Security
Token
There is no security token.
Firewall
main
Name
Security enabled
Stateless
Configuration
Key | Value |
---|---|
provider | security.user.provider.concrete.app_user_provider |
context | main |
entry_point | App\Security\KbinAuthenticator |
user_checker | App\Security\UserChecker |
access_denied_handler | (none) |
access_denied_url | (none) |
authenticators | [ "two_factor" "remember_me" "App\Security\KbinAuthenticator" "App\Security\FacebookAuthenticator" "App\Security\GoogleAuthenticator" "App\Security\GithubAuthenticator" "App\Security\KeycloakAuthenticator" ] |
Listeners
Listener | Duration | Response |
---|---|---|
Symfony\Component\Security\Http\Firewall\ChannelListener {#723 -map: Symfony\Component\Security\Http\AccessMap {#722 …} -logger: Monolog\Logger {#783 …} -httpPort: 80 -httpsPort: 443 } |
0.00 ms | (none) |
Symfony\Component\Security\Http\Firewall\ContextListener {#706 -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\TokenStorage {#1017 …} -sessionKey: "_security_main" -logger: Monolog\Logger {#783 …} -userProviders: Symfony\Component\DependencyInjection\Argument\RewindableGenerator {#705 …} -dispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …} -registered: false -trustResolver: Scheb\TwoFactorBundle\Security\Authentication\AuthenticationTrustResolver {#780 …} -sessionTrackerEnabler: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage::enableUsageTracking(): void {#703 …} } |
4.09 ms | (none) |
Symfony\Component\Security\Http\Firewall\AuthenticatorManagerListener {#584 -authenticatorManager: Symfony\Component\Security\Http\Authentication\AuthenticatorManager {#595 …} } |
0.00 ms | (none) |
Scheb\TwoFactorBundle\Security\Http\Firewall\TwoFactorAccessListener {#582 -twoFactorFirewallConfig: Scheb\TwoFactorBundle\Security\TwoFactor\TwoFactorFirewallConfig {#842 …} -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …} -twoFactorAccessDecider: Scheb\TwoFactorBundle\Security\Authorization\TwoFactorAccessDecider {#581 …} } |
0.08 ms | (none) |
Symfony\Component\Security\Http\Firewall\AccessListener {#579 -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …} -accessDecisionManager: Symfony\Component\Security\Core\Authorization\TraceableAccessDecisionManager {#937 …} -map: Symfony\Component\Security\Http\AccessMap {#722 …} } |
0.00 ms | (none) |
Symfony\Component\Security\Http\Firewall\LogoutListener {#786 -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …} -options: [ "csrf_parameter" => "_csrf_token" "csrf_token_id" => "logout" "logout_path" => "app_logout" ] -httpUtils: Symfony\Component\Security\Http\HttpUtils {#841 …} -csrfTokenManager: Symfony\Component\Security\Csrf\CsrfTokenManager {#1015 …} -eventDispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …} } |
0.00 ms | (none) |
Authenticators
No authenticators have been recorded. Check previous profiles on your authentication endpoint.
