[–] [S] 1 point 4 months ago* (1 child)

onUnverifiedActivity() only runs when signature verification fails: missing signature, bad signature, or a key lookup failure. It gives you a chance to handle those cases yourself instead of Fedify immediately returning 401 Unauthorized. If the signature verifies, this hook is not involved.

If you want extra validation for verified activities, do that in your normal .on() handlers. Those run after signature verification, so that's where app-specific checks belong, like rejecting certain actors or applying your own rate limits.

  • source
  • parent
  • context
  • [–] [S] 4 points 6 months ago (2 children)

    Thanks for the feedback! The style choices are intentional and all valid CommonMark:

    • Heading styles: Setext (===/---) for H1/H2 makes major sections visually prominent in plain text, while ATX (###) is used for deeper levels. This hybrid approach optimizes readability in the raw source.

    • Four tildes: Tildes are valid CommonMark delimiters, just less common. They're chosen because code often contains backticks (shell commands, string literals), so tildes avoid visual clutter.

    The core philosophy is that Markdown should be readable as plain text, not just after rendering. These choices prioritize scanning structure in a text editor. That said, it's definitely an opinionated style—not for everyone!

  • source
  • parent
  • context
  • [–] [S] 2 points 2 years ago

    It has zero dependencies, and supports virtually every JavaScript runtime (browsers, Node.js, Bun, Deno, and edge functions). It also organize loggers in hierarchical categories, which allows you fine-grained control over log levels for different parts of an application.

  • source
  • parent
  • context
  • view more: next ›