Earlier quoted context omitted.
No api accesses granted as far as I can remember. But good call, I had not yet thought of that one.
It may have also been "Web Intent" abuse? https://developer.twitter.com/en/docs/twitter-for-websites/t... Web Intent is a very open API and doesn't require a specific API relationship (you don't need to approve an "app" to do it). It is built to present a confirmation page specific to the given "Web Intent" interaction, but there have been reports over the years of adware/malware bypassing the confirmation page (or p…
Thank you. Between the various comments in this thread bit by bit I'm beginning to wonder how safe this setup really is. Qubes OS starts to look better by the minute...