Jump to content

Randy Calvert

Clients
  • Posts

    3,946
  • Joined

  • Last visited

  • Days Won

    78

 Content Type 

Downloads

Release Notes

IPS4 Guides

IPS4 Developer Documentation

Invision Community Blog

Development Blog

Deprecation Tracker

Providers Directory

Projects

Release Notes v5

Invision Community 5 Bug Tracker

Forums

Events

Store

Gallery

Everything posted by Randy Calvert

  1. That would absolutely be a concern! Anytime you engage a third party, you should evaluate what data is required to share, where they'll handle that data, and ensure they have the appropriate controls to safeguard the it. As it stands today, the only way a web hook would be leveraged is if the owner made a conscience decision to share/send that data. It is not done out of the box by IPS, so it would not be in scope typically when making a decision if using the cloud hosted solution complies with EU GDPR requirements.
  2. They use the same methods you do for accessing the data. So in reality, you can check it for yourself. As you're accessing the ACP, or viewing PII, you can check the browser cache for that PII data. In looking through my own, I only see non-PII data (images, stylesheets, etc). I also see MY own session cookies in my local browser cache, but that is my own data... not anything that would relate to any other user's session data, etc.
  3. How so? Anything that would display PII via the UI is marked as no-cache/no-store. So the local browser and/or the CDN would not cache it. (It would not make sense to cache pages anyway.) In fact if you are logged in even as a user, the base pages themselves are not cached. Me as a regular user: And separately from the ACP of one of my own IPB instances: So anything you happen to be browsing that would contain PII would be cached in the browser. You would have to make an intentional decision to take data with you such as downloading logs or exporting the database, etc.
  4. The supported hardware versions are: https://support.apple.com/en-us/HT213411 That means it supports iPhone 8 and beyond. Given that the iPhone 8 was released in 2017.... that's 6 years of updates! (Personally if my phone is older than 2 years old, I feel it's way too old! haha)
  5. That would be true if IPS was using a physical drives and servers, etc. IPS uses clustered services and does not rely on a single database, etc. There are multiple read/write clusters that exist. Also in the event of a disaster, there are multiple types of backups of the data (ones designed to be retrieved quickly, and others that are designed for "OMG THE WORLD IS ENDING" scenarios). There's not much of a chance of needing to resort to a data recovery service. 🙂
  6. FYI... IPB does not officially support 8.2 yet. Only 8.0 and 8.1. Folks have reported that 8.2 seems to work, but it's not been fully through all of the paces yet.
  7. Woot! Congrats! What's the user experience like if a user's email is triggered? Is it an alert style message? Are they just dropped back into the validating group? Does it actually just change all their preferences to no mail delivery or leave it, but a flag overrides the ability to trigger mail being sent?
  8. IPS does not make use of third parties in servicing the account. Meaning they don't outsource the support of the service. So it's not going to be IPS hiring Randy's Consulting Company to service you or enable the services they provide. That is done by IPS employees only. Now with that said, IPS has employees in both the EU and the US. GDPR does not apply to a company that has offices in multiple locations saying that only EU-based staff for that company can provide support. 🙂
  9. If you want them to complete it at time of registration instead of after the account is created (within the profile completion phase), you could witch to using the full registration form for your default login method. Change "Yes with quick registration" to "Yes with full registration form".
  10. If you choose the EU as your hosting location, the service is deployed within the AWS data centers. IPS does not own/operate their own physical data centers. Instead they leverage existing public cloud offerings from Amazon within the appropriate region selected (US or EU).
  11. I'm a big fan of 1Password and use it across all of my devices.
  12. If you even had a space and removed it, that template would not be touched later. You may need to just create a new theme and make those few other changes to that new one… OR go look in the template for any modified ones and revert them to default. Creating a new default is the safest/cleanest way.
  13. Go to domain.com/attachments. It sounds like you’re hitting the Total Max Storage limit, which is the current file you are uploading plus all previous uploads. https://invisioncommunity.com/attachments/ for example on this site.
  14. IPS uses a 3rd party monitoring company (uptime.com) to monitor its network. It's not run on the IPS infrastructure. If there is ever a situation in which there is a core critical issue, check the status page (https://status.invisioncommunity.com) to get an idea if it's just you or if it's widespread. AWS does not publicly post this type of info, especially as it relates to their customers.
  15. This looks related to a 3rd party resource.
  16. oooooOOOOOOooooo! I'm excited to see this! (And is that a feature that I see available to non-cloud users too?! What will people start thinking??)
  17. Myr... that only works if you're using AWS for sending email. It is basically the same thing for @Jon Erickson's app as well. (Which is what I used for a long time and works great.) With that said... that would mean to do this, IPS would have to dictate that customers would have to use AWS for sending email. The vast majority of self-hosted customers are not using it and would be hard-pressed to properly setup SES, configure SNS notifications, get out of the AWS sandbox, create the correct DNS/DKIM/SPF record, etc. Can you imagine the amount of support and hand holding that would need to be done? I'm a fairly competent system admin, and I still had a complication or two that Jon had to help me with. Imagine the normal customer who does not understand setting up IAM roles and the difference between SNS and SES. It becomes a train wreck before it's even had a chance to leave the station. 🙂
  18. I use that widget myself and don't have a problem with searching. So it might be something unique to your setup. Also try reinstalling it again and see if the problem comes back. It might just be a bad install.
  19. The only thing that setting will do is change the JSON-LD data to say the site's root is not your forum itself. It helps Google know that www.domain.com/forum is not the "root" of the site. To learn more about what JSON-LD is, check out: https://moz.com/blog/json-ld-for-beginners But I don't think it's going to be relevant to what you are wanting to do.
  20. And by the way... my site was down as well from 11:01PM onwards. I'm not exactly happy about the situation either. However I'm going to let IPS work with AWS to determine the root cause of the problem. My plan is to follow up in a few days to learn more because this type of outage warrants the investigation. Like anything online, things can and do break. The question is what you learn about each instance and how you improve from it going forward. A true root cause analysis not just looks at what went wrong and why, but also looks at what can be done to prevent it from occurring again. And I think these guys know that and will work through that process.
  21. In looking back over a wider period of time, you'll see that the incident this morning is the exception and not the rule.
  22. With the stock version of IPB, to disable someone's messenger you would search for the member in the ACP. Once you have their account open, find the following: Click on Disable Messenger. You'll be presented with: From the user's perspective, if they try to open their Messenger and they're not allowed to re-enable it, they'll see:
  23. The question is how to do it. In the cloud version, they get notifications of all the bounces from AWS programatically. So they can actually process them. In a self-hosted environment, there is no easy way to get notifications from random email providers about what emails bounced or were reported as spam. They're not likely to implement something that is going to get customer accounts blocked by either their host or major mail providers either because it would cause major issues with supporting it.
  24. I do love me some WebP. 😄
×
×
  • Create New...