Access Decision
affirmative
Strategy
Access decision log
# | Result | Attributes | Object | ||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | DENIED | ROLE_USER | null |
||||||||||||||||||||||||
|
|||||||||||||||||||||||||||
2 | DENIED | moderate | App\Entity\Entry {#1695 +user: App\Entity\User {#263 …} +magazine: Proxies\__CG__\App\Entity\Magazine {#1571 …} +image: null +domain: Proxies\__CG__\App\Entity\Domain {#1669 …} +slug: "The-Spy-Pixel-problem" +title: "The Spy Pixel problem" +url: null +body: """ Unsurprisingly, some folks on raddle and reddit seem to have a big problem with lemmy. A lot of it is pure FUD.\n \n However, this appears to be a valid security concern:\n \n [raddle.me/…/lemmy-is-so-much-like-email-it-even-b…](https://raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)\n \n Any thoughts on how fixable this is?\n \n Of course the general consensus on reddit is “lemmy devs are clueless and dangerous”. I’m pretty sure a lot of it is one guy with multiple alt accounts, tho. He has a Joe McCarthy attitude about lemmy because of one of the primary devs. """ +type: "article" +lang: "en" +isOc: false +hasEmbed: false +commentCount: 0 +favouriteCount: 1 +score: 0 +isAdult: false +sticky: false +lastActive: DateTime @1689609200 {#1634 : 2023-07-17 17:53:20.0 +02:00 } +ip: null +adaAmount: 0 +tags: null +mentions: null +comments: Doctrine\ORM\PersistentCollection {#1670 …} +votes: Doctrine\ORM\PersistentCollection {#1667 …} +reports: Doctrine\ORM\PersistentCollection {#1679 …} +favourites: Doctrine\ORM\PersistentCollection {#1585 …} +notifications: Doctrine\ORM\PersistentCollection {#1575 …} +badges: Doctrine\ORM\PersistentCollection {#1559 …} +children: [] -id: 3462 -titleTs: "'pixel':3 'problem':4 'spi':2" -bodyTs: "'/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':36 '/lemmy-is-so-much-like-email-it-even-b':33 'account':72 'alt':71 'appear':25 'attitud':79 'big':12 'clueless':55 'concern':31 'consensus':48 'cours':45 'danger':57 'dev':53,88 'fixabl':41 'folk':3 'fud':22 'general':47 'guy':68 'howev':23 'joe':77 'lemmi':15,52,81 'lot':17,63 'm':59 'mccarthi':78 'multipl':70 'one':67,84 'pretti':60 'primari':87 'problem':13 'pure':21 'raddl':5 'raddle.me':32,35 'raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':34 'reddit':7,50 'secur':30 'seem':8 'sure':61 'tho':73 'thought':38 'unsurpris':1 'valid':29" +cross: false +upVotes: 0 +downVotes: 0 +ranking: 1689609200 +visibility: "visible " +apId: "https://lemmy.one/post/1142974" +editedAt: null +createdAt: DateTimeImmutable @1689609200 {#1409 : 2023-07-17 17:53:20.0 +02:00 } } |
||||||||||||||||||||||||
|
|||||||||||||||||||||||||||
3 | DENIED | edit | App\Entity\Entry {#1695 +user: App\Entity\User {#263 …} +magazine: Proxies\__CG__\App\Entity\Magazine {#1571 …} +image: null +domain: Proxies\__CG__\App\Entity\Domain {#1669 …} +slug: "The-Spy-Pixel-problem" +title: "The Spy Pixel problem" +url: null +body: """ Unsurprisingly, some folks on raddle and reddit seem to have a big problem with lemmy. A lot of it is pure FUD.\n \n However, this appears to be a valid security concern:\n \n [raddle.me/…/lemmy-is-so-much-like-email-it-even-b…](https://raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)\n \n Any thoughts on how fixable this is?