soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Retailers Secretively Using #FaceRecognition to Spot “Persons of Interest” — Including For the Government
The grocery store chain #Wegmans , among other retailers, is using face recognition on its customers — and scanning their faces for resemblance not only to accused #shoplifters but also to people whose photos have been submitted to the company by law enforcement.
#personofinterest #privacy #facialrecognition #biometrics #security
https://www.aclu.org/news/privacy-technology/retailers-secretively-using-face-recognition
Uhff #Fediverse = Seeing your old post in #2026 - almost a year to the day from lack of anyone else dedicating to #caring for it's users more personally - we're too #alone and I'm not proud to be a #pioneer like this!...
Only providing one-way mass spaces with no-one personally driving their instance and space,...
urghhh... dry...
Thanks I guess - #HINT - a tech instance is not enough, we need humans answering / pushing / educating / warming up with the others ! Captains / people driving the ship forward socially else we just stay drifting with no pioneering / much less discovery / progress / just tech which gets rug pulled...
Humans hold their #values and can share them better than cold #computers!
We can't stay humanly cold / unlearned / just in text-modes...
Ouch #humanity.
My post I'm referring to is about Browsing the web and being watched / activities logged...
https://qoto.org/@freeschool/113811427866258022
(that post a bit unrelated to this post #Quote 💬 #MollyWhite
But I guess I'll see this post soon enough a year from now.... so here's the last! (also without human comment, or interaction from #Molly / @molly0xfff )
People are doing good work but more-personally we're not building OUR MASS - just a few specialists talking to the #MASS who are far from able to even reply sometimes...
#Communication ⬅️ #Pioneer needed #Job #JobOffer ?
and some #Data #Privacy #Security #MollyWhite
Proton VPN Warns of the Dangers of Michigan’s VPN Ban Bill
Age verification laws have become more dangerous to civilians as VPNs become increasingly targeted. Michigan is one example.
https://www.freezenet.ca/proton-vpn-warns-of-the-dangers-of-michigans-vpn-ban-bill/
#Censorship #News #Privacy #Security #AgeVerification #FreeSpeech #Michigan #ProtonVPN #VPN
I’m exploring a post-crypto/post-ledger direction for Proof-of-Interaction:
no identity, no global consensus, trust grounded in physical causality and local state, not signatures or blockchains.
Looking for a crypto / protocol nerd who enjoys questioning first principles and would be up for a deep technical/philosophical consult.
Not a pitch. Not a startup grind. Just serious thinking.
#postcrypto #postledger #cryptography #distributedSystems #security #protocols #systemsThinking #web3Beyond
Coywolf: Starlink updates Privacy Policy to allow AI model training with personal data. “The Elon Musk-owned (SpaceX) satellite internet company Starlink just updated its Privacy Policy to allow the use of customers’ personal information to train [its] machine learning or artificial intelligence models, including for third parties. The change in its policy is opt-in by default.”
https://rbfirehose.com/2026/01/18/coywolf-starlink-updates-privacy-policy-to-allow-ai-model-training-with-personal-data/Does anyone have good resources on [personal] key management? That is latest blog posts or books on the topic?
This is things like secure management and backup (SSS?), off-line/dedicated devices, managing many keys due to rotation, etc.
e.g. If you encrypt old/past keys, even with a secure key, and that key leaks, you need to know where all the encrypted data is to destroy/rewrite it with a new key, so you can't just keep tons of backups.
RE: https://mastodon.social/@eff/115907269906942708
It is AI integrations like these that have us concerned about the future of Florida, where a bill is being considered to require age verification for using a chatbot.
It is possible that Google could require you to verify your identity to use any Google service because of Gemini being there.
https://www.miamitech.club/oppose-sb-482/
#Privacy #AgeVerification #Security #Florida #Miami #AI #Tech
“It’s a reminder to people that email should be treated almost not quite public,” EFF’s Thorin Klosowski told The New York Times. Consider the company that runs it and law enforcement's access to it: "The more you put it in it, the more they’ll have access to.”
https://www.nytimes.com/2026/01/15/technology/personaltech/gmail-gemini-ai-email-inbox.html
Gizmodo: Signal’s Founder Turns His Attention to AI’s Privacy Problem. “The founder of Signal has been quietly working on a fully end-to-end encrypted, open-source AI chatbot designed to keep users’ conversations secret. In a series of blog posts, Moxie Marlinspike makes clear that while he is a fan of large language models, he’s uneasy about how little privacy most AI platforms […]
https://rbfirehose.com/2026/01/16/gizmodo-signals-founder-turns-his-attention-to-ais-privacy-problem/So, You’ve Hit an #Age Gate. What Now?
