The last time I set up a new computer, I was surprised to find that installing a password manager has become a critical part of getting the system ready to use.

It used to be that you could pick a few unique passwords for critical services like your primary email and banking sites, and reuse some passwords for less important sites, and maybe remember them all. But when so much of what we do happens online in so many places with so many different levels of security (and visibility), the attack surface is huge. Add in how many criminals and others are trying to break into those sites, and it’s no longer safe to reuse passwords.

Why?

If one site gets hacked, and you use the same password at another site, someone will try it just to see if it works.

The only way to protect against that is to use a different password on every site. And unless your online activity is very narrow, chances are you can only memorize a few of them. You can stretch it out with mnemonics like XKCD’s passphrase scheme, but eventually you’re going to have to record them somewhere. Putting it in a text file or spreadsheet is bad, because anything that gets onto your system can read it, but password managers are designed to encrypt them.

You still have to protect the master password on that file, but now you don’t need to worry that when someone finds your old MySpace password, they’ll start buying stuff on one of your shopping accounts, or hijack your Twitter as part of a harassment campaign, or use your email account to send malware to all your friends.

LastPass is a popular one. It’s cloud-based, which makes it convenient to use on multiple devices, but you do have to trust them. If you’d rather not trust your passwords to someone else’s computer, you can go with an offline manager like KeePass, which stores everything locally on your system in an encrypted file.

Update June 2024: I really don’t recommend LastPass these days, so if you’re looking for a fully-online service, I’d suggest looking at alternatives like Bitwarden. I still use a local KeePass vault, synced over an entirely separate cloud account that only ever sees the encrypted form, and use the KeePassXC and KeePass2Android apps and browser extensions on desktops and my phone.

Social media is a mess these days. Most of us follow too many people and organizations to keep up, so we need some way of narrowing it down…but the tools are typically built into each service, which has different priorities about what it wants you to see than you do. As they say, if you’re not paying, you’re the product.

I realized this is why I still prefer Flickr to Instagram: I’m still in control when I browse Flickr. With Instagram, the best I can do is pick from one firehose or another. Flickr has its issues, but I can find stuff there, and the timeline isn’t re-ordered to suit someone else’s priorities.

Ironically, I post more often on Instagram than on Flickr. Because I like Flickr more, I feel like I should take my time & curate my photos better. But I also end up posting many at a time on Flickr, and single photos on Instagram. I don’t feel like I’m spamming if I post twenty pictures to Flickr, but I do if I post that many* to Instagram.

I mentioned this on Mastodon, and my brother remarked that Flickr feels more like “adding to a collection,” while other sites are more “shoveling things at my friends/followers.” That’s true of most social networks: Facebook, Twitter, Instagram, even Mastodon are all about now. Going back to look at someone’s history feels like an accident. Or stalking.

On Facebook, it would be really weird to go through someone’s old posts and comment on them. On Flickr, that’s totally normal. If Twitter is like shouting into the void, hoping someone will hear you, Flickr is like building a gallery and hoping someone will visit. When someone finally does,** they’ll see it, and look around. But that scream on Twitter is already fading on the wind.

Especially if Twitter thinks your friends would be more interested in seeing a sponsored post instead.

*Instagram does let you post multi-photo stacks, but the stack only ever appears as a unit. Only the cover photo appears in timelines or searches, and the whole stack shares one description and one set of tags. Flickr lets you group photos into albums however you want, and people (including you) can find any individual photo and go from there to the rest of the album.

**Not that Flickr isn’t subject to the siren call of now either, but the long tail still exists there.

I’ve seen The Last Jedi twice now. I’m still not sure how I’d rank it, but the performances are way better than most of the prequel trilogy, and the story is the first theatrical Star Wars to break new ground in ages.

I’ll admit there’s a lot of stuff that happened that I didn’t like, but it made sense within the story context, and it was done in an interesting way. And there was a lot of cool stuff too…including a ton of blink-and-you’ll-miss-it details that I missed the first time through.

What do you mean, “Like?”

I learned years ago that “stuff happened that I didn’t like” and “it was badly made” are two separate comments on a movie, TV show, book, or other work of art.

Do I like the reason Luke left? No, but it makes sense. (A lot more sense than him joining the Dark Side with a resurrected clone of Darth Sidious, TBH.) When you think about it, it’s probably the best explanation they could have come up with for why Luke would decide that he’s part of the problem and remove himself from the galactic stage. It would have to be something majorly traumatic that he would blame himself for.

Do I like that the Resistance command don’t trust each other enough to share plans? No, but again it makes sense under the circumstances, and it feeds into the themes.

