結果是圖庫的圖 https://tfc-taiwan.org.tw/articles/7058

食力 foodNEXT

是剝削還是過年的加班費?蛋界超過30年的慣例「雞蛋紅盤價」為何現在才爆發爭議

農委會才剛在2022年2月11日宣布調漲雞蛋盤價,希望解決台灣缺蛋問題,然而,一波未平一波又起,在2月14日,有蛋農表示受到飼料成本上漲加上蛋價凍漲政策,利潤已相當微薄,蛋商還向蛋農收取低於盤價4元的「雞蛋紅盤價」,形同包給蛋商的過年紅包,讓蛋農有苦難言。

台灣事實查核中心

【錯誤】網傳圖卡「核蛋來了」,並稱「不是白色蛋殼都不要吃」、「近日盡量不要去大賣場買雞蛋」?

【報告將隨時更新 2022/3/9 版】 一、農委會與蛋商、賣場均指出,台灣從3月8日起到3月底,從日本進口雞蛋的專案,供應給食品加工業者,而不是零售通路。 二、網傳圖卡挪用圖庫照片,卻誤稱為日本雞蛋來台;專家也指出,無法用蛋殼顏色辨別產地。 傳言挪用圖庫照片,誤導讀者以通路、蛋殼來辨別蛋品產地,因此,為「錯誤」訊息。

🥚 1

2022-03-10

github2 09:18:16

<https://github.com/cofacts/rumors-line-bot/issues/299#issuecomment-1063552805|Comment on #299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

<https://github.com/cofacts|@cofacts>,同学,您好,上面的漏洞报告是我IDE运行时,安全插件提示您这个项目存在的几个漏洞的报告,辛苦您修复一下哈,担心其他人也会用到你这个项目,从而引入这些漏洞。:)

github2 09:18:16

<https://github.com/cofacts/rumors-line-bot/issues/299#issuecomment-1063552805|Comment on #299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

<https://github.com/cofacts|@cofacts>,同学,您好,上面的漏洞报告是我IDE运行时,安全插件提示您这个项目存在的几个漏洞的报告,辛苦您修复一下哈,担心其他人也会用到你这个项目,从而引入这些漏洞。:)

kidstarkenny 09:22:09
我想舉手
已經不止一次看到有人認真的描述
「事實查核中心」是某國國民黨的傀儡
試試看給他們下面這些「不同意見」
然後說「你看兩邊都不喜歡他們,看來是真的走在自己的道路上」 (?)
https://cofacts.tw/article/iqfz139xjwgb
https://cofacts.tw/article/2ru0qkkxh7fx5
https://cofacts.tw/article/dlxckfe5ljpl
kidstarkenny 09:22:09
我想舉手
已經不止一次看到有人認真的描述
「事實查核中心」是某國國民黨的傀儡
試試看給他們下面這些「不同意見」
然後說「你看兩邊都不喜歡他們,看來是真的走在自己的道路上」 (?)
https://cofacts.tw/article/iqfz139xjwgb
https://cofacts.tw/article/2ru0qkkxh7fx5
https://cofacts.tw/article/dlxckfe5ljpl
kidstarkenny 09:23:52
有沒有人能建議我如何跟這樣打算一桿子打翻所有事實查核平臺的人展開對話
🤔 1
kidstarkenny 09:23:52
有沒有人能建議我如何跟這樣打算一桿子打翻所有事實查核平臺的人展開對話
cai 17:34:30
cofacts 網站上的防詐達人是真的還盜版啊?
which one?
不知道耶
不是官方就是同人 (?
cai 17:34:30
cofacts 網站上的防詐達人是真的還盜版啊?
which one?
不知道耶
不是官方就是同人 (?

