Privacy

47261 readers
564 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
1
 
 

cross-posted from: https://lemmus.org/post/20954019

Reddit.

Source: Intelligence Committee’s annual Worldwide Threats hearing, question by Senator Ron Wyden.

Clip by Headquarters News.

2
 
 

Like, we all know they're listening , but can we provide proof?

My friend was complaining about all the new super surveillance that will be government required in cars after 2027, and I said to him dude you have a stock android, you use every AI slop feature, you use a smart TV on your unsecured network, and uses x every day. They have everything they could possibly need on him. Oh and he posts questionable things to fb daily under his real name.

3
 
 

Source: https://lists.debian.org/debian-devel/2026/03/msg00199.html

msg extract:

I want to share a public project I created in response to the ongoing discussions around OS-level age verification, age signaling, and related mechanisms in free software distributions:

https://github.com/AntiSurv/oss-anti-surveillance

The project exists to document, track, oppose, and prepare the removal of OS-level surveillance, classification, and policy-enforcement mechanisms in free software distributions.

This is not limited to one patch or one component. A visible implementation path is now emerging across multiple layers of the Linux stack, including provisioning flows, account metadata services, user records, and application-facing interfaces.

[...] The project’s position is explicit:

  • no OS-level age verification
  • no age signaling or age-bracket APIs
  • no client-side scanning or device-side inspection primitives
  • no passive downstream inheritance of such mechanisms
  • no geo-fencing users out of free software as a substitute for refusal

[...] The repository is intended as a public dossier and working reference point. It includes:

  • a front page and project statement
  • a manifesto
  • a tracker of issues, PRs, and MRs
  • a policy and law background file
  • a technical architecture map
  • a component-by-component target list
  • a downstream stripping and reversal strategy

The immediate goal is to keep the implementation path visible, linkable, and auditable so that these changes can be challenged upstream and, if they are merged anyway, stripped downstream rather than quietly inherited.

If useful, I would welcome corrections, additional evidence, and links to relevant upstream or downstream work that should be tracked.

Free software was written for users, not for surveillance.

- Martinx - ジェームズ


4
 
 

The Indian government has introduced countless rules supposedly to make smartphone safer. In reality, the rules will make phones less safe, and enable further mass surveillance and authoritarianism.

5
 
 

Hiya! I've been using for dnsforge.de as my private DNS on my android phone for a year or so, and I've noticed about once a day my phone tells me that the dns can't be reached, and about once a week I can't access something on my phone without turning off the private dns.

Is this normal? I am in the US and I know they're in Germany, but I wondered if this happens to everyone or if something is going on with my phone, and if there are other good options?

Thanks!

6
7
 
 

So I am the web admin for a non-profit that deals with and discusses private medical information. My country has laws around keeping this information safe which ironically I take more seriously than a lot of the public health services I personally interact with but I digress.

With all the push for increased surveillance lately and my trying to keep pushing people towards safer alternatives, the idea I've had for setting up a private forum is starting to become more important (maybe that and my yearning for the internet of old where people on the internet were people and not a high chance of being a bot). Currently the orgs main discussion is on Facebook (yep, don't get me started on that - I did not decide that, it was many years ago and I've always hated that it excluded people who don't use FB).

We have shared hosting for the website but this severely limits options. All the software that I can install on shared hosting through cpanel has resulted in ugly, difficult to use options or gotchas like not being able to make the community private (i.e. people will want to talk about their own medical situations with other group members, not the whole world).

So my next steps are to investigate what hosting infrastructure is secure and what software will best allow for a private and secure community. I was considering Discourse but this might be overkill and I don't know if posts and DMs can be encrypted, etc. Interested in suggestions for other forum or community software that is better.

I could get AWS for non-profits but it's Amazon and I don't trust them as far as I can kick them so I don't know how safe it would be to have or if encryption would help mitigate the Amazon factor.

My knowledge of these sorts of things is pretty outdated (I'm mostly just a web des).

