I currently use Telegram for my friends and family, but have reluctantly come to the conclusion that the UK Government is either reaching agreement for backdoors with messaging services, or is trying its hardest to.

I’m also on Element/Matrix. Before I try to get my contacts to join me on there, should I be aware of any privacy issues or is that a good place to head?

  • Vinstaal0@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    10 hours ago

    There should be a difference between using Whatsapp while in a county with good privacy laws (like one of the EU member) or one without.

    As far as I know Meta only collects and abuses data it get’s from people where there are now laws in place to prevent it (so why wouldn’t they do it).

    We should normalise the audits on security and privacy that are done by proper accountants. It doesn’t help that a lot of people call bookkeepers accountants which isn’t correct, but a signature from an accountant (CPA/AA/RA or whatever) should have some impact to prove the services are secure or private.

    • Telorand@reddthat.com
      link
      fedilink
      English
      arrow-up
      3
      ·
      6 hours ago

      As far as I know Meta only collects and abuses data it get’s from people where there are now laws in place to prevent it (so why wouldn’t they do it).

      Unfortunately, in practice, the laws don’t seem to mean much to the wealthy.

      Like other gigantic companies that have billions of dollars, it’s easier and more profitable to ask forgiveness than permission; paying legal fines that are 0.01% of their overall profits is just the cost of doing business. Zuck has been caught on multiple occasions skirting the law (see the most recent revelation of them surreptitiously leeching scores of books from Anna’s Archive and a previous one of partnering with Cambridge Analytica, for example).

      I’m all good with having companies submit to hostile financial audits, but I’m not sure how a CPA would be qualified to validate security or privacy. Code security audits should be done by cryptographic experts, and I think you would need both.

      Perhaps one day, we’ll have Certified Public Cryptographers that have a fiduciary duty to ensure people are secure or private.