OpenSocial: JavaScript Code of Flixster on MySpace - Start Hacking!
By Steve Poland • November 1, 2007
App developers should be able to start working with this code to understand the OpenSocial API’s and begin getting their apps ready. Download the various JS files here: opensocial.zip.
Take a glance at the MySpace source code of the profile page here: opensocial-myspace.txt.
Related posts:
- Google’s OpenSocial API Docs now online http://code.google.com/apis/opensocial/ SHARETHIS.addEntry({ title: "OpenSocial: JavaScript Code of Flixster on MySpace - Start Hacking!", url: "http://blog.stevepoland.com/opensocial-javascript-code-of-flixster-on-myspace-start-hacking/" });...
- IDEA #32 - Online Video Embed Code Piggy-Backing Quick summary: Tons of online videos exist at YouTube, etc. People grab an ‘embed’ code for a video, so that they can post the video on their MySpace page or in a blog post. When...
- My MySpace Days Are Over I’ll likely let my profile sit there, but those days are over. The only comments I get anymore are from my “friends”, but are really bots that have hacked my friends’ accounts, and have posted...
- Facebook giving stock to Universal Music? Full length songs removed from Myspace for Universal Music artists - Ouch to MySpace. Very interesting — the only reason MySpace still really exists, is because every music artist is on it. As Universal retracts full songs from MySpace, that cripples MySpace a bit — and will get users...
- IDEA #61 - Music Affiliate JavaScript Blog Include A simple script that anyone could grab and put in the HEAD of their blog/website (or install via a plugin for blogger/wordpress/typepad). Anytime there is an MP3 linked to on the page (and/or a band...
Related posts brought to you by Yet Another Related Posts Plugin.
Comments
6 Responses to “OpenSocial: JavaScript Code of Flixster on MySpace - Start Hacking!”
Got something to say?



Quick work
will take a look
Steve, where did you get these files?
http://www.myspace.com/aber — CTO, MySpace
I was looking for good examples. Thanks for the tip.
A quick look at the JavaScript code shows that the client-side JavaScript is passing the user ID to the backend without any authentication. This means that it’s trivial to mess up anybody’s Flixter profile.
This seems to be a general issue with OpenSocial. Unlike Facebook, Opensocial seems to be missing user to app authentication. I wrote an article about it:
http://hyper.to/blog/link/opensocial-insecurity-no-user-to-app-authentication/
I hope that the Facebook version of Flixster does take advantage of
their authentication mechanism.
above link for zip file is not working also txt file link not working. can u plz check if possible send by email
thanks