For about the past month at work we have been using 37signalsCampfire for live chat and collaboration. It’s a pretty neat tool, and does it’s job fairly well. There is a few niggles with it, usually strange behaviour when the polling doesn’t work or the browser having a disagreement with the JavaScript.

In the course of our normal usage we have discovered one or two vulnerabilities that could allow malicous code to be run from the users browser. This is fairly un-impressive coming from the guys who created rails, they should have all this covered.

Yesterday Campfire was experiencing some breakage, and our messages were being replaced with error messages, not too handy when you’re trying to get important work done!