2022-03-11

cai 11:12:23
外送茶又出現了,還有人按有幫助 🤣
cai 11:12:23
外送茶又出現了,還有人按有幫助 🤣
🍵 2
cai 15:41:32
https://cofacts.tw/article/86x5tz0k6bnl
我想吐槽照片,`產地台灣`那麼大的字沒看到,日本自動化洗蛋機是哪裡得罪人了
他的邏輯是
1.「日本自動化洗選工廠」是「在日本的工廠」
2. 「產地都標明:台灣」但左邊那個是騙人的
大概跟日本壓縮機一樣稀少
喔喔喔有高解析的圖
感謝 @iacmai 提供連結
可以傳 102 次也是滿幽默
我家最近沒買洗選蛋找不到範例 😅
喔喔這個很好玩
我之前有看我家的蛋,真的查得到
超酷
好呀我們觀察一下後續 feedback
現在 positive : negative 是 3:1
實在很好奇那個 1 為什麼覺得沒幫助,但他不說
如果 negative 比率太高的話我可以寫一篇新的附上洗選履歷查詢
日本的蛋很好吃好嗎(劃錯重點)
倒讚的可能把褐蛋當成核蛋吧( 望向另一篇 )
然後用`日本自動化洗選工廠` 去查,查到的是大成(彰化大廠)的新聞
謠言傳的信興是南部的大廠
扯一點依地域性,憑照片可以推論照片是在南部拍的
https://www.mygopen.com/2022/03/jp-eggs.html
mygopen 直接去問負責人了 🤣
造假濃度這麼高,居然還這麼多人傳
顛覆了我們對假訊息的認知
可以寫進教科書
cai 15:41:32
https://cofacts.tw/article/86x5tz0k6bnl
我想吐槽照片,`產地台灣`那麼大的字沒看到,日本自動化洗蛋機是哪裡得罪人了

他的邏輯是
1.「日本自動化洗選工廠」是「在日本的工廠」
2. 「產地都標明:台灣」但左邊那個是騙人的
大概跟日本壓縮機一樣稀少
喔喔喔有高解析的圖
感謝 @iacmai 提供連結
可以傳 102 次也是滿幽默
我家最近沒買洗選蛋找不到範例 😅
喔喔這個很好玩
我之前有看我家的蛋,真的查得到
超酷
好呀我們觀察一下後續 feedback
現在 positive : negative 是 3:1
實在很好奇那個 1 為什麼覺得沒幫助,但他不說
如果 negative 比率太高的話我可以寫一篇新的附上洗選履歷查詢
日本的蛋很好吃好嗎(劃錯重點)
倒讚的可能把褐蛋當成核蛋吧( 望向另一篇 )
然後用`日本自動化洗選工廠` 去查,查到的是大成(彰化大廠)的新聞
謠言傳的信興是南部的大廠
扯一點依地域性,憑照片可以推論照片是在南部拍的
https://www.mygopen.com/2022/03/jp-eggs.html
mygopen 直接去問負責人了 🤣
造假濃度這麼高,居然還這麼多人傳
顛覆了我們對假訊息的認知
可以寫進教科書

2022-03-12

chewei 17:51:56
<tel:2023031|2023031>2 編輯小聚活動照片 cc0
Image from iOS
3
cai 18:38:28
好多人喔
cai 18:38:28
好多人喔
cai 18:51:25
有什麼收穫嗎?
cai 18:51:25
有什麼收穫嗎?

2022-03-13

cai 11:50:19
烏克蘭跟俄羅斯的訊息太難分類了
跨國互動?
cai 11:50:19
烏克蘭跟俄羅斯的訊息越來越難分類了
跨國互動?

2022-03-14

cai 21:12:45
https://cofacts.tw/article/3qda6izbiuz3p
這個沒查到圖,先猜是今年國際蘭展染成藍黃漸層蘭花
https://news.ltn.com.tw/news/life/breakingnews/3849136
> 蘭協透過最新奈米科技,將雪白色蘭花渲染成烏克蘭國旗的藍、黃漸層色調
我記得這個不是新種,而是用染色做的(?
對阿,不是新品種,只是那個染色被講的很神奇?
cai 21:12:45
https://cofacts.tw/article/3qda6izbiuz3p
這個沒查到圖,先猜是今年國際蘭展染成藍黃漸層蘭花
https://news.ltn.com.tw/news/life/breakingnews/3849136
> 蘭協透過最新奈米科技,將雪白色蘭花渲染成烏克蘭國旗的藍、黃漸層色調
我記得這個不是新種,而是用染色做的(?
對阿,不是新品種,只是那個染色被講的很神奇?

2022-03-15

github2 10:18:24

<https://github.com/cofacts/rumors-line-bot/issues/299#issuecomment-1067491083|Comment on #299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

<https://github.com/cofacts|@cofacts>,同学,您好,这个项目您还在维护吗?上面的漏洞报告是我IDE运行时,安全插件提示您这个项目存在的几个漏洞的报告,辛苦您修复一下哈,担心其他人也会用到你这个项目,从而引入这些漏洞。:)

github2 10:18:24

<https://github.com/cofacts/rumors-line-bot/issues/299#issuecomment-1067491083|Comment on #299 项目引用了immer等1520个开源组件,存在17个漏洞,建议升级>

