ScatmansWorld
kiwifarms.net
- Joined
- Oct 27, 2019
I think everyone deserves the right to associate and disassociate with whoever they wish on principle, and I'm sympathetic to the idea.
However, I also think normalizing any kind of internet ID system is a dangerous precedent that will more likely than not ruin the internet in the future.
So SITE only stores tokens that are useless if exposed, but what happens in a scenario where a trans or trans-alligned employee of 3RD PARTY decides to risk everything and leak the user IDs from SITE? Or what if the government decides SITE is totally a terrorist organization and forces 3RD PARTY to give them all the IDs of SITE for "national security"?
Road to hell, good intentions, etc.
However, I also think normalizing any kind of internet ID system is a dangerous precedent that will more likely than not ruin the internet in the future.
1. Register on SITE.
2. Forwarded to 3RD PARTY.
3. Data uploaded to 3RD PARTY.
4. Data processed, stored, handled, exclusively by 3RD PARTY.
5. 3RD PARTY asks you for consent to send specific information to SITE (in this instance, only Gender).
6. SITE stores an API token (looks like 'b594e335-ea8d-4a6f-969a-ab167a56eef5').
7. In the event of total data breach, hackers get meaningless tokens, F/M.
- This token means nothing on its own.
- This token has value to the 3RD PARTY.
- SITE can check this token against 3RD PARTY to ensure that no one registers twice.
So SITE only stores tokens that are useless if exposed, but what happens in a scenario where a trans or trans-alligned employee of 3RD PARTY decides to risk everything and leak the user IDs from SITE? Or what if the government decides SITE is totally a terrorist organization and forces 3RD PARTY to give them all the IDs of SITE for "national security"?
Road to hell, good intentions, etc.