<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>only facebook &#187; apps</title>
	<atom:link href="http://onlyfacebook.com/tag/apps/feed/" rel="self" type="application/rss+xml" />
	<link>http://onlyfacebook.com</link>
	<description>The Unofficial Facebook SEO &#38; Facebook Page Marketing Blog</description>
	<lastBuildDate>Sat, 28 Jan 2012 16:07:25 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
		<item>
		<title>Major Facebook Security Changes Oct 1 Audit your Applications Now!</title>
		<link>http://onlyfacebook.com/2011/09/major-facebook-security-changes-oct-1-audit-your-applications-now/</link>
		<comments>http://onlyfacebook.com/2011/09/major-facebook-security-changes-oct-1-audit-your-applications-now/#comments</comments>
		<pubDate>Fri, 09 Sep 2011 10:05:01 +0000</pubDate>
		<dc:creator>Jon Clark</dc:creator>
				<category><![CDATA[Facebook]]></category>
		<category><![CDATA[application]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://onlyfacebook.com/?p=848</guid>
		<description><![CDATA[On October 1, 2011, Facebook will make a mandatory change to all applications, as per the Facebook Developer Roadmap. Any affected application not updated before the change will become inoperable. It is imperative that you audit any/all client Facebook apps/experiences in order to ascertain if they will be affected by these changes. Again, these changes [...]]]></description>
			<content:encoded><![CDATA[<p><a class="post_image_link" href="http://onlyfacebook.com/2011/09/major-facebook-security-changes-oct-1-audit-your-applications-now/" title="Permanent link to Major Facebook Security Changes Oct 1 Audit your Applications Now!"><img class="post_image alignleft remove_bottom_margin" src="http://onlyfacebook.com/wp-content/uploads/2011/09/facebook-privacy-360.jpg" width="360" height="225" alt="Post image for Major Facebook Security Changes Oct 1 Audit your Applications Now!" /></a>
</p><p>On October 1, 2011, Facebook will make a mandatory change to all applications, as per the <a href="http://developers.facebook.com/roadmap/">Facebook Developer Roadmap</a>. <strong>Any affected application not updated before the change will become inoperable.</strong></p>
<p>It is imperative that you audit any/all client Facebook apps/experiences in order to ascertain if they will be affected by these changes. Again, these changes must be made to existing Facebook applications (or inserted into current build plans for applications) – if not, these client applications will be rendered inoperable as of OCT 1.</p>
<p>We are sending this out now as the supported toolkits from <a href="http://onlyfacebook.com/category/facebook/">Facebook</a> were just updated and released and are now ready to be implemented against.</p>
<h2>Recommended Audit steps:</h2>
<ol>
<li>Identify and list all programs with Facebook integrations.</li>
<li>Identify programs that will continue to be live after September 30, 2011.</li>
<li>Work with your program&#8217;s associated tech resources to identify if program will be affected.</li>
</ol>
<h2>Facebook Security Update FAQ</h2>
<h3>Why is this happening?</h3>
<p>Facebook has recently been the subject of many concerns about the level of security around the exchange of personal information with applications. This is an effort by Facebook to shore up their interfaces to prevent any exploitation.</p>
<h3>Is this optional?</h3>
<p>Unfortunately, Facebook has made this non-optional. Historically, Facebook has basically had the approach that changes like these have been part of the &#8216;cost of doing business on Facebook.&#8217; They move fast, and expect you to also.</p>
<h3>What will be affected?</h3>
<p>Any application on:</p>
<ul>
<li> <a href="http://onlyfacebook.com/category/facebook-pages-2/">Facebook Pages</a></li>
<li> Facebook Canvases</li>
<li> Non-Facebook site (minisite, client&#8217;s .com) using Facebook Connect</li>
</ul>
<p>and using:</p>
<ul>
<li> IFrames</li>
<li> OpenGraph</li>
<li> Facebook SDKs
<ul>
<li> Official
<ul>
<li> PHP</li>
<li> Javascript</li>
</ul>
</li>
<li> Unofficial
<ul>
<li> Java</li>
<li> .NET</li>
<li> Ruby</li>
<li> Etc.</li>
</ul>
</li>
</ul>
</li>
</ul>
<h3>What will not be affected?</h3>
<ol>
<li>Much older FBML applications – predating IFrame switchover.</li>
