GET https://kbin.spritesserver.nl/u/@mazadin@lemmy.world/comments/active

Security

Token

There is no security token.

Firewall

main Name
Security enabled
Stateless

Configuration

Key Value
provider security.user.provider.concrete.app_user_provider
context main
entry_point App\Security\KbinAuthenticator
user_checker App\Security\UserChecker
access_denied_handler (none)
access_denied_url (none)
authenticators
[
  "two_factor"
  "remember_me"
  "App\Security\KbinAuthenticator"
  "App\Security\FacebookAuthenticator"
  "App\Security\GoogleAuthenticator"
  "App\Security\GithubAuthenticator"
  "App\Security\KeycloakAuthenticator"
]

Listeners

Listener Duration Response
Symfony\Component\Security\Http\Firewall\ChannelListener {#723
  -map: Symfony\Component\Security\Http\AccessMap {#722 …}
  -logger: Monolog\Logger {#783 …}
  -httpPort: 80
  -httpsPort: 443
}
0.00 ms (none)
Symfony\Component\Security\Http\Firewall\ContextListener {#706
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\TokenStorage {#1017 …}
  -sessionKey: "_security_main"
  -logger: Monolog\Logger {#783 …}
  -userProviders: Symfony\Component\DependencyInjection\Argument\RewindableGenerator {#705 …}
  -dispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …}
  -registered: false
  -trustResolver: Scheb\TwoFactorBundle\Security\Authentication\AuthenticationTrustResolver {#780 …}
  -sessionTrackerEnabler: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage::enableUsageTracking(): void {#703 …}
}
0.29 ms (none)
Symfony\Component\Security\Http\Firewall\AuthenticatorManagerListener {#584
  -authenticatorManager: Symfony\Component\Security\Http\Authentication\AuthenticatorManager {#595 …}
}
0.00 ms (none)
Scheb\TwoFactorBundle\Security\Http\Firewall\TwoFactorAccessListener {#582
  -twoFactorFirewallConfig: Scheb\TwoFactorBundle\Security\TwoFactor\TwoFactorFirewallConfig {#842 …}
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -twoFactorAccessDecider: Scheb\TwoFactorBundle\Security\Authorization\TwoFactorAccessDecider {#581 …}
}
0.04 ms (none)
Symfony\Component\Security\Http\Firewall\AccessListener {#579
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -accessDecisionManager: Symfony\Component\Security\Core\Authorization\TraceableAccessDecisionManager {#937 …}
  -map: Symfony\Component\Security\Http\AccessMap {#722 …}
}
0.00 ms (none)
Symfony\Component\Security\Http\Firewall\LogoutListener {#786
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -options: [
    "csrf_parameter" => "_csrf_token"
    "csrf_token_id" => "logout"
    "logout_path" => "app_logout"
  ]
  -httpUtils: Symfony\Component\Security\Http\HttpUtils {#841 …}
  -csrfTokenManager: Symfony\Component\Security\Csrf\CsrfTokenManager {#1015 …}
  -eventDispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …}
}
0.00 ms (none)

Authenticators

No authenticators have been recorded. Check previous profiles on your authentication endpoint.

Access Decision

affirmative Strategy
# Voter class
1
"Symfony\Component\Security\Core\Authorization\Voter\AuthenticatedVoter"
2
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
3
"Symfony\Component\Security\Core\Authorization\Voter\RoleHierarchyVoter"
4
"Symfony\Component\Security\Core\Authorization\Voter\ExpressionVoter"
5
"App\Security\Voter\EntryCommentVoter"
6
"App\Security\Voter\EntryVoter"
7
"App\Security\Voter\MagazineVoter"
8
"App\Security\Voter\MessageThreadVoter"
9
"App\Security\Voter\MessageVoter"
10
"App\Security\Voter\NotificationVoter"
11
"App\Security\Voter\OAuth2UserConsentVoter"
12
"App\Security\Voter\PostCommentVoter"
13
"App\Security\Voter\PostVoter"
14
"App\Security\Voter\UserVoter"

