Mark Tyndall

@marktyndall
144 Followers
248 Following
1.7K Posts
Physicist, Trombonist, Archer.
Possibly lapsed.
Joined18 May 2022
Birdsite Messagehttps://twitter.com/MarkTyndall/status/1589036167026343937?t=n-2jmUUWStp9TJP4iigFRw&s=19
LocationYorkshire, United Kingdom
Deep shade being cast by #BBCRadio3 news this morning:
America says it holds all the cards; Iran has found it holds a strai(gh)t

As part of 'Making Tax Digital' the UK will soon force people to use proprietary software to file certain types of tax return. If you disagree, think people should have control over their data, that HMRC alone should be in charge of HMRC's job, that you shouldn't have to pay random companies just to pay your own taxes, I suggest you sign this UK e-petition:

https://petition.parliament.uk/petitions/769610

#UK #UKPol #software

Petition: Create a government-owned, free software for Making Tax Digital (MTD)

With the roll-out of Making Tax Digital going ahead, HMRC must provide an in-house, government-developed, fully-functional software that allows easy and confident compliance with MTD. Self-employed people should not be obliged to hand data to private companies.

Petitions - UK Parliament and UK Government
#totp Betty Boo!!!!!!
#totp play MC HAMMER!

The lads know what they're doing. They've started on stools so that they can stand up for the key change. You can tell they're professionals.

#TOTP

Sarah Ruggins is around 176km away from finishing her epic cycle ride across Europe as I type.
(I've cycled that far in a day - but I didn't spend the previous 2 weeks cycling virtually nonstop for >5800km.)
It's a stupendous achievement, and she's really quite amazing.

https://www.followmychallenge.com/live/own2026/

#cycling #BikeTooter

LIVE: One Way North 2026

OWN2026 (“One Way North”) targets the iconic North Cape to Tarifa record - one of cycling’s toughest challenges. Riders must cross Europe from south to north or north to south, covering 6,000 km, 9 countries, and 35,000m of ascent. The route is fame

Light, shade and shadows. Photo taken from St Michael's tower on Glastonbury Tor.

@neuron @xssfox So, the basic idea is that your phone (or other mobile device) is your authentication method: Unlocking your phone during the login process logs you into whatever you're trying to use. But there's no direct interaction between devices, so it's more like simultaneously logging in from two separate devices in parallel, which means it requires the infrastructure and data access of a monopolistic megaplatform to work as securely as advertised in the first place. And when it works as advertised, it's really easy! But, just a sampler of the ways this can go wrong in practice, for normal people who aren't wealthy tech bros living specifically in major West Coast cities:
- You lost/broke your phone or someone stole it and you don't have a second phone sitting around but you need to be able to login to stuff to replace it.
- You lost/broke your phone or someone stole it and you can't afford to replace it immediately.
- You lost/broke your phone or someone stole it and you can't turn on cloud backups because the platform says it's not available in your country.
- Someone stole your phone and you *do* replace it, but your old phone is still out there and the thief did a sloppy job wiping it for resale, and the buyer uses it to set up their own passkey somewhere, and the platform flags this as suspicious and locks out *both of you*.
- The above scenario, but also the platform doesn't officially offer customer support in your country or language.
- You can't afford to buy a new phone every year or two and the platform arbitrarily decides your phone is too old to log you into stuff anymore.
- You *can* afford to buy a new phone every year or two, but only because the phones available to you are either used models, or the unsold leftovers from wealthier countries, so by the time you buy a new phone, it's considered "obsolete" by people on another continent who make a quarter million dollars a year.
- You're trying to login to something from a computer but your phone doesn't have internet access.
- You're trying to login to your computer but it doesn't have internet access so unlocking your phone is useless (seen this happen with Macbooks)
- The platform's geolocation data is inaccurate in your country and they think your phone and computer are arbitrarily too far apart even though you're literally holding them both.
- The platform decides they don't allow passkeys from your country but they forgot to tell you this until after you already set it up.

These are just the ones I *remember*. And this doesn't even factor in the basic concept of human mortality - I've been dealing with the mess passkeys cause in *that* scenario for *months*.

In short, my criteria for recommending passkeys is as follows:
- Do you live within 50 miles of San Francisco, CA or Seattle, WA and plan to stay there forever?
- Do you comfortably own at least two personal mobile devices and plan to continue to do so indefinitely?
- Does your annual salary have at least six digits?
- Do you trust at least one monopolistic megaplatform (Apple, Google, or Microsoft) to be a permanent, inescapable middleman in every attempt to login to things forever, and to indefinitely support the brand-new standard they championed?
- Do you plan to die alone and unloved with no surviving friends, family, or creative/business partners who might need access to something you locked behind a passkey?

If the answer to all of the above is "yes", then passkeys are for you!

There once was an X from place B
Who satisfied predicate P
The X did thing A
In a specified way
Resulting in circumstance C.
A poem for World Bee Day.