Pronouns | he/him |
Datetime Format | RFC 3339 |
Fuck Pi Day. All my Tau Day homies hate Pi Day.
ActivityPub DMs are not encrypted between servers
It is insofar as TLS/SSL/HTTPS encryption is used in transit. That’s what I mean by encrypted in transit.
i could read anyone’s DMs to users on other servers
If you’re an administrator for (WordPress) ActivityPub server A, you can see all the DMs coming to and leaving from your server, yes. And they’re not encrypted at rest, so you can read them any time. But how would you see DMs going between server B and server C, when your server isn’t involved in the transaction?
Surprisingly, Reddit is NOT on the list.
If they’re slurping all these other sites, I highly doubt they’re not slurping Reddit, too, even if it’s not on the list.
Fediverse (likely ActivityPub - possibly DMs between servers)
They would have to hack the individual servers to get at the DMs, because they’re encrypted in transit. All the public stuff is trivial to scrape.
Paywall bypass: http://archive.today/2025.03.12-170136/https://www.404media.co/the-200-sites-an-ice-surveillance-contractor-is-monitoring/
It doesn’t appear to have any fediverse instances, unless you want to count Threads. It does have ProtonMail & Signal; I wonder what that actually means.
I don’t see as any worse, necessarily. For all I know, Saudi Arabia was previously buying the data from Niantic piecemeal.
Forbes, 2016: How Niantic Is Profiting Off Tracking Where You Go While Playing ‘Pokémon GO’
You’d have to fill out the paperwork coming and going. If You Deposit a Lot of Cash, Does Your Bank Report It to the Government?
Depositing $10,000 or more in cash means your bank or credit union will report it to the federal government. The $10,000 threshold was created as part of the Bank Secrecy Act, passed by Congress in 1970, and adjusted with the Patriot Act in 2002.
The law is an effort to curb money laundering and other illegal activities. The threshold also includes withdrawals of more than $10,000.
Not a likely scenario but still possible. If one is serious about not getting “doxxed at any cost,” consider Mullvad browser.
I guess you didn’t get satisfactory answers from your first post, but you still haven’t clarified what you actually mean by your question. All Lemmy servers run Lemmy, so in some senses of the term, they’re all roughly equally private, which is to say not very, because all posts & comments are publicly scrapable, except for private messages.
A community of privacy and FOSS enthusiasts, run by Lemmy’s developers
Mozilla has been going the wrong way for a long time now, as documented by jwz, who was the instigator for the formation of Mozilla 27 years ago.
- 2013-10-02 W3C green-lights adding DRM to the Web’s standards
- 2020-09-23 This is a pretty dire assessment of Mozilla
- 2022-01-06 Mozilla blinked
- 2023-12-29 Remember when Mozilla made a web browser?
- 2024-01-05 My dinosaur just threw up in its mouth a little
- 2024-06-20 Mozilla is an advertising company now
- 2024-06-22 Mozilla’s Original Sin
- 2024-10-03 Mozilla’s CEO doubles down on them being an advertising company now
Depending on your threat model, not very important. What are the chances that 1) someone will have hacked Mullvad’s server and installed a compromised version of the browser, and 2) you happen to download the compromised version before the hack is discovered and mitigated? Also, the signature and the package appear to be on the same server, so what’s necessarily going to stop the hacker from updating the signature to match their hacked package? [Edit: It’s a GPG signature, not a simple hash signature, so I guess that’s so not trivial after all.]
This for-profit company saying that I am not the product doesn’t necessarily make it so, and it doesn’t explain what is the product or service being sold and to whom. And just as their Firefox counterpart changed their terms yesterday, they could change theirs tomorrow.
Mozilla hasn’t been moving in promising directions lately. Mozilla’s CEO doubles down on them being an advertising company now
Edit to add: https://github.com/mozilla/bedrock/commit/d459addab846d8144b61939b7f4310eb80c5470e
This doesn’t bode well at all: https://www.thunderbird.net/en-US/about/
Thunderbird operates in a separate, for-profit subsidiary of the Mozilla Foundation.
A free mail client from a for-profit company? What’s the revenue model? Sounds like I must be the product somehow.
The Thunderbird for-profit entity, MZLA Technologies Corporation, is distinct from the Firefox for-profit entity, Mozilla Corporation, and both are wholly owned by the non-profit entity, Mozilla Foundation.
He says he wants free speech, but all he ever wanted was to replace the previous censorship and propaganda regime with his own.
I didn’t notice it being down. I always go here to pick a healthy server: https://status.d420.de/
Protests that upset the US federal government are serious business. Garden-variety privacy won’t do.
And I provided links to actual people you deny existence of who have been personally impacted.
You didn’t provide links; you provided one link, to Hasan’s hatchet job, which doesn’t even interview any supposed Uyghur victims. But even if you had, testimonies are not hard evidence, as we’ve seen from Yeonmi Park and Nayirah al-Ṣabaḥ. The testimonies of “defectors” from US “enemy” states often suss: What’s the deal with defectors?
The US propaganda machine’s “Uyghur genocide” psyop has been debunked six ways to Sunday already.
Chilling. The difference was like night and day.