verifytheposter

joined 3 months ago
[–] verifytheposter@leminal.space -2 points 20 hours ago (1 children)

Don't they always?

Is there solid proof that it is used globally? Have technology experts conducted any research on it, or is verification simply impossible because they cannot inspect the code?

 

every App Store search is logged letter-by-letter, with millisecond timestamps. Apple can compute your typing speed.

every search you type, timed to the millisecond, stored to your account

https://appleinsider.com/articles/26/06/17/apples-app-store-search-data-stores-every-single-keystroke

[–] verifytheposter@leminal.space 1 points 2 days ago (1 children)

These aren’t mutually exclusive trade-offs: Matrix could support communities while minimizing or encrypting metadata by default. There should be a protocol that doesn’t require device details and profile data to be exposed just to participate.

 

Matrix Metadata Problem: the server sees everything except your messages

People pick Matrix because of end-to-end encryption. But E2EE only protects message content — everything around it is plaintext.

The server sees:

  • Your ID, IP, client type and version, device you use
  • Your presence, typing status, read receipts
  • Which rooms you join and when you join/leave
  • Who else is in those rooms → your entire social graph
  • Room names, topics, avatars (all plaintext state)
  • For every message: who sent it, which room, a millisecond timestamp, type, size

And federation copies all of that to every other server whose users are in the room. Your "social footprint" isn't one copy — it's as many as there are servers.

 

Matrix Metadata Problem: the server sees everything except your messages

People pick Matrix because of end-to-end encryption. But E2EE only protects message content — everything around it is plaintext.

The server sees:

  • Your ID, IP, client type and version, device you use
  • Your presence, typing status, read receipts
  • Which rooms you join and when you join/leave
  • Who else is in those rooms → your entire social graph
  • Room names, topics, avatars (all plaintext state)
  • For every message: who sent it, which room, a millisecond timestamp, type, size

And federation copies all of that to every other server whose users are in the room. Your "social footprint" isn't one copy — it's as many as there are servers.

 

every App Store search is logged letter-by-letter, with millisecond timestamps. Apple can compute your typing speed.

every search you type, timed to the millisecond, stored to your account

https://appleinsider.com/articles/26/06/17/apples-app-store-search-data-stores-every-single-keystroke

 

every App Store search is logged letter-by-letter, with millisecond timestamps. Apple can compute your typing speed.

every search you type, timed to the millisecond, stored to your account

https://appleinsider.com/articles/26/06/17/apples-app-store-search-data-stores-every-single-keystroke

Fair point. My mistake.

Fair point. My mistake.

 

Can RustDesk's telemetry be disabled? Collecting user device information, session duration, and other telemetry data seems unnecessary for a remote desktop application. Users should have the option to disable all telemetry and they should be disabled by default.

https://f-droid.org/packages/com.carriez.flutter_hbb/

 

cross-posted from: https://leminal.space/post/35929945

Does anyone know a Nostr client that supports bulk adding relays?

Many clients let you export all relays as a text file or zip, but there’s no import feature. This makes switching clients or sharing relay lists tedious.

Is there a way to bulk import relay lists efficiently? If you’ve found a trick or client that does this, please share!

#Nostr #Decentralization #Relay #Crypto #CryptoCommunity #Web3 #OpenWeb #Privacy #PeerToPeer #Federated #DecentralizedNetwork #PrivacyTools #DigitalFreedom #NostrRelay #SocialMedia #Tech #Innovation #Blockchain #Distributed #Networking #OpenSource #Software #TechCommunity #Coding #Programming #Developers #TechNews #OpenTech #DigitalPrivacy #DataOwnership #InternetFreedom #SocialNetworking #P2P #TechTrends #NostrClient #NostrApp #NostrNetwork #RelayManagement #TechSolutions #DigitalRights #TechDiscussion #FOSS #FreeSoftware #Cryptography #DigitalSecurity #OpenInternet #DecentralizedApps #PrivacyFirst #Web3Community #TechSupport #TechTips #NetworkingTools #TechTalk #DigitalInnovation

 

Does anyone know a Nostr client that supports bulk adding relays?

Many clients let you export all relays as a text file or zip, but there’s no import feature. This makes switching clients or sharing relay lists tedious.

Is there a way to bulk import relay lists efficiently? If you’ve found a trick or client that does this, please share!

#Nostr #Decentralization #Relay #Crypto #CryptoCommunity #Web3 #OpenWeb #Privacy #PeerToPeer #Federated #DecentralizedNetwork #PrivacyTools #DigitalFreedom #NostrRelay #SocialMedia #Tech #Innovation #Blockchain #Distributed #Networking #OpenSource #Software #TechCommunity #Coding #Programming #Developers #TechNews #OpenTech #DigitalPrivacy #DataOwnership #InternetFreedom #SocialNetworking #P2P #TechTrends #NostrClient #NostrApp #NostrNetwork #RelayManagement #TechSolutions #DigitalRights #TechDiscussion #FOSS #FreeSoftware #Cryptography #DigitalSecurity #OpenInternet #DecentralizedApps #PrivacyFirst #Web3Community #TechSupport #TechTips #NetworkingTools #TechTalk #DigitalInnovation

 

cross-posted from: https://leminal.space/post/35929431

New to Nostr on Android. Do you use Amber, Citrine and Morganite for Nostr?