Access decision log

# Result Attributes Object
1 DENIED ROLE_USER
null
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"Symfony\Component\Security\Core\Authorization\Voter\RoleHierarchyVoter"
ACCESS DENIED
"App\Security\Voter\EntryCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryVoter"
ACCESS ABSTAIN
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
2 DENIED moderate
App\Entity\EntryComment {#2079
  +user: App\Entity\User {#265 …}
  +entry: Proxies\__CG__\App\Entity\Entry {#1907 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#2384 …}
  +image: null
  +parent: null
  +root: null
  +body: """
    I’ll admit, this spooked me, but for different reasons than the OP and most comments.\n
    \n
    I didn’t recognize any of the downloads, even though I have a publicly routable static IP and don’t use a VPN (I have a domain and self host so I know my IP hast changed in years).\n
    \n
    I use exclusively private trackers, and nothing I’ve actually downloaded showed up, and the things that did were sporadic—one every couple days or so, first/last seen times identical, random torrents. I started asking myself if I had a rogue device in my network, so I checked logs and stats—nothing unusual (I think…I hope…hard to tell sometimes).\n
    \n
    I looked more into how this site tracks peers, and it seems they have different levels of confidence. Their first API tier (peer API) is a “best guess” and this is based on listening to the DHT and PeX networks for their known torrents. I’m guessing their website uses this or a combination of this with their other APIs. I looked at my torrent config and saw I hadn’t disabled DHT/PeX and had a couple idle public torrents.\n
    \n
    Not positive on this, but I think there can be false positives if your torrent box participates in DHT/PeX even if it doesn’t actually download said torrents. Can anyone confirm this?
    """
  +lang: "en"
  +isAdult: false
  +favouriteCount: 9
  +score: 0
  +lastActive: DateTime @1699491322 {#2062
    date: 2023-11-09 01:55:22.0 +01:00
  }
  +ip: null
  +tags: null
  +mentions: [
    "@can@sh.itjust.works"
  ]
  +children: Doctrine\ORM\PersistentCollection {#2379 …}
  +nested: Doctrine\ORM\PersistentCollection {#2383 …}
  +votes: Doctrine\ORM\PersistentCollection {#1906 …}
  +reports: Doctrine\ORM\PersistentCollection {#1926 …}
  +favourites: Doctrine\ORM\PersistentCollection {#2380 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
  -id: 103111
  -bodyTs: "'actual':65,221 'admit':3 'anyon':226 'api':137,140,176 'ask':90 'base':148 'best':143 'box':212 'chang':53 'check':103 'combin':170 'comment':16 'confid':134 'config':182 'confirm':227 'coupl':78,193 'day':79 'devic':97 'dht':153 'dht/pex':189,215 'didn':18 'differ':9,131 'disabl':188 'doesn':219 'domain':43 'download':24,66,222 'even':25,216 'everi':77 'exclus':58 'fals':207 'first':136 'first/last':82 'guess':144,163 'hadn':186 'hard':113 'hast':52 'hope':112 'host':46 'ident':85 'idl':194 'ip':33,51 'know':49 'known':159 'level':132 'listen':150 'll':2 'log':104 'look':118,178 'm':162 'network':100,156 'noth':62,107 'one':76 'op':13 'particip':213 'peer':125,139 'pex':155 'posit':198,208 'privat':59 'public':30,195 'random':86 'reason':10 'recogn':20 'rogu':96 'routabl':31 'said':223 'saw':184 'seem':128 'seen':83 'self':45 'show':67 'site':123 'sometim':116 'spook':5 'sporad':75 'start':89 'stat':106 'static':32 'tell':115 'thing':71 'think':110,203 'though':26 'tier':138 'time':84 'torrent':87,160,181,196,211,224 'track':124 'tracker':60 'unusu':108 'use':37,57,166 've':64 'vpn':39 'websit':165 'year':55"
  +ranking: 0
  +commentCount: 0
  +upVotes: 0
  +downVotes: 0
  +visibility: "visible             "
  +apId: "https://lemmy.world/comment/5169949"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699491322 {#1908