8
 
 

i want to make this post so we can discuss the actual law text of the new "ECA digital" (basically a law that requires plataforms to have more responsibility in securing a safe youth on the internet)

There are dishonest arguments o both sides "you should'nt trust people who opose this law" "this law was made from moral panic"

while yes, the legal document requires "mechanisms that enable age apropriate experiences" (Art. 10. Os fornecedores de produtos ou serviços de tecnologia da informação direcionados a crianças e a adolescentes ou de acesso provável por eles deverão adotar mecanismos para proporcionar experiências adequadas à idade, nos termos deste Capítulo, respeitadas a autonomia progressiva e a diversidade de contextos socioeconômicos brasileiros.)

it also has some safeguards, like:

privacy by default "Art. 7º Os fornecedores de produtos ou serviços de tecnologia da informação direcionados a crianças e a adolescentes ou de acesso provável por eles deverão, desde a concepção de seus produtos e serviços, garantir, por padrão, a configuração no modelo mais protetivo disponível em relação à privacidade e à proteção de dados pessoais, considerados a autonomia e o desenvolvimento progressivo do indivíduo e justificado o melhor interesse da criança e do adolescente." no mass surveilance:

"§ 1º A regulamentação não poderá, em nenhuma hipótese, autorizar ou resultar na implantação de mecanismos de vigilância massiva, genérica ou indiscriminada, vedadas práticas contra os direitos fundamentais à liberdade de expressão, à privacidade, à proteção integral e ao tratamento diferenciado dos dados pessoais de crianças e de adolescentes, nos termos da Constituição Federal e das Leis nºs 8.069, de 13 de julho de 1990 (Estatuto da Criança e do Adolescente), e 13.709, de 14 de agosto de 2018 (Lei Geral de Proteção de Dados Pessoais)."

actual legal document (so we can have a informed discussion): https://www.planalto.gov.br/ccivil_03/_ato2023-2026/2025/Lei/L15211.htm

9
 
 

It's me. But what do I have to do to post? Looks like it needs a Community. I suppose I need to find one. Eventually create one.

10
12
What do you think about Onion Mail? (lemmy.frozeninferno.xyz)
submitted 1 week ago* (last edited 1 week ago) by Anon@lemmy.frozeninferno.xyz to c/privacy@lemmy.ml
 
 

Actually, there are two services with the same name, onionmail.org and onionmail.info. Anyway, what do you think about it/them?

Thanks in advance.

(Edit: free accounts on onionmail.org can only receive emails, while onionmail.info is pretty hard to use).

11
 
 

As the UK, Australia, and other countries appear to be introducing ID requirements and banning anonymous access, Russia reveals it has the ability to block VPN access.

12
13
14
15
 
 

The news first came in 2024, but it's been very quiet since.

I've been waiting this whole time to jettison WhatsApp from my phone.

Is it available only in some parts of the world? If so can I spoof it?

We know that adversarial interoperability works, so why have we not been able to make this work?

All else failing, are there any unofficial WhatsApp clients I can use to preserve my privacy?

16
17
18
 
 

Source: https://xcancel.com/vxunderground/status/2032600868005310638#m

Yeah, so basically the current prevailing schizo internet theory is that AI nerds have destroyed the internet and created infinite spam.

The advertisement goons are now incapable of determining who is a bot and who is an actual human. The advertisement goons no longer want to pay as much to social media networks.

Social media networks, in full blown panic of losing potential revenue, decided to lobby governments saying "we gotta protect the kids! ID everyone to protect the kids from pedophiles!".

The social media networks know this doesn't really protect kids. But, it does two things (and a third accidentally).

  1. They now can identify who is human and who is AI slop machine, or enough to appease the advertisement goons

  2. Advertising to children is a general no-no from politicians, or something, so with ID verification they can say with confidence they're not advertising to children because it's been ID verification. Basically, they can weed out the children and focus on advertising to adults

  3. The feds can now tell who is human and who is AI slop. This inadvertently helps them with tracking people and serving fresh daily dumps of propaganda, or whatever they want to do.

It's a win-win-win for advertisers, social media networks, the government, and any business which does data collections.

It fucks over everyone else.

