Live data from Hacker News

Vouch

github.com

41–50 of 507 posts

Re: Vouch

#41
However good (or bad) this idea may be, you are shooting yourself in the foot by announcing it on Twitter. Half the devs I know won’t touch that site with a ten foot pole.

Re: Vouch

#42
Isn't it extremely difficult problem? It's very easy to game, vouch 1 entity that will invite lots of bad actors

Re: Vouch

#44
post #42

Isn't it extremely difficult problem? It's very easy to game, vouch 1 entity that will invite lots of bad actors

Indeed, it's relatively impossible without ties to real world identity.

Re: Vouch

#45
post #42

Isn't it extremely difficult problem? It's very easy to game, vouch 1 entity that will invite lots of bad actors

you can't really build a perfect system, the goal would be to limit bad actors as much as possible.

Re: Vouch

#46

The Web of Trust failed for PGP 30 years ago. Why will it work here? For a single organisation, a list of vouched users sounds great. GitHub permissions already support this. My concern is with the "web" part. Once you have orgs trusting the vouch lists of other orgs, you end up with the classic problems of decentralised trust: 1. The level of trust is only as high as the lax-est person in your network 2. Nobody is p…

Web of Trust failed? If you saw that a close friend had signed someone else's PGP key, you would be pretty sure it was really that person.

Identity is a lot easier than forward trustworthiness. It can succeed for the former and fail for the latter.

Re: Vouch

#47
> Who and how someone is vouched or denounced is left entirely up to the project integrating the system.

Feels like making a messaging app but "how messages are delivered and to whom is left to the user to implement".

I think "who and how someone is vouched" is like 99.99% of the problem and they haven't tried to solve it so it's hard to see how much value there is here. (And tbh I doubt you really can solve this problem in a way that doesn't suck.)

Re: Vouch

#48
post #42

Isn't it extremely difficult problem? It's very easy to game, vouch 1 entity that will invite lots of bad actors

You can't get perfection. The constraints / stakes are softer with what Mitchell is trying to solve i.e. it's not a big deal if one slips through. That being said, it's not hard to denounce the tree of folks rooted at the original bad actor.

Re: Vouch

#49
post #42

Isn't it extremely difficult problem? It's very easy to game, vouch 1 entity that will invite lots of bad actors

Then you would just un-vouch them? I don't see how its easy to game on that front.
Post reply on HN