This blog also appears in our #AgeVerification Resource Hub: our one-stop shop for users seeking to understand what age-gating laws actually do, what’s at stake, how to protect yourself, and why @eff opposes all forms of age verification mandates. Head to EFF.org/Age to explore our resources and join us in the fight for a free, open, private, and yes—safe—internet.
#privacy #security #id
https://www.eff.org/deeplinks/2026/01/so-youve-hit-age-gate-what-now
Do you know how much data Google Chrome quietly collects about you? From your browsing history to device details, everything is logged. Here is how to lock your Chrome privacy settings in a few minutes. https://windowspost.com/chrome-privacy-settings/
#chrome #Google #privacy #Security #Howto #Tech #technology #GoogleChrome #PrivacyBrowser
🥳 Auto-Encrypt Localhost version 9.0.0 released
Bye bye, Windows.
• Windows is no longer supported as Microsoft is complicit in Israel’s genocide of the Palestinian people¹ and Small Technology Foundation² stands in solidarity with the Boycott, Divestment, and Sanctions (BDS) movement³. Windows is an ad-infested and surveillance-ridden dumpster fire of an operating system and, alongside supporting genocide, you are putting both yourself and others at risk by using it.
Enjoy!
💕
About Auto-Encrypt Localhost:
https://codeberg.org/small-tech/auto-encrypt-localhost#readme
Auto Encrypt Localhost is similar to the Go utility [mkcert](https://github.com/FiloSottile/mkcert/) but with the following important differences:
1. It’s written in pure JavaScript for Node.js.
2. It does not require certutil to be installed.
3. It uses a different technique to install its certificate authority in the system trust store of macOS.
4. It uses enterprise policies on all platforms to get Firefox to include its certificate authority from the system trust store.
5. In addition to its Command-Line Interface, it can be used programmatically to automatically handle local development certificate provisioning while creating your server.
Auto-Encrypt Localhost is licensed under AGPL version 3.0.
#AutoEncryptLocalhost #SmallTech #SmallWeb #localhost #TLS #SSL #certificates #web #security #dev #FOSS #israel #microsoft #BigTech #genocide #Palestine #StopIsrael #FreePalestine
¹ https://www.bdsmovement.net/microsoft
² https://small-tech.org/
³ https://www.bdsmovement.net/
Arti 1.9.0 released with SOCKS proxy dynamic port support, relay circuit data handling, and directory authority key certificates for Tor's Rust implementation. 🛠️
Progress on relays and onion services advances next-gen privacy infrastructure, though still experimental for production use. 🔒
🔗 https://blog.torproject.org/arti_1_9_0_released/
#TechNews #Privacy #Tor #OpenSource #Rust #Security #Anonymity #FOSS #Cybersecurity #DigitalRights #Internet #Linux #Censorship #Development #Networking #Arti #Mozilla
pcTattletale spyware founder Bryan Fleming pleads guilty to federal hacking and illegal surveillance software charges after HSI probe. 📱
The case highlights how stalkerware operators openly market non-consensual tracking, raising accountability gaps despite known privacy risks. ⚖️
#TechNews #Privacy #Security #Spyware #Data #Rights #Stalkerware #Law #Accountability #Surveillance #Tech #Cybersecurity #Justice #DigitalRights #Crime
California's DROP platform took effect Jan 1, letting residents submit one deletion request to 500+ registered data brokers. 🗑️
The Delete Act streamlines prior per-broker opt-outs, but brokers still keep first-party/public data amid privacy advocates' mixed reception. ⚖️
#TechNews #Privacy #Data #Security #California #Rights #Regulation #Policy #DigitalRights #Law #Accountability #Tech #Consumers #DeleteAct #Brokers #DROP #Broker
Telegram adds passkey support for secure, phishing-resistant logins across devices, replacing SMS verification codes. 🔐
Phone number requirement persists, raising ongoing privacy concerns around KYC compliance and account linking. 📱
#TechNews #Privacy #Security #Passkeys #Telegram #Data #Encryption #Rights #Accountability #DigitalRights #Messaging #Tech #FIDO #Cybersecurity #Freedom #Signal #Chat #KYC
