Show Navigation
Notices by :abunhdhappyhop: :abunhdhappy: :abunhdhop: :abunhd: :abunhdhappyhop: :abunhdhappy: (kaniini@pleroma.site), page 50
-
the defaults in building software in this space should focus on user safety.
when people say that having a design stance in favour of user safety compromises "free speech" -- tell them to shut the hell up, because free speech is about open publishing, which is not compromised by this design at all.
you don't get a free audience for your bullshit, and software which forces people to endure crap they don't want to endure just to give people a free audience is user-hostile.
-
tired: setting up matrix
wired: begging somebody else to solve this problem for you
-
@riking i know that part. what i'm saying is, since this person has quit being in the net-abuse community, he has gone on to be part of kiwifarms. it's quite strange.
-
@opal :D :D :D :D :D :D :D :D :D :D :D :D
-
i think my solution to my matrix problem is "let someone else deal with it"
-
i would ask how someone goes from being heavily involved in mitigating net-abuse to being a kiwifarms user, but i don't think i want to know the answer
-
whenever i get disappointed with activitypub, i think, "it could be worse, at least it's not matrix"
-
Screenshot_20190713_171152.png…
-
this is #matrix everyone
Screenshot_20190713_162727.png…
-
@mario no. the system that we are gravitating toward does less fetches overall. but when i refer to metadata, I refer to things like signatures, and low-hanging social graph nodes.
-
@schmittlauch
except for one thing: you forget about JSON ActivityStreams 1.0, which was the predecessor to all of this malarkey.
trust me, a lot of the linked data folks are spooks.
-
@yaaps @maloki @cwebber
LiCE is actually quite boring compared to how things have advanced.
the thing is, we're sitting down and designing this stuff, but it's like, we're still at the point where it's like "publish a paper here, have others review it."
*but* we are getting to the point where we can start prototyping across projects. that's when the real fun begins!
-
@succfemboi @schmittlauch
that's what i keep saying, it's fucking irradiated!
-
@schmittlauch
and this is provable. look at the dumps you get from the services when you request your own data. it's all ActivityStreams 2.0!
now, AS2 is a *great* serialization format. but at the same time, we would be absolutely ignorant to ignore the background on why the proprietary social graphs are standardized and designed the way they are.
-
@schmittlauch
you haven't hit true enlightenment yet.
so. you bring up PRISM. lets talk about PRISM.
what's PRISM? PRISM is voluntary (well, by court order really) data sharing with NSA (and partners).
but how does PRISM work? wait for it... you'll love the answer! JSON-LD ACTIVITYSTREAMS 2.0!!!
we're building decentralized social networking tools with THEIR technology. we're playing on THEIR turf.
-
anyway time to do some writing. i might do a stream tonight as well.
-
@schmittlauch
and this is of course outside of the absolutely horrifically broken security model that is `as:Public`. it was entirely irresponsible to include `as:Public` security label in something that also explicitly makes security non-normative.
-
@schmittlauch
like, here's the thing.
this post, this thread, it has a LOT of metadata:
- the post itself (a JSON-LD document)
- a reference to my account actor (itself a JSON-LD document)
- stable globally unique ID for the post itself
- stable globally unique ID for the transaction which made the post
and on Mastodon it also has:
- an LD Signature
actors then have even more metadata:
- friends collection
- followers collection
- likes collection
- posts collection
now, to see the problem of why metadata hygiene is important we have to take a step back and look at stuff like NSA XKeyScore.
NSA XKeyScore and systems like it, the secret to their power is that they leverage the underlying links in the metadata to build actionable intelligence.
systems like XKeyScore LOVE JSON-LD. JSON-LD is a wet dream to those guys at NSA. here's why. if you query our post in XKeyScore, you will automatically get all of these links resolved for you, in real time. it's all there. it's all there with collected signatures so it can be verified.
we need to build systems that are resilient to data mining, not systems that make it as easy as possible. building on a JSON-LD architecture (and the true vision of ActivityPub is one of being an application on LDP, leveraging technology like LDN and so on) makes it trivial to data mine. this data mining will be harmful, either in the private sector (doxing) or in the public sector (FBI raid, drone strike, whatever).
i have told people who were too vulnerable to explicitly stay away from the fediverse because the technology will screw them.
-
@schmittlauch
yes. once the LD worms eat into your brain, you stop thinking about the leakage consequences, because LD benefits from the leakages. this is Really Bad in a social space.