• 0 Posts
  • 26 Comments
Joined 9 months ago
cake
Cake day: September 19th, 2023

help-circle





  • bh64toPrivacy@lemmy.ml*Permanently Deleted*
    link
    fedilink
    arrow-up
    4
    ·
    edit-2
    8 months ago

    why’d this get downvotes

    Recommending Medium and Blogger in a privacy community is terrible advice. It’s disappointing that this is actually getting upvoted.

    Edit: The other two comments provide actual private recommendations. This comment would be fine outside a privacy community.




  • bh64toTechnology@lemmy.worldGoogle is ready to fill its AI searches with ads
    link
    fedilink
    English
    arrow-up
    9
    arrow-down
    2
    ·
    edit-2
    8 months ago

    it is a fact. you have to be logged in to do a search or use an API key which directly associates your search query with your account.

    Let’s say you don’t give them a real email, that’s good. Maybe you’re using Tor or a VPN and they don’t get your IP. And somehow you manage to make your payment anonymously. That’s great.

    Well, Kagi is still getting all your search queries which are directly associated with one account. We don’t have their server’s code. We don’t know how or what are they logging. They can claim whatever in their privacy policy, I don’t care. A single entity is receiving all your search queries directly linked to your pseudonymous account. This gives them a vast amount of data about the person using it, even if they do not know who you are, probably very sensitive information too.

    Let’s make a huge assumption and assume they are not correlating your search queries and they do not use this information for anything. Well, a third party actor with access to their servers could very well make use of this vast amount of personal data, whether it is a government, their hosting provider, a malicious actor, a security breach, etc.

    And that’s considering the best case in which you were covering your tracks hiding your IP all the time and making anonymous payments, which, being honests, most Kagi users don’t do. So yeah, Kagi is a privacy nightmare.









  • bh64toAndroid@lemmy.worldThe future of selfhosted services is going to be... Android?
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    1
    ·
    edit-2
    8 months ago

    you got the reparability totally wrong. if the motherboard fries, you have to replace basically the whole device. In a desktop you just replace the motherboard and keep the CPU, GPU and RAM.

    you can obviously plug an external HDD, but can you upgrade RAM? can you upgrade to a better CPU or replace your current CPU without replacing half of the phone components? No, you can’t.

    and yes, Android uses the Linux kernel. But very few manufacturers release the kernel’s code. No upstream kernel support makes it quite hard to keep updating after the manufacturer stops, even for custom ROMs that have to keep using the kernel as a blob, which eventually becomes inviable.

    And if you’re already limiting yourself to devices supported by LineageOS, you’re discarding 90% of all phones, which let’s be honest, if the primary reason to use a flawed OS to self-host was to recycle hardware, you’re discarding most phones anyway so not a great reason.


  • they’re downvoting you because your logic was “apple does hardware so they must know better” and trusting a big corp to do your encryption better is kind of innocent.

    anyway, seeing that they do hardware encryption, they are right to downvote you. I’m not with Microsoft either, bitlocker is probably backdoored, but hey, at least you’re not trusting your hardware manufacturer to actually maintain an up-to-date secure firmware.



  • what are you talking about? XMPP doesn’t have such a thing as default settings. It varies from client to client. There are clients which have E2EE enabled by default, clients which make it available, others that support it with a plugin and there are others that do not support E2EE.

    That’s no excuse to avoid XMPP. XMPP is an open standard, the key is choosing a good implementation.