• 0 Posts
  • 25 Comments
Joined 11 months ago
cake
Cake day: November 4th, 2023

help-circle
  • The only way you can do this, is if the only service you use the provider for is storage. Encrypt the data before you send it to the provider and then they don’t know what they’re storing.

    If they have to do any processing on it at all, then conceptually they need a plain text copy of it to feed into the CPU. And if they have that, there is nothing you can do to stop them from stealing it or using it.

    There has been some research in this field, the concept is called homomorphic encryption. That is where you encrypt something in a way that allows a third party to manipulate the data without possessing a key. It is still very limited, and likely always will be due to the extreme difficulty of the question.


  • with an outside control interface that’s quite literally about as optimal as it can be.

    Which is probably true, as long as you make one assumption- that the operator dedicates a significant amount of time to learning it. With that assumption being true- I’ll assume you’re correct and it becomes much more efficient than a Nano/Notepad style editor.

    I’m happy to concede without any personal knowledge that if you’re hardcore editing code, it may well be worth the time to learn Vim, on the principle that it may well be the very most efficient terminal-based text editor.

    But what if you’re NOT hardcore editing code? What if you just need to edit a config file here and there? You don’t need the ‘absolute most efficient’ system because it’s NOT efficient for you to take the time to learn it. You just want to comment out a line and type a replacement below it. And you’ve been using Notepad-style text editors for years.

    Thus my point-- there is ABSOLUTELY a place for Vim. But wanting to just edit a file without having to learn a whole new editor doesn’t make one lazy. It means you’re being efficient, focusing your time on getting what you need done, done.


  • Xmpp definitely wins in privacy. What is there to privacy more than message content and metadata? Matrix definitely fails the second one, and is E2E still an issue for public groups? I don’t remember if they fixed that.

    XMPP being a protocol built for extensibility means it will be hard for it not to keep up with times.

    Okay so how does modern XMPP protect this? When I last used XMPP, some (not all) clients supported OTR-IM, a protocol for end to end encryption. And there wasn’t a function for server stored chat history (either encrypted or plaintext).
    Have these issues been fixed?



  • (This is not an insult, I just had a realization that I think might affect you)-- do you know what the name comes from?

    Years ago there was a thing called a beeper before everyone had cell phones. It was a one way paging system-- you’d give your friends your beeper number, they’d call it, type in their phone number, and their number (or whatever they dialed in) would appear on your beeper. You’d then use a landline phone to call them back (early versions of the system had no text or reply capability, only numbers and only one-way).

    I always thought it was a cool name. But thinking about it I realize someone less than maybe 25-30 years old might literally have never encountered such a device. Much like a 5.25" floppy disk or rotary dial phone, they went out of style years ago and a young person might never have encountered one.

    Curious if that’s you?



  • This is really not accurate. Matrix is not designed to be a super privacy first protocol. It’s like Lemmy in the it’s designed to solve a problem and be a useful federated collaboration tool. It borrows features from a number of popular messaging platforms. Message history is stored on the server but encrypted client side so privacy is preserved. It supports group chat rooms. It supports voice and video. And most importantly, it supports bridges- you can connect your matrix to other services that are completely incompatible with matrix using a bridge. Perhaps the best example of this is Beeper, which is built on matrix. They are trying to replicate the user experience of the old app Trillian- beeper can link with a number of chat services including Google messages, slack, WhatsApp, telegram, signal, etc. Thus you get all your chats in one place.






  • It’s a very simple answer Apple has guaranteed that your data will stay on your device and stay secure. This is generally trusted because Apple has a track record of keeping user data secure on the device or encrypted in the cloud even in ways Apple cannot access. Point is, when Apple says they are going to do this in a way that respects privacy, and they outline the technical details of how it will work, people trust that because there’s a track record.

    Microsoft has no such trust. They have a recent track record of being intrusive and using dark patterns to persuade users to give Microsoft their data, for example in Edge there have been new feature pop-ups that require data sharing with Microsoft and the two options are ‘got it’ and ‘settings’ so accepting requires one click and rejecting requires 4 going into the settings menu and changing a few things. Microsoft is also heavily pushing Copilot which is mostly cloud-based. Furthermore, Microsoft recently showed a system that would basically screenshot your computer at very regular intervals and store them in an insecure manner. Granted it was on the device, but the way they were going to be stored meant they could be stolen with two lines of code. And let’s not forget that Windows 11 cannot be set up without a Microsoft account, so to even use your computer you have to share your email address with Microsoft. In this and many other ways they just do not act like a company that respects privacy at all, they act like the typical big tech give us everything or we will make your life difficult type company that nobody trusts.


  • This 100%>. It’s why Reddit is way more fun than Twitter. Twitter is like yelling into the void and sometimes the void yells back. It’s good for publishers and content creation, bad for real conversation. Reddit supports real threaded conversation with voting to highlight the good parts of the conversation.

    The other thing is interest following. Twitter you have to follow people, and a person may be posting on things you have interest in and other things you have no interest in. Reddit you follow subjects, and you see good content regardless of who posts it.

    Mastodon and Lemmy are just decentralized Twitter and Reddit.



  • the top end models of the good brands are just scams, they just look a bit nicer and have some shitty “AI powered” app you’ll never use.

    This is literally a scam.
    There was an article a while back which I can’t find right now, a few of those product designers were saying that past $100-$150 they really weren’t sure what benefits could be added so they just throw a bunch of useless whiz bang shit in that serves no useful purpose but they sell it for $300 or whatever and enough people buy it to make it worth building another SKU.

    In most cases the super top end one has the same motor as the midrange or low-midrange one, and takes the same brush heads, which means it does exactly the same thing. Buy that one for $85 and be done with it.


  • Welcome to Clock 2.0, the new time and reminder experience from Microsoft! Powered by Bing AI and Microsoft OneDrive.

    • Sync your time zones, alarms, and reminders to all your devices via Microsoft OneDrive
    • Get suggested wake-up times powered by Bing AI and your calendar!
    • Use of Clock is governed by the Microsoft Cloud Connected Experiences Privacy Policy (click here to view).
    • Click I Agree to start your use of Microsoft Clock!

    and for all this, your alarm reminders become yet another datapoint for personalized ads, your phone alarm to wake you up then plays at full blast through the living room computer and wakes everybody else up, and you agreed to a 750kb privacy policy that displays in a 2"x3" window with 500 pages to scroll through.