• 0 Posts
  • 186 Comments
Joined 1 year ago
cake
Cake day: June 30th, 2023

help-circle














  • Even this method is overreach: who control the database?

    Journalist have a scoop on a US violation of civil rights? Well not if it is important to the CIA who slipped the PDF that was their evidence into the hash pool and had his phone silently rat him out as the one reporting.

    This hands ungodly power to those running that database. It’s blind, and it “only flags the bad things”. Which we all agree CSAM is bad, but I can easily ruin someone inconvenient to me if I was in that position by just ensuring some of his personal and unique photo get into the hash. It’s a one way process, so everyone would just believe definitively that this radical MLK guy is a horrible pedo because we got some images off his phone in a diner.






  • Honestly to avoid the immense botspam coming for small orgs, you need either a literal army of volunteers, or some kind of “realID” type check to verify they’re human, and I hate that concept immensely as well.

    Giant if, but if you could do a one way cryptographic check against an ID to verify its legitimate, without sending anything off the server elsewhere, then a forum could bind your current username to a state issued ID, at least until it’s reissued. And then you could at least reasonably think these users are human.

    But who wants to give that info to a stranger online. Even if the hash is unique to the site based on their own seed, the average person doesn’t understand that, and it feels like handing over your actual privacy.

    Setting aside that PCs don’t have NFC readers as a standard feature as well.

    Everything I think would be effectivd boils down though to needing to know that something exists in meatspace on the other end, and being able to use that to manage your bans. At least 10bux is just money, and not your ID.