Webmention Abuse

15 thoughts
last posted Oct. 21, 2014, 4:33 p.m.

8 earlier thoughts

0

What needs to happen now

Right now abuse prevention is optional. The measures suggested by the spec are also insufficient.

The webmention spec needs to be updated as soon as possible to require:

  • A clear mechanism for gauging and establishing trust of one site by another before webmentions requests from that site will even be evaluated
  • Rate-limiting and checks for duplicate requests

6 later thoughts