    date: 2023-11-09 01:55:22.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS DENIED
"App\Security\Voter\EntryVoter"
ACCESS ABSTAIN
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
3 DENIED edit
App\Entity\EntryComment {#2079
  +user: App\Entity\User {#265 …}
  +entry: Proxies\__CG__\App\Entity\Entry {#1907 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#2384 …}
  +image: null
  +parent: null
  +root: null
  +body: """
    I’ll admit, this spooked me, but for different reasons than the OP and most comments.\n
    \n
    I didn’t recognize any of the downloads, even though I have a publicly routable static IP and don’t use a VPN (I have a domain and self host so I know my IP hast changed in years).\n
    \n
    I use exclusively private trackers, and nothing I’ve actually downloaded showed up, and the things that did were sporadic—one every couple days or so, first/last seen times identical, random torrents. I started asking myself if I had a rogue device in my network, so I checked logs and stats—nothing unusual (I think…I hope…hard to tell sometimes).\n
    \n
    I looked more into how this site tracks peers, and it seems they have different levels of confidence. Their first API tier (peer API) is a “best guess” and this is based on listening to the DHT and PeX networks for their known torrents. I’m guessing their website uses this or a combination of this with their other APIs. I looked at my torrent config and saw I hadn’t disabled DHT/PeX and had a couple idle public torrents.\n
    \n
    Not positive on this, but I think there can be false positives if your torrent box participates in DHT/PeX even if it doesn’t actually download said torrents. Can anyone confirm this?
    """
  +lang: "en"
  +isAdult: false
  +favouriteCount: 9
  +score: 0
  +lastActive: DateTime @1699491322 {#2062
    date: 2023-11-09 01:55:22.0 +01:00
  }
  +ip: null
  +tags: null
  +mentions: [
    "@can@sh.itjust.works"
  ]
  +children: Doctrine\ORM\PersistentCollection {#2379 …}
  +nested: Doctrine\ORM\PersistentCollection {#2383 …}
  +votes: Doctrine\ORM\PersistentCollection {#1906 …}
  +reports: Doctrine\ORM\PersistentCollection {#1926 …}
  +favourites: Doctrine\ORM\PersistentCollection {#2380 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
  -id: 103111
  -bodyTs: "'actual':65,221 'admit':3 'anyon':226 'api':137,140,176 'ask':90 'base':148 'best':143 'box':212 'chang':53 'check':103 'combin':170 'comment':16 'confid':134 'config':182 'confirm':227 'coupl':78,193 'day':79 'devic':97 'dht':153 'dht/pex':189,215 'didn':18 'differ':9,131 'disabl':188 'doesn':219 'domain':43 'download':24,66,222 'even':25,216 'everi':77 'exclus':58 'fals':207 'first':136 'first/last':82 'guess':144,163 'hadn':186 'hard':113 'hast':52 'hope':112 'host':46 'ident':85 'idl':194 'ip':33,51 'know':49 'known':159 'level':132 'listen':150 'll':2 'log':104 'look':118,178 'm':162 'network':100,156 'noth':62,107 'one':76 'op':13 'particip':213 'peer':125,139 'pex':155 'posit':198,208 'privat':59 'public':30,195 'random':86 'reason':10 'recogn':20 'rogu':96 'routabl':31 'said':223 'saw':184 'seem':128 'seen':83 'self':45 'show':67 'site':123 'sometim':116 'spook':5 'sporad':75 'start':89 'stat':106 'static':32 'tell':115 'thing':71 'think':110,203 'though':26 'tier':138 'time':84 'torrent':87,160,181,196,211,224 'track':124 'tracker':60 'unusu':108 'use':37,57,166 've':64 'vpn':39 'websit':165 'year':55"
  +ranking: 0
  +commentCount: 0
  +upVotes: 0
  +downVotes: 0
  +visibility: "visible             "
  +apId: "https://lemmy.world/comment/5169949"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699491322 {#1908
    date: 2023-11-09 01:55:22.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS DENIED
