Mastodon may expose followers-only posts to public. Is it a feature or a bug?
For example, this reply is addressed to the
followers collection (
to) and the mentioned user (
cc):
https://not-brain.d.on-t.work/notes/admrkcvj3hfn5crjBut Mastodon says the reply is "public". Anyone can view it in this thread:
https://neuromatch.social/@jonny/115343446216492915#Iceshrimp also doesn't require authorization, but you need to know the post ID to view it.
@kopper Did you know about this?
UPDATE:
https://not-brain.d.on-t.work/notes/admrkcvj3hfn5crj is now addressed to public; apparently its audience was being modified by the originating instance depending on the delivery target.