Chat, I'm not going to lie to you. This is an extremely good conspiracy schizo theory and I unironically believe it.

19
20
 
 

The teacher opens an app on their phone, holds it up, and takes several photos of the room. Within seconds, the images travel to a cloud server, where a facial-recognition algorithm detects each student’s face, extracts it, and compares it against a database of biometric profiles. The app LRCO Paraná returns a list of names. Students identified in the photos are marked present; those the system does not find are marked absent.

For some students, a false absence is a bureaucratic irritation. For others, it could threaten their family’s access to welfare. In Brazil, eligibility for the Bolsa Família program depends in part on school attendance, and in Paraná such records are now largely generated by an algorithm.

21
 
 

Cross posted from: https://feddit.uk/post/45797826

In a sensational turn of events in the fight against Chat Control, a majority in the European Parliament voted today to end the untargeted mass scanning of private communications. In doing so, the Parliament firmly rejected the error-prone and unconstitutional surveillance practices of recent years. Pressure is now mounting on EU governments to respect the MEPs’ vote and bury untargeted mass surveillance in Europe once and for all.

Amendment 5, tabled by Pirate Party MEP Markéta Gregorová (Greens/EFA group) and adopted by a narrow margin, demands that any scanning of private communications must be strictly limited to individual users or groups of users suspected by a competent judicial authority of being linked to child sexual abuse. This aligns with the European Parliament’s 2023 mandate on the permanent Chat Control regulation (CSAR).

Based on today’s mandate, trilogue negotiations between the EU Parliament, the European Commission, and the Council of the EU are set to begin as early as tomorrow. Negotiations are taking place under extreme time pressure, as the current interim regulation authorizing Chat Control expires on April 6. The EU Commission and the vast majority of the EU Council—except for Italy—have so far categorically rejected any restrictions on untargeted mass scanning.

Digital freedom fighter Patrick Breyer (Pirate Party) commented on the historic vote:

“Today is a sensational victory for the countless citizens who made calls and sent emails to save their digital privacy of correspondence. Digital privacy is alive! Just as with our physical mail, the warrantless screening of our digital communications must remain taboo. EU governments must finally realize that true child protection requires secure apps (‘Security by Design’), the removal of illegal material at the source, and targeted investigations against suspects with a judicial warrant—not overreaching, pointless mass surveillance.”

The Hard Facts: Why Chat Control has failed spectacularly

Continue reading here - https://www.patrick-breyer.de/en/historic-chat-control-vote-in-the-eu-parliament-meps-vote-to-end-untargeted-mass-scanning-of-private-chats/

22
 
 

Noob here. This is probably the most repeated question, but I don't know the technical terms to make the appropiate digging online, and thought of asking humans before slopping my way around.

I don't trust my ISP or the government above it.

The ISP remotely manages the local network! So I installed a router of my own and my devices only to that one.

I would like to encrypt (?) anything that goes out of my own router, so my ISP doesn't evesdrop what I'm doing even if they want to (I know I know... if they really wanted, they could just send friends to my house).

Using Linux, Android GOS, and Pihole. They live under a "picked-up-from-a-shelf" router; and that router under theirs.

(I cannot get a different ISP)

Thanks

23
 
 

I'm a privacy focused individual, I run GrapheneOS on my phone & self-host as much of my tech stacks to avoid sharing info with. I'm looking for recommendations of smartwatches that align with the ideals of this community. What watch do you use? What do you recommend?

24
 
 

I'm wondering what would be necessary to build GrapheneOS releases yourself, and regularly update your phone from your own servers, with your builds. The server for apps.grapheneos.org should also be replaced. Has anyone done this?

The documentation for GrapheneOS has a section about how to reproduce builds:

https://grapheneos.org/build#reproducible-builds

But it would be more involved than that.

25
 
 

Using graphene is and cash app doesn't like "emulating" their app so is there an alternative? Id need something private that works on graphene, I don't have an actual credit card and need an alternative so that I can still get paid and buy stuff but looking into open source alternatives seems like going through an ocean where I'm not even sure what's good or what would even work on graphene. Any suggestions?

view more: next ›