\n \n Of course the general consensus on reddit is “lemmy devs are clueless and dangerous”. I’m pretty sure a lot of it is one guy with multiple alt accounts, tho. He has a Joe McCarthy attitude about lemmy because of one of the primary devs. """ +type: "article" +lang: "en" +isOc: false +hasEmbed: false +commentCount: 0 +favouriteCount: 1 +score: 0 +isAdult: false +sticky: false +lastActive: DateTime @1689609200 {#1634 : 2023-07-17 17:53:20.0 +02:00 } +ip: null +adaAmount: 0 +tags: null +mentions: null +comments: Doctrine\ORM\PersistentCollection {#1670 …} +votes: Doctrine\ORM\PersistentCollection {#1667 …} +reports: Doctrine\ORM\PersistentCollection {#1679 …} +favourites: Doctrine\ORM\PersistentCollection {#1585 …} +notifications: Doctrine\ORM\PersistentCollection {#1575 …} +badges: Doctrine\ORM\PersistentCollection {#1559 …} +children: [] -id: 3462 -titleTs: "'pixel':3 'problem':4 'spi':2" -bodyTs: "'/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':36 '/lemmy-is-so-much-like-email-it-even-b':33 'account':72 'alt':71 'appear':25 'attitud':79 'big':12 'clueless':55 'concern':31 'consensus':48 'cours':45 'danger':57 'dev':53,88 'fixabl':41 'folk':3 'fud':22 'general':47 'guy':68 'howev':23 'joe':77 'lemmi':15,52,81 'lot':17,63 'm':59 'mccarthi':78 'multipl':70 'one':67,84 'pretti':60 'primari':87 'problem':13 'pure':21 'raddl':5 'raddle.me':32,35 'raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':34 'reddit':7,50 'secur':30 'seem':8 'sure':61 'tho':73 'thought':38 'unsurpris':1 'valid':29" +cross: false +upVotes: 0 +downVotes: 0 +ranking: 1689609200 +visibility: "visible " +apId: "https://lemmy.one/post/1142974" +editedAt: null +createdAt: DateTimeImmutable @1689609200 {#1409 : 2023-07-17 17:53:20.0 +02:00 } } |
||||||||||||||||||||||||
|
|||||||||||||||||||||||||||
4 | DENIED | moderate | App\Entity\Entry {#1695 +user: App\Entity\User {#263 …} +magazine: Proxies\__CG__\App\Entity\Magazine {#1571 …} +image: null +domain: Proxies\__CG__\App\Entity\Domain {#1669 …} +slug: "The-Spy-Pixel-problem" +title: "The Spy Pixel problem" +url: null +body: """ Unsurprisingly, some folks on raddle and reddit seem to have a big problem with lemmy. A lot of it is pure FUD.\n \n However, this appears to be a valid security concern:\n \n [raddle.me/…/lemmy-is-so-much-like-email-it-even-b…](https://raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)\n \n Any thoughts on how fixable this is?\n \n Of course the general consensus on reddit is “lemmy devs are clueless and dangerous”. I’m pretty sure a lot of it is one guy with multiple alt accounts, tho. He has a Joe McCarthy attitude about lemmy because of one of the primary devs. """ +type: "article" +lang: "en" +isOc: false +hasEmbed: false +commentCount: 0 +favouriteCount: 1 +score: 0 +isAdult: false +sticky: false +lastActive: DateTime @1689609200 {#1634 : 2023-07-17 17:53:20.0 +02:00 } +ip: null +adaAmount: 0 +tags: null +mentions: null +comments: Doctrine\ORM\PersistentCollection {#1670 …} +votes: Doctrine\ORM\PersistentCollection {#1667 …} +reports: Doctrine\ORM\PersistentCollection {#1679 …} +favourites: Doctrine\ORM\PersistentCollection {#1585 …} +notifications: Doctrine\ORM\PersistentCollection {#1575 …} +badges: Doctrine\ORM\PersistentCollection {#1559 …} +children: [] -id: 3462 -titleTs: "'pixel':3 'problem':4 'spi':2" -bodyTs: "'/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':36 '/lemmy-is-so-much-like-email-it-even-b':33 'account':72 'alt':71 'appear':25 'attitud':79 'big':12 'clueless':55 'concern':31 'consensus':48 'cours':45 'danger':57 'dev':53,88 'fixabl':41 'folk':3 'fud':22 'general':47 'guy':68 'howev':23 'joe':77 'lemmi':15,52,81 'lot':17,63 'm':59 'mccarthi':78 'multipl':70 'one':67,84 'pretti':60 'primari':87 'problem':13 'pure':21 'raddl':5 'raddle.me':32,35 'raddle.me/f/fediverse/166674/lemmy-is-so-much-like-email-it-even-brought-back-spy-tracker)':34 'reddit':7,50 'secur':30 'seem':8 'sure':61 'tho':73 'thought':38 'unsurpris':1 'valid':29" +cross: false +upVotes: 0 +downVotes: 0 +ranking: 1689609200 +visibility: "visible " +apId: "https://lemmy.one/post/1142974" +editedAt: null +createdAt: DateTimeImmutable @1689609200 {#1409 : 2023-07-17 17:53:20.0 +02:00 } } |
||||||||||||||||||||||||
|
|||||||||||||||||||||||||||
5 | DENIED | ROLE_ADMIN | null |
||||||||||||||||||||||||
|
|||||||||||||||||||||||||||
6 | DENIED | ROLE_MODERATOR | null |
||||||||||||||||||||||||
|