MakeUseOf: I turned off these Google settings to improve privacy. “I use Google for almost everything. Search, email, maps, videos, documents, even my calendar. The biggest advantage here is convenience. I don’t have to create dozens of accounts and manage them separately. But it also means I’m giving way too much data to a single company. That’s not exactly a smart thing to do if you […]
https://rbfirehose.com/2026/01/13/makeuseof-i-turned-off-these-google-settings-to-improve-privacy/🚨 Alarming update: ICE gains ability to spy on every phone in neighborhoods via advanced surveillance tools, tracking devices block by block. Privacy at risk? Read more: https://www.wired.com/story/security-news-this-week-ice-can-now-spy-on-every-phone-in-your-neighborhood/ #PrivacyMatters #SurveillanceState #TechNews #Privacy #Security #Surveillance #Newz
The Register: How hackers are fighting back against ICE surveillance tech . “Clever hackers and digital privacy advocates are fighting back against the snooping activities of Kristi Noem’s masked agents. The Electronic Frontier Foundation (EFF) has rounded up several of these counter surveillance projects, and perhaps unsurprisingly many of these have to do with Flock, best known for its […]
https://rbfirehose.com/2026/01/12/the-register-how-hackers-are-fighting-back-against-ice-surveillance-tech/As I've already said, you can grant individual permissions to your contacts on your personal channel. But you can grant individual permissions to forum users on a forum channel just the same. You can have regular users. You can have users with certain extra privileges. You can use the permissions system to silence users without kicking and blocking them.
And you can use the permissions system to appoint extra forum admins/mods. You can grant contacts permission to administer your forum. Now, this requires for your channel to recognise visitors and their identities to see what permissions they shall have and to grant them these permissions. And this requires OpenWebAuth. So right now, you can only make forum members from Hubzilla, (streams), Forte, Friendica, Mitra and Tootik additional admins/mods. But you can.
(9/9)
#Long #LongPost #CWLong #CWLongPost #FediMeta #FediverseMeta #CWFediMeta #CWFediverseMeta #Fediverse #Hubzilla #Streams #(streams) #Forte #Privacy #Security #Permission #Permissions #Groups #FediGroups #FediverseGroups #PrivateGroups
Let's translate this to Mastodon again.
You know the toot visibility button, I guess. Let's assume it looks and works somewhat different. Especially the visibility options.
"Public" still exists. It does what it says on the button: It makes your toot public. Oh, and now, it also makes all replies public. There's no replying to your toot with a DM.
The other three don't exist.
Instead, as the second option, you have "Only me".
Right below, all your lists are listed up. You can pick one of them. You can send your toot to everyone on one specific list of yours and to only those on that list, all without having to mention them. Better yet: Only those on that list are permitted to see your toot. And only those on that list are permitted to see any reply to your toot. Killer feature: They can see each other's replies, and they can reply to each other.
Below that, all groups that you follow are listed up. Again, you can pick one of them. This will have the effect that your toot will go to the group, and it will be forwarded by the group to all its members, but it will not go to your followers unless they're also in that group.
Below that, there's "Custom selection". This opens another window with each one of your lists and each one of your followed accounts, each with a green "Allow" button and a red "Don't allow" button. Here, you can put together a choice of lists and single accounts whom to send your toot to and a choice of lists and single accounts whom not to send your toot to. Again, only those who receive the toot are also permitted to see it, and only them are permitted to see any of the replies, and no-one can ever change these permissions.
What sense this makes?
Imagine you have a list with a certain group of friends in it. One of them will soon celebrate their birthday, and you want to organise a birthday surprise for them. So you send a toot to that list with everyone in it, but without that person who'll soon celebrate their birthday so you won't ruin the surprise for them.
