this post was submitted on 01 Jul 2026
402 points (99.5% liked)

AssholeDesign

11482 readers
1 users here now

This is a community for designs specifically crafted to make the experience worse for the user. This can be due to greed, apathy, laziness or just downright scumbaggery.

founded 3 years ago
MODERATORS
 

Dark pattern abuse at its finest. You find this on all third party webstores that have decided to affiliate themselves with Shop. This has been spreading like the plague and infected a lot of webstores I used to use. If you don't notice or forget to click on the "not now" at the bottom of the page they will create a Shop account that contains your email, phone number and credit card information without further warning. Whoever hacks into their database is going to hit a goldmine. You might have a Shop account without even realizing it right now.

And of course there is a 30 day delay for account deletion for purely made up reasons.

you are viewing a single comment's thread
view the rest of the comments
[–] Buddahriffic@lemmy.world 2 points 1 month ago

It's more about consent to save the data rather than just passing it on to the payment processor. Different attack surface, as getting it without it being saved would require their codebase be compromised or some sort of man in the middle attack (which is difficult/impossible with encryption, if it's done right), or compromising the payment processor themselves. If the data is saved, all of those work plus any brief security breach that gives access to the database, which will be the most common type of breach out of all the ones that could expose the CC info.

Sure they could still be saving it, but then if there is a breach, it will be discovered that not only did they have a breach but they made it worse by saving financial data without user consent, which would increase the damages for the class action suit for the breach. In theory, at least, hard to tell how it would work out with today's level of corruption.