Post AdT398gUPtxXHAlPBg by dakira@chaos.social
(DIR) More posts by dakira@chaos.social
(DIR) Post #AdR8tLPrWVWdXRuzUu by tante@tldr.nettime.org
2024-01-02T13:31:21Z
0 likes, 0 repeats
Ok, Mastodon question: Can I (for a user that authenticated via OAuth with their mastodon instance) find out through a defined API endpoint if that person is one of the admins of that particular instance? // cc @Gargron
(DIR) Post #AdR96lnijiyB8NTnCC by thisismissem@hachyderm.io
2024-01-02T13:33:46Z
0 likes, 0 repeats
@tante yes, read:accounts scope, then the /api/v1/accounts/verify_credentials endpoint returns their roles/permissions
(DIR) Post #AdR9GDxDQukv3WQeLw by Gargron@mastodon.social
2024-01-02T13:33:57Z
0 likes, 0 repeats
@tante No. You can get role badges, but only if they're public, and the naming of the badges can be arbitrary.
(DIR) Post #AdR9QFKPBBICDH3RDM by tante@tldr.nettime.org
2024-01-02T13:34:59Z
0 likes, 0 repeats
@Gargron Okay, then I understood the API documentation correctly. Thanks! Gotta do some more thinking then ;)
(DIR) Post #AdR9uwaqsuB55MNwYK by CatherineFlick@mastodon.me.uk
2024-01-02T13:36:19Z
0 likes, 0 repeats
@gargron @tante as a mod that would be helpful to have when trying to discuss things with mods of other instances.
(DIR) Post #AdR9uxzhfzePQj1IvY by tante@tldr.nettime.org
2024-01-02T13:42:53Z
0 likes, 0 repeats
@CatherineFlick @Gargron Yeah but you might not open that up to everyone outside to avoid harassment: Like it does make sense that "the admins" communicate via a pseudonymous account to shield them a bit. It's a mixed bag.I'm experimenting with something for Mastodon Instances but I don't want non-admins to be able to create instances. Might do a manual thingy for testing
(DIR) Post #AdRCTfSykoEK0jO73Q by tante@tldr.nettime.org
2024-01-02T14:11:34Z
0 likes, 0 repeats
@esther There is an API method but it only gives you publicly visible badge names which are arbitrary
(DIR) Post #AdT398gUPtxXHAlPBg by dakira@chaos.social
2024-01-03T11:36:23Z
0 likes, 0 repeats
@tante no, by default oauth only allows for scopes. So your app could request a scope, that only admins have, but than your app would actually have those privileges. If that’s okay, then this is your way forward.