Or: Imagine you have lists according to which languages people speak. Like, you have a German list, and you have an English list. Then you can put together an audience for a German toot from lists and single followed users, but exclude the English list so that those who don't understand German anyway won't receive that toot.
By the way: This also covers DMs. And this means that DMs are actually private.
As Mastodon is right now, you can DM Alice, you can have a conversation with Alice, but Alice could mention Bob and pull him into the conversation. This also gives Bob the opportunity to read the whole thread because he has access to it now. Mastodon only defines to whom a message is sent, but not who is allowed to see it.
In this version of Mastodon, when you DM Alice, you only grant Alice permission to see your toot and everything else in the thread. Now, Alice can mention Bob all she wants, but she can't pull him into the thread. Bob won't even receive the toot with his mention in it. He is not permitted to see it. You have not granted him permission to see the start toot, and thus, you have not granted him permission to see any of the replies, including the one in which Alice mentions him. Alice cannot change any permissions in the thread. Neither can you, by the way. The moment you send the start toot, all permissions are permanently set in stone for the whole thread.
This also makes dogpiling by extra mentions in DMs impossible.
Also, this provides for very effective quote-post control. It isn't allowed to boost posts that aren't public, including replies. It isn't allowed either to Mastodon-style-quote, as in quote-post, posts that aren't public, including replies.
These DMs have another advantage of DMs on Mastodon-as-it-is-now: If you send a DM to Alice and Bob, Bob receives Alice's replies, and Alice receives Bob's replies, and the two can reply to one another.
Oh, by the way, there's another nifty button. A speech bubble. With this button, you can allow or disallow replies to your post. Mind you, again, this only works when you start a thread. You cannot allow or disallow replies to a reply that you post.
Now, how does Mastodon-as-it-is-now handle DMs from Hubzilla, (streams) and Forte? It sees them as Mastodon DMs, and it treats them like Mastodon DMs. The downside is, if I send a restricted-permission post to Alice on Mastodon and Bob on Mastodon, both perceive it as a Mastodon DM. Both can only reply to and converse with me. They can't see each other's replies, and they can't reply to each other.
(8/9)
#Long #LongPost #CWLong #CWLongPost #FediMeta #FediverseMeta #CWFediMeta #CWFediverseMeta #Fediverse #Hubzilla #Streams #(streams) #Forte #Privacy #Security #Permission #Permissions #ReplyControl
If Mastodon was like Hubzilla, you'd have the possibility to create permission templates which you can then assign to those whom you follow. (Hubzilla calls them "contact roles", by the way.)
Like, you could make one template for those whom you really trust. You grant all permissions in that template.
Then you could make one that's more privacy-oriented. You only grant permission to send you toots, fave and reply to your toots and send you DMs.
In theory, you could also make one for those whom you absolutely must follow, but whose toots you don't want. In this one, you only grant permission to fave and reply to your toots and send you DMs. This, however, only makes sense on something that works like Facebook, something like Hubzilla, where you can only confirm follow requests by also following back because connections are always mutual by default.
Then you could go to your list of followed accounts. And you could edit and configure them, one by one. You could choose which of these permission templates is assigned to them and thereby what you allow them to do. While you're already there, you could also, for example, add them to lists or remove them from lists.
There's one catch, though: If you grant a permission for your whole account, you automatically grant it to everyone whom you follow. You cannot forbid one of your followed something your account generally allows. So if you want to be able to choose whether someone is allowed to do something or not, you must not allow it for your whole account, and instead, you must allow it followed by followed.
(streams) and Forte make things a great deal easier than Hubzilla, by the way: They don't require such templates anymore. Instead, when you go edit a contact, you'll see one on-off switch for each permission, and you can turn each permission on or off right there, right then (provided it isn't inherited from the channel). You still have such templates, but they only serve to grant the same set of permissions to a whole lot of contacts without having to click single permissions on or off for all of them.
