Segregation: multiple realms/groups? #64

Open
opened 2020-09-01 15:04:16 +02:00 by midgard · 2 comments
midgard commented 2020-09-01 15:04:16 +02:00 (Migrated from git.zeus.gent)
  • Do we want to keep all orders public?
    • Do we want advanced management of who can see what order, with groups that people can be added to?
  • Do we want separate realms that have their own orders? E.g. one for each student association?
- Do we want to keep all orders public? - Do we want advanced management of who can see what order, with groups that people can be added to? - Do we want separate realms that have their own orders? E.g. one for each student association?
midgard commented 2020-10-13 02:46:23 +02:00 (Migrated from git.zeus.gent)

Brainstorm with @j tonight:

  • As Haldis gets more well-known people might start adding fake items anonymously.
    How to fix:

    • Login (with UGent), need to be logged in to create order.
    • Offer the option to password protect orders. (With an automatically generated, easy to type password or pincode.)
    • Offer the option to allow non-logged in people. Maybe the courier and/or creator could generate access tokens for guests on this order. When logged-in users do bad requests, the courier/creator can block them. This excludes them from future orders of this courier/creator. When a user is blocked 3 times, they are blocked globally (for some time or indefinitely).
  • Realms might be useful for discovery of open orders. Also to keep track of past orders, mainly for stats. (Not necessary for debt settlement: orders you participated in can be shown on the homepage.)

Own thoughts afterwards:

  • Public orders give a vector for stalking which may be undesirable.
Brainstorm with @j tonight: * As Haldis gets more well-known people might start adding fake items anonymously. How to fix: * Login (with UGent), need to be logged in to create order. * Offer the option to password protect orders. (With an automatically generated, easy to type password or pincode.) * Offer the option to allow non-logged in people. Maybe the courier and/or creator could generate access tokens for guests on this order. When logged-in users do bad requests, the courier/creator can block them. This excludes them from future orders of this courier/creator. When a user is blocked 3 times, they are blocked globally (for some time or indefinitely). * Realms might be useful for discovery of open orders. Also to keep track of past orders, mainly for stats. (Not necessary for debt settlement: orders you participated in can be shown on the homepage.) Own thoughts afterwards: * Public orders give a vector for stalking which may be undesirable.
flynn commented 2021-10-28 21:43:25 +02:00 (Migrated from git.zeus.gent)

mentioned in issue #75

mentioned in issue #75
Sign in to join this conversation.
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: Haldis/haldis#64
No description provided.