kelvin maina
1 month ago
Advanced AI-powered component for OSSN with intelligent content analysis, smart recommendations, AI chat assistant, image generation from prompts, and comprehensive analytics. Full-featured AGI-ready architecture





Kelvin maina
Replied 3 weeks ago
Michael Zülsdorff great sure thing !
Ralph Pearcy once i get a keyboard!
Ralph Pearcy
Replied 3 weeks ago
Any idea when this will work for the latest build
Michael Zülsdorff
Replied 4 weeks ago
Kelvin,
when uploading your next release, please enter only the version number like

otherwise people will get layout issues on mobile devices because of a too large yellow button
...

Kelvin maina
Replied 4 weeks ago
thanks Michael once again
I'll see what i can do.
but I'm more focused on actual results than the rules
Michael Zülsdorff
Replied 4 weeks ago
Re "Unlimited resource usage"
Well, I wouldn't worry so much on exactly this point in first place because it's clear:
Your baby will need a lot of CPU power when it's finally up and running, so it'll need a dedicated server. But that's okay.
As Eric, I'm much more concerned about security and compatibility with the Ossn framework. There's hundreds of $_POST and $_GET in your code for example. Why?
Arsalan spent a lot of time and thoughts on developing a safe input() function, that's why you won't find hardly any $_POST and $_GET in the core components. Thus I'd strongly recommend to replace yours with the next release as a first step for more security.
Kelvin maina
Replied 4 weeks ago
Thank you, Michael, I'm mostly on white theme, I will check the go blue theme rendering
Kelvin maina
Replied 4 weeks ago

Eric is literally worried that alkebulan ai is too free !
Eric redegeld
Replied 4 weeks ago
Security Analysis – Alkebulan AI Component
After performing a joint assessment with a colleague, we conducted an in-depth security review of the component.
The conclusion is clear:
🚫 NOT SAFE — DO NOT INSTALL
Critical Security Issues
🔴 COMMAND INJECTION (VideoAnalyzer.php)
Shell commands are executed using unescaped user input
An attacker can fully compromise the server via video filenames
Remote Code Execution (RCE) is possible
🟠 MISSING CSRF PROTECTION (all actions)
No token validation on POST requests
Allows cross-site request attacks
🟠 PATH TRAVERSAL (image download)
Files outside the cache directory can be accessed
Sensitive data may be exposed
🟡 NO RATE LIMITING
Unlimited resource usage possible
DoS attacks are trivial to perform
Michael Zülsdorff
Replied 4 weeks ago
As for the neverending sidebar:
I fixed it by simply renaming it like
<!-- Sidebar -->
<div class="Xsidebar">
because otherwise it's colliding with the original goblue class and the accompanying javascript.
And for the page layout I'd recommend to use
ossn_set_page_layout('contents', ...
instead of 'newsfeed' since this will offer a lot more space like

Michael Zülsdorff
Replied 4 weeks ago
Just tried release 1.1011 running Ossn 8.9
Still got only static content.
And there's a basic layout issue with your dashboard page's sidebar overlapping other content and stretching the height of my page to eternity.