<li> Site integrations limited to <a href="http://developers.facebook.com/docs/plugins/">Facebook Social Plugins</a> (<a href="http://onlyfacebook.com/2011/06/get-more-facebook-likes/">Like buttons</a>, <a href="http://onlyfacebook.com/2011/04/facebook-launches-new-send-button/">Send buttons</a>, etc.) that don&#8217;t do deeper Connect/OpenGraph integration.</li>
</ol>
<h3>What changes need to be made?</h3>
<p>All applications must have valid SSL certificates and be configured to use HTTPS. This requires acquiring certificates and working with associated IT resources to install on the servers where the program is hosted. These certificates cannot be &#8220;self-signed&#8221; and must work with any modern browser without it complaining.</p>
<p>Integration code must upgrade to OAuth 2.0 and associated new Facebook authentication:</p>
<ul>
<li> Apps using PHP SDK update to <a href="https://developers.facebook.com/blog/post/534/">latest official Facebook PHP SDK</a> and make minor code changes.</li>
<li> Apps using Javascript SDK update to <a href="https://developers.facebook.com/blog/post/525/">latest official Facebook Javascript SDK</a> and make minor code changes.</li>
<li> Apps using other SDKs must update in whatever manner appropriate.</li>
</ul>
<p>In the <a href="https://developers.facebook.com/apps">Facebook developer console</a>, under &#8220;Settings -&gt; Advanced&#8221;, enable &#8220;OAuth Migration&#8221;.</p>
<h3>What do we do if our app is hosted by a social app vendor (Involver, Buddy Media, Wildfire, Vitrue, etc.)?</h3>
<p>Reach out to the vendor and ask them if they have a plan in place for the &#8220;Facebook OAuth 2.0 and SSL changes&#8221;.</p>
<p>It might be an annoying change to have to make but it&#8217;s nice to see Facebook putting some thought into privacy protection. What are your thoughts on the upgrade?</p>
]]></content:encoded>
			<wfw:commentRss>http://onlyfacebook.com/2011/09/major-facebook-security-changes-oct-1-audit-your-applications-now/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:thumbnail url="http://onlyfacebook.com/wp-content/uploads/2011/09/facebook-privacy-360.jpg" />
		<media:content url="http://onlyfacebook.com/wp-content/uploads/2011/09/facebook-privacy-360.jpg" medium="image">
			<media:title type="html">Post image for Major Facebook Security Changes Oct 1 Audit your Applications Now!</media:title>
		</media:content>
	</item>
		<item>
		<title>Have You Heard of the Friend Network Optimizer App?</title>
		<link>http://onlyfacebook.com/2010/06/have-you-heard-of-the-friend-network-optimizer-app/</link>
		<comments>http://onlyfacebook.com/2010/06/have-you-heard-of-the-friend-network-optimizer-app/#comments</comments>
		<pubDate>Tue, 22 Jun 2010 00:38:21 +0000</pubDate>
		<dc:creator>sandy</dc:creator>
				<category><![CDATA[Facebook]]></category>
		<category><![CDATA[applications]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[friend network application]]></category>

		<guid isPermaLink="false">http://onlyfacebook.com/?p=457</guid>
		<description><![CDATA[A new application hit Facebook called the Friend Network Optimizer sponsored by SAP. It has grown in popularity even though it is such a brand new application. The tool works by telling users how active they are on their Facebook compared to a portion of a social graph. While it may not seem like much [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>A new application hit Facebook called the Friend Network Optimizer sponsored by SAP. It has grown in popularity even though it is such a brand new application. The tool works by telling users how active they are on their Facebook compared to a portion of a social graph. While it may not seem like much at first, this tool is quite interesting to use. It has spread so quickly because it immediately posts feed stories when a user installs the application, therefore generating more users to sign up.</p>
<p>The fact that this Facebook app has done so well is due to the way that it has worked around the Facebook permission tools. Users now need to accept all or none of the app&#8217;s usage at the time of installation. Could this be good for developers? Yes, it most certainly is. This allows for a way to grow application demand without spending a small fortune on ad buys.</p>