I just downloaded Amethyst to start using Nostr. While looking into setup guides and recommendations, I also came across Amber, Citrine, and Morganite.

Right now I’m wondering how people actually use these together in practice.

Do most of you just use Amethyst by itself and call it a day, or is it worth setting up the “full gem stack”?

Curious what setup you’re using and whether you think the extra apps are worth it.

#Nostr #Amethyst #Amber #Citrine #Morganite #NostrApps #NostrClient #AndroidApps #PrivacyApps #Decentralized #DecentralizedSocial #OpenSource #Fediverse #CryptoApps #SecureMessaging #NostrCommunity #TechTips #AppSetup #GemApps #MobileApps #DigitalPrivacy #SecureSocial #P2PApps #PersonalData #NostrNetwork #SecureNetwork #NostrGuide #NostrNewbie #MobilePrivacy #TechExploration #SelfHosted #TechCommunity #AppRecommendations #PrivacyTools #DigitalSecurity #MobileSocial #OpenSourceApps #NostrTips #NostrSetup #DataOwnership #PrivacyMatters #SecureCommunication #TechEnthusiast #PrivacyFirst #MobileTech #NostrLife #NostrAndroid #PrivacyConscious #SecureMessagingApps #TechAdvice #SocialNetworking #GemStack #NostrStack #TechCurious #DigitalFreedom #DecentralizedSocialNetwork

 

New to Nostr on Android. Do you use Amber, Citrine and Morganite for Nostr?

I just downloaded Amethyst to start using Nostr. While looking into setup guides and recommendations, I also came across Amber, Citrine, and Morganite.

Right now I’m wondering how people actually use these together in practice.

Do most of you just use Amethyst by itself and call it a day, or is it worth setting up the “full gem stack”?

Curious what setup you’re using and whether you think the extra apps are worth it.

#Nostr #Amethyst #Amber #Citrine #Morganite #NostrApps #NostrClient #AndroidApps #PrivacyApps #Decentralized #DecentralizedSocial #OpenSource #Fediverse #CryptoApps #SecureMessaging #NostrCommunity #TechTips #AppSetup #GemApps #MobileApps #DigitalPrivacy #SecureSocial #P2PApps #PersonalData #NostrNetwork #SecureNetwork #NostrGuide #NostrNewbie #MobilePrivacy #TechExploration #SelfHosted #TechCommunity #AppRecommendations #PrivacyTools #DigitalSecurity #MobileSocial #OpenSourceApps #NostrTips #NostrSetup #DataOwnership #PrivacyMatters #SecureCommunication #TechEnthusiast #PrivacyFirst #MobileTech #NostrLife #NostrAndroid #PrivacyConscious #SecureMessagingApps #TechAdvice #SocialNetworking #GemStack #NostrStack #TechCurious #DigitalFreedom #DecentralizedSocialNetwork

 

cross-posted from: https://leminal.space/post/35928968

A reminder for those using chromium based browsers. Correct me if I'm wrong.

Firefox can keep visited links purple and does not allow any website to know whether a link is purple or has been visited.

If “Partition the Visited Link Database, including ‘self-links’” is enabled, Chrome cannot keep visited links purple globally.

If “Partition the Visited Link Database, including ‘self-links’” is disabled, Chrome keeps visited links purple globally, but websites can sniff CSS and determine which links you have visited.

From this perspective firefox seems like a better choice.

#Gecko #Chromium #Firefox #Chrome #Brave #Vivaldi #Edge #Opera #ArcBrowser #LibreWolf #UngoogledChromium #Waterfox #ZenBrowser #Floorp #Thorium #PaleMoon #IridiumBrowser #TorBrowser #Bromite #PrivacyBrowser #SecureBrowser #AntiTracking #TrackingProtection #Fingerprinting #HistorySniffing #VisitedLinks #LinkHistory #BrowsingHistory #HistoryLeak #CSSPrivacy #BrowserSecurity #WebSecurity #PrivacyTech #PrivacyEngineering #WebStandards #OpenSource #FOSS #Infosec #Netsec #CyberPrivacy #DigitalRights #OnlinePrivacy #DataPrivacy #DataProtection #OnlineSecurity #BrowserWars #PrivacyTools #PrivacyMatters #AdTracking #TrackerBlocking #PrivacyFirst #SurveillanceResistance #DigitalSafety #BrowserPrivacy #SecurityAwareness #SecureBrowsing #Encryption #DigitalFreedom #PrivacyByDesign #Anonymity #CyberSecurity #TechPrivacy #WebPrivacy #Privacy

view more: next ›