Website Updates – Security & Performance

I’m making some changes to the hosting and configuration of this site, you can see the rough goals below:

  • Changing hosting provider from a legacy shared server to a cloud hosting provider with better security and high availability.
  • Adding stricter (and end-to-end) encryption to the entire site using a combination of CloudFlare and LetsEncrypt.
  • Changing the sites security / performance configuration to support and enforce:
    • Content-Security-Policy
    • X-Frame-Options
    • X-XSS-Protection
    • X-Content-Type-Options
    • Strict-Transport-Security
    • HTTP Strict Transport Security (HSTS)
    • Authenticated Origin Pulls
    • HTTP/2 + SPDY
    • IPv6 Compatibility
    • Scrape Shield

Using various tools this should actually be quite straightforward. I plan to detail the main stages / steps in some later posts.

Continue Reading

Why apps like Siri and Cortana need to understand suicide – Arstechnica

A really interesting look at how smart phones respond to vocal prompts about depression, suicide and rape.

Screenshot-31416-417-PM

The publishers of the paper highlight that phones play an increasingly important role in our personal health care and should therefore be trained to respond in more positive ways which support referrals and helplines than they do in their study.

Source: Why apps like Siri and Cortana need to understand suicide

Continue Reading