(7/9)
#Long #LongPost #CWLong #CWLongPost #FediMeta #FediverseMeta #CWFediMeta #CWFediverseMeta #Fediverse #Hubzilla #Streams #(streams) #Forte #Privacy #Security #Permission #Permissions
Translated to Mastodon again, for each of the above permissions, your account would have seven or eight choices whom to grant the corresponding permission:
**This translates to Mastodon badly. Basically, Friendica, Hubzilla, (streams) and Forte know three states of connection. Either a Mastodon follow request, that's a "contact". Or a mutual follower, that's a "confirmed contact" because it's listed on your connections page, and you have control over that connection. Or only you follow someone, that's a "confirmed contact", too, because, again, because it's listed on your connections page, and you have control over that connection. The concept of confirmed follower doesn't exist because confirming a connection request will automatically make it a mutual connection. Remember we aren't talking about Twitter followers and Twitter followed, but about Faceboook friends.
The choices on (streams) and Forte, translated to Mastodon, are:
I guess you already know the switch that hides your account from Google and other search engines and the switch that makes your account automatically accept follow requests.
You know that you can mention anyone out of the blue on Mastodon, regardless of whether they follow you or you follow them or not, and they're always notified? Imagine this being notified is optional. And off by default. On Hubzilla, both is the case.
Okay, so, next, you don't allow anyone on the internet to reply to your toots. But there's an option that "half-allows" this: Anyone on the internet can send replies to your toots, even if they don't have any Fediverse account at all. Now it comes: You have to approve these replies. You have a green button that you can click, and the reply becomes visible, and it's added to the thread to which it belongs. Before then, nobody can see the reply but you. You also have a red button, and when you click it, the reply is rejected and deleted.
There are two clear use-cases for this. One is when you want absolute control over who replies what to you. Then you don't allow anyone to reply to your toots, but you activate this option. When someone does reply, you can choose whether to let the reply through or delete it.
The other one is a use-case that doesn't work on Mastodon, namely when you want to run a Hubzilla channel as a fully public long-form blog with a target audience that isn't limited to the Fediverse, and you want everyone to be able to comment on your posts, even without having some Fediverse account and following you first, but you want to keep spam out.
Lastly, there's the option that if you don't allow everyone to see your images and other media at https://mastodon.social/@jasperb/media, these images and other media can still be seen attached to toots by those who are allowed to see the toots that they're attached to.
(6/9)
#Long #LongPost #CWLong #CWLongPost #FediMeta #FediverseMeta #CWFediMeta #CWFediverseMeta #Fediverse #Friendica #Hubzilla #Streams #(streams) #Forte #Privacy #Security #Permission #Permissions
Hubzilla's permission system works on three levels. In Mastospeak, the first level is your entire account.
The second level is everyone whom you follow, individually. Like, you can go to your list of followed accounts and click on them and configure them. Among other things, you can assign to them a set of permissions that, usually, you'll first define. You'll probably have multiple such sets of permissions.
(Yes, this completely leaves out those who only follow you, and whom you don't follow back. Such a thing does not exist on Friendica, Hubzilla, (streams) and Forte. That is, it does, but you don't have a list of these, and you can't configure these, because they can't do much anyway as long as you don't follow them.)
And the third level is each toot that is not a reply, and then that toot forces its own permissions hard upon all toots that reply to it. If you reply to someone else's toot, your toot will have the same permissions as the start toot with no way for you to change them.
Translated to Mastodon, Hubzilla offers the following permissions:
That said, some of these permissions don't make sense from a Mastodon point of view, namely those that handle what people can see when visiting your profile at https://mastodon.social/@jasperb. There would have be some way to identify them to grant them the permissions you've given them.
Hubzilla has such a way, as do (streams) and Forte. It's OpenWebAuth, a "magic sign-on" system created by the creator of these four for a Hubzilla fork that was backported to Hubzilla and inherited by (streams) and Forte. These three can recognise logins to grant guest permissions, and their logins can be recognised. There are a few more Fediverse applications whose logins can be recognised. This was actually also developed for Mastodon and ready to be merged in, but the patch was actually silently rejected.
