This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content
This repository was archived by the owner on Feb 18, 2024. It is now read-only.

Remove username/password support; always use tokens. - #90

Merged
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth
Jun 27, 2016
Merged

Remove username/password support; always use tokens.#90
guybedford merged 3 commits into
jspm:masterfrom
tamird:token-auth

Conversation

@tamird

Copy link
Copy Markdown
Contributor

Fixes#89.

@tamird

Copy link
Copy Markdown
ContributorAuthor

There's a lot of duplication here - I'm sure it can be cleaned up some, but I'd like to leave that to you @guybedford since I don't really know what I'm doing in JS :)

I tested this locally with a token that doesn't have public_repo and things worked.

@guybedford

Copy link
Copy Markdown
Member

Thanks, this looks good to me.

The thing is, we need to retain backwards-compatibility - password authentication can't just be removed! So the prompt could perhaps read Enter your GItHub username or token:, and then if it looks like a token was entered (checking character count / character types used), skip the password entry. Then to switch auth between credentials as we have currently and a token request style.

I know it's a bit of work with all that, but backwards-compatibility is the cost having users :)

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK I've refactored this a bit to reduce the duplication. Perhaps you could help with the backwards compatibility bit?

Comment threadgithub.js

function readNetrc(hostname) {
hostname = hostname || 'github.com';
var creds = netrc[hostname];

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

All this deleted code needs to remain.

@tamird

Copy link
Copy Markdown
ContributorAuthor

OK, seems to me we can remove all the code that permits the old configuration to go in, we just need to keep the ability to read the old config. Updated.

@guybedford

Copy link
Copy Markdown
Member

We can definitely support the better token approach here, but I can't merge this as the prompts are part of the API, we can't just remove them in this version as it will break documented workflows.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Ah I might just revert the prompts. I'll let you know when I've done that.
On Jun 18, 2016 19:49, "Guy Bedford" notifications@github.com wrote:

We can definitely support the better token approach here, but I can't
merge this as the prompts are part of the API, we can't just remove them in
this version as it will break documented workflows.


You are receiving this because you authored the thread.
Reply to this email directly, view it on GitHub
#90 (comment), or mute
the thread
https://github.com/notifications/unsubscribe/ABdsPG9AQFaGzpuLh28zc1nmNI-fEHIiks5qNIQEgaJpZM4Izqxv
.

@tamird

Copy link
Copy Markdown
ContributorAuthor

Reverted the prompts! @guybedford PTAL

@guybedford

Copy link
Copy Markdown
Member

Thanks! This looks great.

I think we should be able to alter the configuration prompts though - where it says enter your token or username, we can check if they entered a token and then skip asking for a password and set the auth object to a token mode already.

Let me know if that makes sense?

@tamird

Copy link
Copy Markdown
ContributorAuthor

Done.

@guybedford

Copy link
Copy Markdown
Member

Excellent, thank you again for your contributions!

@guybedford
guybedford merged commit a930b27 into jspm:masterJun 27, 2016
@tamird
tamird deleted the token-auth branch June 27, 2016 16:45
@tamird

Copy link
Copy Markdown
ContributorAuthor

Thanks! Could you cut a new release with this?

@guybedford

Copy link
Copy Markdown
Member

Sure, I have done a 0.13.14.

Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@tamird@guybedford