Structure and Hope

The Last Jedi feels different from the other Star Wars films. It’s a lot of separate threads that seem mostly unconnected but come together toward the end into a clear picture. Rey’s journey is critical, as is Kylo Ren’s, as is the link between their journeys. Luke’s reasons for being on the island, and his triumphant return, are tied deeply into the plight of the Resistance as it battles the loss of hope, which we see in the slow attrition of the fleet chase, the breakdown of trust within command, and finally the point where they’re reduced to one small band making what could well be a last stand.

And the trip to Canto Bight? For all the whining about it, I think it’s thematically more important than the chase. It shows people taking advantage of both sides of the conflict, and it shows ordinary civilians being oppressed…and that epilogue.

The First Order does everything they can to snuff out that spark of hope, and almost succeeds…but it flares again. We see it with Luke, and with Rey, but their actions only preserve what’s left. It still feels like a hollow victory until we see the epilogue and realize that the spark has taken hold, and is growing again — and that’s inspired as much by one kid’s encounter with Finn and Rose as the legend of Luke Skywalker.

Take out Canto Bight and you take out the epilogue. Take out the epilogue and you’re left with an unremittingly bleak story. Bleaker than Revenge of the Sith…but only* because we already knew where RoTS had to go.

Uncharted Regions

This is the first time since 1983 that there’s been real uncertainty about the future in a Star Wars movie. We didn’t know where The Empire Strikes Back was going, or Return of the Jedi. The prequel trilogy had a lot of surprises along the way, but we knew it would end with Anakin turning to the dark side and helping wipe out the Jedi, Palpatine becoming the Emperor, and the Republic becoming the Empire. I loved Rogue One, but again, we knew what it was building up to. And The Force Awakens was too focused on bringing fans back into the fold with familiarity to break new ground.

The Expanded Universe quickly set up a new status quo and told episodic stories within that setting. Some changes would stick over time, but you knew at the end of the day Leia was rebuilding the Republic, Luke was rebuilding the Jedi, and so on. Eventually they broke out of it and started making big changes with New Jedi Order, and subsequent stories that moved toward the more distant future of Legacy, but it was only a secondary canon, blessed but less official than the movies.

Now? We have no idea what might happen next. We can hope that the First Order will be defeated, because that’s the kind of story Star Wars is, but we have no idea what the cost will be, or who will make it through to the end, who might redeem themselves or turn to darkness.

And I have to wonder if that’s part of the backlash: Star Wars has been a familiar place for decades, and now that certainty is gone.

Cool stuff

So, some of those great details that I didn’t notice the first time through:

  • When Leia floats through the ruined bridge, she passes through the hologram of Snokes’ flagship, disrupting it just like Holdo’s hyperspace maneuver does later in the movie.
  • After Luke’s projection is finished, he sees two suns and the Force theme swells. The first time through I was so caught up in worry about Leia (tied up with Carrie Fisher’s death) that I didn’t quite notice. The second time through, I knew what was happening with her, but I just lost it at this moment.
  • The kid with the Resistance ring at the end doesn’t grab his broom and lift it – the broom moves to his hand.

*Well, that and Lucas didn’t manage to convey as much emotional heart in the prequels as he did in ANH or the other directors did w/ Empire & Jedi. They all felt slightly detached. And I’ve seen the actors in enough other movies to know it wasn’t their fault.

“Too soon” is meaningless when something happens on a more-than-weekly basis.

It’s not too soon to talk about it. It’s past time.

Sure, real solutions will be complex and incomplete. But we solve nothing if we block research and refuse to discuss the issue.

I read a lot of articles in one of two ways:

  1. Open a bunch of tabs and then read them one at a time
  2. Save a bunch of interesting-looking stories to Pocket and then read them one at a time

So by the time I’ve decided to share a link to the story on Facebook Twitter, Mastodon, etc., I’ve often forgotten where I saw it to begin with.

If it’s a site I follow regularly, or I found it through a search, or if it was recommended by Pocket, no big deal, but if someone else shared the link and I saw it, I feel like I ought to give a little credit.

Now, the share/retweet buttons do automate this trail…but only if you do it immediately on Facebook or Twitter, because they have a nasty tendency to update your timeline when you come back, making it difficult to find the post you clicked on.

So anyone notice how twitter actively discourages you from reading an article before RT it? I read, take my time, and when I go back, the tweet I was reading is “gone”, pushed down my timeline.
— Lee Skallerup Bessette makes zero magic (@readywriting) January 1, 2018

(It took me 30 minutes to find this tweet, since I couldn’t remember who had written it, only who on my list had retweeted it.)

