Looking forward to end-to-end encryption in Mastodon if for no other reason the "aha! Mastodon's DMs are not really private" semi-bogus statement will finally be over.

Yes, it's true. Yes, it's a legitimate concern.

But:

1. Other sites and services (Twitter, FB, etc.) *also* have unencrypted DMs.
2. Mastodon devs are working on it.
3. Relatedly: Even email is not encrypted.

You have to trust your admins *everywhere*. (And prefer using end-to-end encryption whenever possible.)

Follow

@garrett

But at least corporations are run by professionals which are often limited by some measures to ensure privacy and it's hard one would risk to be fired just to read a random conversation by strangers.

Instead on Mastodon the instances are managed by enthusiasts and are often not professional, but ideological and childish and I can definitely see them looking at private conversations.

Let's face it, most people just can't handle power responsibly.

@post Even for admins, it's not easy to look at other people's DMs on Mastodon.

But it's easy for Facebook employees to snoop, and they've been caught multiple times already.

forbes.com/sites/zakdoffman/20

And Elon Musk has been giving lots of access to private Twitter conversations to randos in the whole "Twitter Files" thing. This looks like it also includes access to DMs.

thepostmillennial.com/breaking

...Also, Twitter is a big monolithic target:

zdnet.com/article/twitter-says

@post Hence me saying that you have to trust your admins everywhere and DMs everywhere are not encrypted.

(And that end-to-end encryption is not just a good idea, but something that should be enabled by default everywhere.)

Having a big, corporate, monolithic network does not add security or privacy. Likewise, having a decentralized network doesn't magically fix these issues either.

Sign in to participate in the conversation
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.