"App\Security\Voter\EntryVoter"
ACCESS ABSTAIN
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
4 DENIED moderate
App\Entity\EntryComment {#2079
  +user: App\Entity\User {#265 …}
  +entry: Proxies\__CG__\App\Entity\Entry {#1907 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#2384 …}
  +image: null
  +parent: null
  +root: null
  +body: """
    I’ll admit, this spooked me, but for different reasons than the OP and most comments.\n
    \n
    I didn’t recognize any of the downloads, even though I have a publicly routable static IP and don’t use a VPN (I have a domain and self host so I know my IP hast changed in years).\n
    \n
    I use exclusively private trackers, and nothing I’ve actually downloaded showed up, and the things that did were sporadic—one every couple days or so, first/last seen times identical, random torrents. I started asking myself if I had a rogue device in my network, so I checked logs and stats—nothing unusual (I think…I hope…hard to tell sometimes).\n
    \n
    I looked more into how this site tracks peers, and it seems they have different levels of confidence. Their first API tier (peer API) is a “best guess” and this is based on listening to the DHT and PeX networks for their known torrents. I’m guessing their website uses this or a combination of this with their other APIs. I looked at my torrent config and saw I hadn’t disabled DHT/PeX and had a couple idle public torrents.\n
    \n
    Not positive on this, but I think there can be false positives if your torrent box participates in DHT/PeX even if it doesn’t actually download said torrents. Can anyone confirm this?
    """
  +lang: "en"
  +isAdult: false
  +favouriteCount: 9
  +score: 0
  +lastActive: DateTime @1699491322 {#2062
    date: 2023-11-09 01:55:22.0 +01:00
  }
  +ip: null
  +tags: null
  +mentions: [
    "@can@sh.itjust.works"
  ]
  +children: Doctrine\ORM\PersistentCollection {#2379 …}
  +nested: Doctrine\ORM\PersistentCollection {#2383 …}
  +votes: Doctrine\ORM\PersistentCollection {#1906 …}
  +reports: Doctrine\ORM\PersistentCollection {#1926 …}
  +favourites: Doctrine\ORM\PersistentCollection {#2380 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
  -id: 103111
  -bodyTs: "'actual':65,221 'admit':3 'anyon':226 'api':137,140,176 'ask':90 'base':148 'best':143 'box':212 'chang':53 'check':103 'combin':170 'comment':16 'confid':134 'config':182 'confirm':227 'coupl':78,193 'day':79 'devic':97 'dht':153 'dht/pex':189,215 'didn':18 'differ':9,131 'disabl':188 'doesn':219 'domain':43 'download':24,66,222 'even':25,216 'everi':77 'exclus':58 'fals':207 'first':136 'first/last':82 'guess':144,163 'hadn':186 'hard':113 'hast':52 'hope':112 'host':46 'ident':85 'idl':194 'ip':33,51 'know':49 'known':159 'level':132 'listen':150 'll':2 'log':104 'look':118,178 'm':162 'network':100,156 'noth':62,107 'one':76 'op':13 'particip':213 'peer':125,139 'pex':155 'posit':198,208 'privat':59 'public':30,195 'random':86 'reason':10 'recogn':20 'rogu':96 'routabl':31 'said':223 'saw':184 'seem':128 'seen':83 'self':45 'show':67 'site':123 'sometim':116 'spook':5 'sporad':75 'start':89 'stat':106 'static':32 'tell':115 'thing':71 'think':110,203 'though':26 'tier':138 'time':84 'torrent':87,160,181,196,211,224 'track':124 'tracker':60 'unusu':108 'use':37,57,166 've':64 'vpn':39 'websit':165 'year':55"
  +ranking: 0
  +commentCount: 0
  +upVotes: 0
  +downVotes: 0
  +visibility: "visible             "
  +apId: "https://lemmy.world/comment/5169949"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699491322 {#1908
    date: 2023-11-09 01:55:22.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS DENIED
"App\Security\Voter\EntryVoter"
ACCESS ABSTAIN
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details