<https://github.com/cofacts|@cofacts>,同学,您好,这个项目您还在维护吗?上面的漏洞报告是我IDE运行时,安全插件提示您这个项目存在的几个漏洞的报告,辛苦您修复一下哈,担心其他人也会用到你这个项目,从而引入这些漏洞。:)

cai 23:38:51
當有多個回應時要選的時候,line上的訊息一行16字,可見行10行,所以重點要在前160字寫完(X)
😂 1
cai 23:38:51
當有多個回應時要選的時候,line上的訊息一行16字,可見行10行,所以重點要在前160字寫完(X)

2022-03-16

tw0517tw 01:12:58
這個跟每個手機的螢幕大小和選擇的系統字型大小也有關
1
tw0517tw 01:12:58
這個跟每個手機的螢幕大小和選擇的系統字型大小也有關
github2 21:15:46

<https://github.com/cofacts/rumors-line-bot/issues/214#issuecomment-1069116700|Comment on #214 Don't ask for article source in LIFF anymore>

「寫送出流程為<https://g0v.hackmd.io/r3NK7xssSwCNPFxthlw7tA?view#chatbot-%E4%B8%8D%E5%95%8F%E4%BE%86%E6%BA%90|方案二>」、「改寫未有回應的 reply request 流程」:<https://g0v.hackmd.io/@mrorz/cofacts-meeting-notes/%2Feo8NM1VGQ7qxaamBZXRPtA|https://g0v.hackmd.io/@mrorz/cofacts-meeting-notes/%2Feo8NM1VGQ7qxaamBZXRPtA>

github2 21:15:46

<https://github.com/cofacts/rumors-line-bot/issues/214#issuecomment-1069116700|Comment on #214 Don't ask for article source in LIFF anymore>

「寫送出流程為<https://g0v.hackmd.io/r3NK7xssSwCNPFxthlw7tA?view#chatbot-%E4%B8%8D%E5%95%8F%E4%BE%86%E6%BA%90|方案二>」、「改寫未有回應的 reply request 流程」:<https://g0v.hackmd.io/@mrorz/cofacts-meeting-notes/%2Feo8NM1VGQ7qxaamBZXRPtA|https://g0v.hackmd.io/@mrorz/cofacts-meeting-notes/%2Feo8NM1VGQ7qxaamBZXRPtA>

chihao 21:51:45
不知道 cofacts 有朋友會去 4.9 在台南的大松嗎?那天我想找大家聊聊關於 g0v 10 月 10 週年,cofacts 有沒有想在 10 月做些什麼 :DD
會去唷
@mrorz ++ \o/ 如果想要偷跑,需要靈感,可以參考這份共筆 https://g0v.hackmd.io/@chihao/g10v-book/%2Fi3w9G7l_RtiHAEFKwAbpiw
如果 10 月會有編輯小聚,小聚的資訊可以聯合到時候其他的活動一起宣傳,感覺就會很熱鬧 XD
chihao 21:51:45
不知道 cofacts 有朋友會去 4.9 在台南的大松嗎?那天我想找大家聊聊關於 g0v 10 月 10 週年,cofacts 有沒有想在 10 月做些什麼 :DD
會去唷
@mrorz ++ \o/ 如果想要偷跑,需要靈感,可以參考這份共筆 https://g0v.hackmd.io/@chihao/g10v-book/%2Fi3w9G7l_RtiHAEFKwAbpiw
如果 10 月會有編輯小聚,小聚的資訊可以聯合到時候其他的活動一起宣傳,感覺就會很熱鬧 XD

2022-03-17

2022-03-18

cai 21:14:10
`最新查核`最近看不懂在寫什麼的回覆變多了
腦控跟那個 6333 HUA 確實很怪
😮 2
cai 21:14:10
`最新查核`最近看不懂在寫什麼的回覆變多了
腦控跟那個 6333 HUA 確實很怪

2022-03-21

cai 21:30:05
舊新聞被內容農場拿來新發好像有變多?
cai 21:30:05
舊新聞被內容農場拿來新發好像有變多?

