Trying to fix the db.debian.org security problem joey reported. Stripping tags seem to be the easiest, but it doesn't solve all problems. Unfortunately, "solving all problems" in the context of supporting all browsers (i.e. no cookies, no javascript) is rather difficult. (At least when your site uses multiple scripts....) The only thing I can think of right now is do redirects on the server side -- i.e. have one script run the other script and pass query strings to it via stdin. Sounds kludgy but should be perfectly safe. Unfortunately I'll be gone for a couple of days starting tomorrow, so I guess i'll just implement the tag-stripping for now.
Oh, and Shaleh, if you are looking for ugly Makefiles, look no further than boot-floppies! :/
FOAF updates: Trust rankings are now exported, making the data available to other users and websites. An external FOAF URI has been added, allowing users to link to an additional FOAF file.
Keep up with the latest Advogato features by reading the Advogato status blog.
If you're a C programmer with some spare time, take a look at the mod_virgule project page and help us with one of the tasks on the ToDo list!