(5/9)
#Long #LongPost #CWLong #CWLongPost #FediMeta #FediverseMeta #CWFediMeta #CWFediverseMeta #Fediverse #Friendica #Hubzilla #Streams #(streams) #Forte #Privacy #Security #Permission #Permissions
(1/3) I have the greatest sympathy and empathy in regards to #thehated one; he is correct about the compartmentalization aspect — always compartmentalize. Always diversify your portfolio of security and privacy tools. Yet his assumption and suggestive tone bother me quite a lot in this video, and all e-mail providers have the metadata issue because e-mail as a protocol is flawed garbage from the past, and Soatok has many times called it out — can't be made secure. #proton #privacy #security
Hackers are developing open-source tools like OUI-SPY and crowdsourced maps (deflock.me, alpr.watch) to detect and counter ICE's automated license plate readers and surveillance cameras. 🔍
These counter-surveillance efforts aim to protect communities from mass tracking, though legal risks remain. ⚖️
🔗 https://www.eff.org/deeplinks/2026/01/how-hackers-are-fighting-back-against-ice
#TechNews #Privacy #Surveillance #Data #Security #Rights #OpenSource #Policy #DigitalRights #Tech #Ethics #Freedom #Hackers #Hacking #ICE #USA #US #Trump #DonaldTrump
EFF warns new online age‑verification mandates risk expanding surveillance, censorship, and exclusion for adults and kids alike. 🪪
They’ve launched a resource hub to track these laws and defend privacy, anonymity, and free expression online. 📚
🔗 https://www.eff.org/deeplinks/2026/01/effecting-change-human-cost-online-age-verification
#TechNews #Privacy #Surveillance #Censorship #Data #Rights #Security #AI #Policy #Regulation #DigitalRights #FreeSpeech #Internet #USA #EFF #AgeVerification #Exclusion #Inclusion
Wegmans is now scanning shoppers’ faces, eyes, and voices in NYC stores—with no opt‑out or clear data deletion policy. 🛒
The grocery chain cites “security,” but privacy groups warn of lasting biometric risks and disproportionate impacts. ⚠️
#TechNews #Privacy #Surveillance #Data #Biometrics #AI #Security #Rights #Ethics #Accountability #Technology #Policy #DigitalRights #USA #BigData #Retail #US #NYC #NewYork #NewYorkCity #Wegmans
Ireland plans to lead an EU push for ID‑verified social media accounts under Tánaiste Simon Harris. 🇮🇪
The proposal aims to curb online abuse, bots, and disinformation—but may test privacy norms, anonymity rights, and platform accountability. ⚖️
🔗 https://extra.ie/2025/12/28/news/simon-harris-social-media-regulations
#TechNews #Privacy #Policy #DigitalRights #EU #AI #Security #Technology #Data #Regulation #SocialMedia #Accountability #Ethics #Democracy #Ireland #Law #Europe
WIRED - The Latest in Technology, Science, Culture and Business [Unofficial] » 🌐
@wired.com@web.brid.gy
Law enforcement has more tools than ever to track your movements and access your communications. Here’s how to protect your privacy if you plan to protest.
Age verification changed the internet in 2025 – here's what it means for your privacy in 2026
Digital rights groups say that age verification measures compromise privacy, weaken data security, and invite unprecedented levels of censorship
#surveillance #privacy #censorship #ageverification #socialmedia #security #cybersecurity #technology #tech
Tailscale state file encryption no longer enabled by default
https://tailscale.com/changelog
#HackerNews #Tailscale #TailscaleStateFile #Encryption #Security #Update #Changelog
New posts for 2026 will start next Wednesday. In the meantime, catch up on the latest newsletter from The Privacy Cloud 🔐☁️. #privacy #security #AI #tech
https://theprivacycloud.substack.com/p/december-2025-privacy-news-roundup
“It’s approaching a full-on existential crisis,” said Mujtaba Rahman, managing director for #Europe at political risk consultancy #Eurasia Group. “It could be far greater than #Russia invading #Ukraine because Russia is an adversary. Now, it’s the guarantor of European #security undermining European security.”
#Trump #MafiaState #imperialism #geopolitics #US #Greenland #Denmark #NATO #NewWorldOrder #law #NaturalResources #sovereignty #ClimateChange #theft #piracy #InternationalLaw