2022-03-22

cai 19:09:06
今日關鍵字:金針菇
真的好多喔囧
see you tomorrow 的金針菇
國外連金針菇也生食嗎
覺得大膽 XD
沙拉好好吃捏
李斯特菌愛你 ❤️
cai 19:09:06
今日關鍵字:金針菇
真的好多喔囧
see you tomorrow 的金針菇
國外連金針菇也生食嗎
覺得大膽 XD
沙拉好好吃捏
李斯特菌愛你 ❤️
🍄 2

2022-03-23

aa39998 20:46:06
哈囉大家好~~
我是台大新聞所的碩士班學生李柏寬,我正在做一個事實查核運動的研究,主要是在比較不同事實查核組織的實踐策略。因此,很想要徵求有實際在Cofacts上回應的協作者,分享自身的事實查核經驗~~

我的訪談大綱如下,訪談方式、時間都很彈性,如果有興趣的話,歡迎直接私訊我,或分享給其他有在Cofacts上查核的朋友喔!謝謝!
訪綱大綱連結(Cofacts真的假的-協作者):https://reurl.cc/akKQ4Q

reurl.cc

事實查核研究-訪談大綱(Cofacts)

「如何追求真相:臺灣事實查核運動的發展與實踐」論文訪談題綱 您好: 我是國立臺灣大學新聞研究所碩士班學生李柏寬,目前正在進行一篇由林麗雲教授所指導的碩士論文,主題為「如何追求真相:台灣事實查核運動發展...

👍 1 1
aa39998 20:46:06
哈囉大家好~~
我是台大新聞所的碩士班學生李柏寬,我正在做一個事實查核運動的研究,主要是在比較不同事實查核組織的實踐策略。因此,很想要徵求有實際在Cofacts上回應的協作者,分享自身的事實查核經驗~~

我的訪談大綱如下,訪談方式、時間都很彈性,如果有興趣的話,歡迎直接私訊我,或分享給其他有在Cofacts上查核的朋友喔!謝謝!
訪綱大綱連結(Cofacts真的假的-協作者):https://reurl.cc/akKQ4Q

2022-03-24

chihao 10:20:13
@aa39998 不開權限讓貢獻者填答嗎?
g0ver 有些人喜歡寫共筆,有些人喜歡聊天,如果打開權限,可能會對你找到受訪者有幫助喔
好!那這樣我來調整一下我的訪綱,改成可以共筆的形式~~
chihao 10:20:13
@aa39998 不開權限讓貢獻者填答嗎?
g0ver 有些人喜歡寫共筆,有些人喜歡聊天,如果打開權限,可能會對你找到受訪者有幫助喔
好!那這樣我來調整一下我的訪綱,改成可以共筆的形式~~

2022-03-26

fly 12:04:06
好奇請教一下,文字以外的查證有發展的規劃嗎?若想要達成這個目標(感覺很大),有什麼小任務可以先做?

潛水在長輩群發現愛轉傳的長輩有這個需求了,隨然會使用 Cofacts,卻會拿「我們還不支援文字以外的訊息唷!」當作其他成員「可有先查證?」一問的回應
這個當下還沒有進展 QQ
不過有個想法是,可以把我們搜集到的謠言圖片,跟 Cofacts article ID 做 mapping
但這件事情我們這裡要先準備,把圖檔先 dedup 後,取出有被傳好幾次的,然後再來做人工標記
感謝回應,看來真的會有很多工夫!
fly 12:04:06
好奇請教一下,文字以外的查證有發展的規劃嗎?若想要達成這個目標,有什麼事可以做?

潛水在長輩群發現愛轉傳的長輩有這個需求了,卻會拿「我們還不支援文字以外的訊息唷!」當作「可有先查證?」一問的回應
這個當下還沒有進展 QQ
不過有個想法是,可以把我們搜集到的謠言圖片,跟 Cofacts article ID 做 mapping
但這件事情我們這裡要先準備,把圖檔先 dedup 後,取出有被傳好幾次的,然後再來做人工標記
感謝回應,看來真的會有很多工夫!

2022-03-28

mrorz 13:26:58
檢舉表單收到一則檢舉,但被檢舉的內容,應該是只有同樣被 blocked 的使用者看得到
所以是一樣被 blocked 的同業檢舉嗎 (?)
image.png
😆 1
cai 14:43:24
https://cofacts.tw/article/a7fu8xp5z4go
新的詐騙往健保APP去了
Screenshot 2022-03-28 at 14-31-26 首頁 - 台灣醫院協會 - Taiwan Hospital Association.png
雖然吐槽點蠻多的
OMG 做得好像
cc/ @au
au 15:39:48
@au has joined the channel

2022-03-30

mrorz 20:15:47
@delightfullychaotic 想問你們那裡還有需要 Cofacts 的文宣嗎~我們又印了一些,正在評估帶到台南的量
delightfullychaotic 2022-03-31 09:55:29
先約小松的量就可以囉!
mrorz 20:15:47
@delightfullychaotic 想問你們那裡還有需要 Cofacts 的文宣嗎~我們又印了一些
delightfullychaotic 2022-03-31 09:55:29
先約小松的量就可以囉!

2022-03-31