Well, I had a word with Banwari about spammers embedding obscene images using the insert image button (or the html editor) of the post edit box. As it stands now, images can be embedded with any URL - so the image can be hosted on some third-rate site but the browser will happily download and display it. This is risky as many people access this forum from office and you know what will happen if anyone opens a thread containing posts with such linked images - if the person's boss sees it OR it sets the firewalls/anti-virus ringing if either that site is banned or the image contains any malware embedded in it. Either ways the user's gonna get into trouble!
I did suggest that inserting images be disallowed for the moment - till there is a mechanism to only allow users to insert images after first uploading them in their profiles. Plus a mechanism to not show images directly within the post - but have a link that says "Image not displayed for security/privacy purpose. Click to view" and when the user clicks this, the image opens in a pop-up.
I trust Banwari must have discussed these points with the dev team...and hope that we'll see some changes - don't know when though as these things are not a simple cut-paste job and will need some time to do. Banwari - any updates in this regard?
S = k.I^2, where S is the amount of stupidity a species possesses, I is the intelligence the species has and k is the universal constant of stupidity.
|