This encourages you to share articles before you read them, no doubt contributing to the problem of people sharing stuff that turns out to be total BS, sending it halfway around the world before the truth can get its proverbial pants on.

I’m not sure how much people care about the trail these days. Citing the original source? absolutely. Posting someone else’s idea as yours? Hell yeah, just search for “stolen tweets.”

But the intermediary? Whether you follow the person you retweeted, or you follow someone who follows someone who follows someone who retweeted them, it looks the same to the rest of the world. Back when reposts and linkblogging were done manually, it was a BIG DEAL. I remember people getting upset that big-name bloggers would share links to things that smaller bloggers had already shared without crediting them. (Admittedly, I don’t remember whether it was a common complaint or just a few people.)

On the other hand, if you’re studying the spread of ideas, opinions, information or misinformation, it’s invaluable. And if you’re trying to hide a propaganda operation, you might want to disguise the trail…

But social media users do care about share counts and like counts. Original posters want the validation. Viewers see high counts as social proof that other people find the post valuable. And the platforms themselves use it as a signal to prioritize display in the newsfeed algorithm du jour. So there’s a strong incentive to get people (or bots) to use those share, reblog, retweet buttons.

So when it comes down to it, the normal use case preserves that link trail (even if you only see the oldest and newest links in that chain)…and I’m just an outlier when it comes to the way I use social media.

Another problem I’ve noticed in my Twitter archive: Lots of URL shorteners and image hosts have shut down or purged their archives.

Sure, bit.ly and is.gd and tinyurl and ow.ly are still around. But in the days before t.co, I used a lot of different Twitter apps that used different shorteners or image hosts.

I have photos posted not just at Twitter and Twitpic, but at phodroid, mypict.me, and twitgoo. In some cases the description and date can point me to the right picture on my hard drive or on this blog (I used to import a daily digest of tweets, and I still sometimes use Twitter as a rough draft for content here). In some cases I can narrow it down to a group of photos — the 2012 partial solar eclipse, for instance.

In some cases, I have NO IDEA what the photo was:

Not sure if the misspelling will be legible in this upload phodroid.com/hvcyxw

— Kelson Vibber (@KelsonV) January 28, 2009

Similarly, I linked to a lot of articles that might still exist, but the short URLs don’t point to them anymore. Services like tr.im, short.to, and awe.sm. StumbleUpon’s su.pr. In some cases a publisher set up their own shortener, and has since dropped it. Again, sometimes I can find it from here. Sometimes the description includes a quote or title that I can search for.

Oddly enough, I found most of my lost awe.sm links by looking at Del.icio.us, which apparently unwrapped the links when they imported from Twitter way back when. It’s still around and searchable. For now. (I should look into what you get from their archive.)

It’s true that these problems are biggest if you were on Twitter before they implemented their own link shortener and image hosting. But a lot of tools (Buffer, for instance) still use their own shorteners for tracking purposes, so you’re not just depending on the tool being around long enough to post your tweet, you’re depending on it to stay around for the rare person who stumbles on an old thread and wants to see what you were talking about.

And even if you didn’t start using Twitter until they hosted photos themselves, Twitter doesn’t include your photos in your archive! If you want to save your own copies in case they go the way of GeoCities or even photobucket, you’ve got to hold onto the originals or download them yourself.

One of the problems with Twitter’s search capability is that the results are isolated.

I’ve said before that one of the keys to making a social account feel like I own it is that I can find things in it if I want to go back later. You can search your old Twitter posts by adding your username to the query in the regular search form, but it only shows you the matching results, not other posts that might be connected.

If you click on it you can get an actual conversation thread…but only those tweets that are connected as replies, so if you didn’t thread a tweetstorm properly, or if you had a big sprawling conversation with lots of different people, sometimes replying and sometimes posting something new…you can’t see the rest of it.

Worse, if you go back far enough, Twitter doesn’t even have threading. You might see “@friend Inconceivable!” but have no idea what they were saying that you replied to. (And that doesn’t even get into old shortlink and image providers that have shut down, removing content from your post as well.)

I have similar issues with Instagram, which basically has no real search, only hashtag-based timelines to go along with the account-based timelines. In both cases, when you get to a specific post, it’s a dead end. You can’t see anything around it without going back to the author’s profile, even if that author is you. Though depending on how you clicked on the Instagram link, you might get back/forward links.

(This is true for Mastodon as well, but to be fair, Mastodon is still building its search capabilities.)

WordPress, on the other hand, not only usually has next/previous links on each post, but you can view archives by category, tag, month and (for some permalink structures) day. When you find a post, you can see what’s around it. You can get more in the admin interface, but even as a visitor, you can still get the context.