<p>Friend Network Optimizer is interesting itself because it does provide some data including status updates and photo upload data that can help users to determine where they rank. It is also interesting to check out active other users are, too.</p>
]]></content:encoded>
			<wfw:commentRss>http://onlyfacebook.com/2010/06/have-you-heard-of-the-friend-network-optimizer-app/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
	</item>
		<item>
		<title>Facebook Apps Can Now Ask For Your Email Address</title>
		<link>http://onlyfacebook.com/2010/01/facebook-apps-can-now-ask-for-your-email-address/</link>
		<comments>http://onlyfacebook.com/2010/01/facebook-apps-can-now-ask-for-your-email-address/#comments</comments>
		<pubDate>Mon, 25 Jan 2010 19:29:59 +0000</pubDate>
		<dc:creator>Jon Clark</dc:creator>
				<category><![CDATA[Facebook]]></category>
		<category><![CDATA[applications]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[developers]]></category>
		<category><![CDATA[e-mail]]></category>
		<category><![CDATA[email]]></category>

		<guid isPermaLink="false">http://onlyfacebook.com/?p=285</guid>
		<description><![CDATA[According the the Facebook Developers blog, Facebook is now granting developers on Platform the ability to request (or require) users to hand over their email addresses. By doing so, developers can begin sending periodic messages directly to users. This actually doesn’t come as a surprise: Facebook initially talked about e-mail requirements last October and has [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><img class="aligncenter size-full wp-image-297" title="facebook-e-mail-request-permissions" src="http://onlyfacebook.com/wp-content/uploads/2010/01/facebook-e-mail-request-permissions.jpeg" alt="facebook-e-mail-request-permissions" width="441" height="219" /></p>
<p>According the the <a href="http://developers.facebook.com/news.php?blog=1&amp;story=355" target="_blank">Facebook Developers blog</a>, Facebook is now granting developers on Platform the ability to request (or require) users to hand over their email addresses. By doing so, developers can begin sending periodic messages directly to users.</p>
<p>This actually doesn’t come as a surprise: <a href="http://onlyfacebook.com/category/facebook/" target="_self">Facebook</a> initially talked about e-mail requirements last October and has kept developers updated on the timing in its <a href="http://wiki.developers.facebook.com/index.php/Roadmap_Email" target="_blank">Developer Roadmap</a>. All of that said, this is a big deal!</p>
<p>Up until now, Facebook applications have used the notifications window (that slide up panel in the bottom right hand side of the screen) to engage users on an ongoing basis. Facebook is removing that functionality in the next thirty days. Moving forward, Facebook will no longer be the gatekeeper for communications between developers and users.</p>
<p>In order to collect Email addresses, Facebook developers will prompt users through an extended permission box. For those concerned with potential spam, they can elect to only share a proxied Email address &#8211; similar to the ones you can get when posting items on Craigslist.</p>
<p>Below is an example of what a developer e-mail can look like:</p>
<p style="text-align: center;"><img class="aligncenter size-full wp-image-298" title="facebook-developer-e-mail-example" src="http://onlyfacebook.com/wp-content/uploads/2010/01/facebook-developer-e-mail-example.jpeg" alt="facebook-developer-e-mail-example" width="452" height="409" /></p>
]]></content:encoded>
			<wfw:commentRss>http://onlyfacebook.com/2010/01/facebook-apps-can-now-ask-for-your-email-address/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://onlyfacebook.com/wp-content/uploads/2010/01/facebook-e-mail-request-permissions.jpeg" />
		<media:content url="http://onlyfacebook.com/wp-content/uploads/2010/01/facebook-e-mail-request-permissions.jpeg" medium="image">
			<media:title type="html">facebook-e-mail-request-permissions</media:title>
		</media:content>
		<media:content url="http://onlyfacebook.com/wp-content/uploads/2010/01/facebook-developer-e-mail-example.jpeg" medium="image">
			<media:title type="html">facebook-developer-e-mail-example</media:title>
		</media:content>
	</item>
	</channel>
</rss>

