Föderation EN Fr 12.07.2024 21:36:34 How to not leak customer data: - Donβt collect them |
Föderation EN Sa 13.07.2024 01:19:07 @drahardja π― I've been saying that in addition to holding business and governments accountable for data leaks, we must implement regulations that prevent collecting information not necessary to get the job done. I realize, even this is an idealistic dream, but it's what we should work towards. |
Föderation EN Sa 13.07.2024 11:54:57 @jaykass @drahardja What country are you in? Many countries already have that restriction and rules like not storing payment details (the payment processor issues a token valid only for the originator) The problem is that the sort of information you need for a service (email, payment and possibly physical address) is exactly the sort of information that hackers want. |
Föderation EN Sa 13.07.2024 16:19:02 |
Föderation EN Sa 13.07.2024 16:19:42 @jaykass @drahardja I thought some states had quite tough data protection laws ? |
Föderation EN Sa 13.07.2024 16:22:40 @PhilipKing @drahardja possibly. But it sure seems like there is a lot of unnecessary information still collected. Though you have a great point that much of the core data to do business is exactly what hackers find valuable. |
Föderation EN So 14.07.2024 21:38:41 @jaykass @drahardja The U.S. government has this as an internal standard and requirement (data minimization). The private sector doesnβt really. |
Föderation EN So 14.07.2024 22:14:12 @MisuseCase @jaykass @drahardja As long as the benefit for overgathering outweighs the penalty, companies will keep overgathering. We need companies that breach data to be held actually responsible - liquidated if need be - so other companies learn not to leak data. |
Föderation EN So 14.07.2024 22:19:37 @dascandy @jaykass @drahardja IMO we need to outlaw ad tracking and data brokering, those things make data monetizable. |
Föderation EN Sa 13.07.2024 01:50:32 @drahardja but what if you invent, at astronomical expense, a perfect cyber Fort Knox which no one can break into because an employee clicked a link saying "FREE CANDY" which then directed them to a website where they put in their login details and MFA code? |
Föderation EN Sa 13.07.2024 19:12:57 @beans_please @drahardja Let's not just blame foolish employees. Remember that there are organizations out there who will hold a million dollars in one hand and hold a gun to your child's head with the other while they "request" access to the data. |
Föderation EN Sa 13.07.2024 03:04:13 @drahardja thank you for your TED Talk |
Föderation EN Sa 13.07.2024 03:08:07 @drahardja easier said than done. It's legislated for some industries to collect information, and, in Australia, they must keep it for a certain amount of years π The data retention legislation has already been blamed for the sheer amount of data stolen |
Föderation EN Sa 13.07.2024 03:23:55 @sortius Right. The fact that governments have given the responsibility of surveillance to telcos is a *huge* problem. |
Föderation EN Sa 13.07.2024 03:28:55 @drahardja far far worse than they want to let on. I'm guessing a lot of breaches would be much less impactful if there was less emphasis on collecting and retaining information, and more on revokable trust systems between citizens and companies |
Föderation EN Sa 13.07.2024 03:48:28 @drahardja @bastardsheep huge if true |
Föderation EN Sa 13.07.2024 04:20:31 @drahardja don't hold data if you can't secure it |
Föderation EN Sa 13.07.2024 09:23:57 |
Föderation EN Sa 13.07.2024 10:22:59 @drahardja That's no fun. Also less profitable. |
Föderation EN Sa 13.07.2024 12:26:31 @drahardja impossible level of wisdom π |
Föderation EN Sa 13.07.2024 13:19:58 @drahardja |
Föderation EN Sa 13.07.2024 13:21:08 @drahardja Literally illegal in half the world now. |
Föderation · So 14.07.2024 02:42:33 |
Föderation · So 14.07.2024 09:59:28 Nitpick
|
Föderation EN So 14.07.2024 16:51:45 |
Föderation EN So 14.07.2024 16:57:37 @drahardja So like "Zero Trust" but for customer data collection, so "Zero Data" |
Föderation EN So 14.07.2024 17:21:36 @drahardja Retailers should not need your credit card information at all. http://the5thc.blogspot.com/2022/04/how-to-make-credit-card-purchases-safer.html |
Föderation · So 14.07.2024 17:31:12 @drahardja@sfba.social b-b-b-but how do we send out personalized intimate ads otherwise? |
Föderation EN So 14.07.2024 18:04:39 @drahardja |
Föderation EN So 14.07.2024 22:07:28 @drahardja Have you tried publishing any app on any app store? Half the questions are unanswerable if you don't. |
Föderation EN Mo 15.07.2024 17:21:45 @drahardja You do business with some company online: why do they need your information, say, 5 years later? Should be a law: "dump info after 3 years' of no further business..." |
Föderation EN Mo 15.07.2024 17:24:50 @drahardja Cashier at Counter- Can I get your phone number? |
Föderation EN Mo 15.07.2024 19:35:28 @katmckatniss @drahardja Cashiers here: βCan I get your email address?β |
Föderation EN Mo 15.07.2024 18:12:27 @drahardja There are companies who literally have no value other than the data they're collecting. Those companies, if liquidated, would sell their data to the highest bidder and the problem would persist. We need to make holding data toxic, or data extremely short lived. Like it should self destruct after 48 hours. And any company caught selling data should have its assets frozen. Money, credit, real estate, crypto. Forfeit. |
Föderation EN Di 16.07.2024 02:05:26 We all need to own our own data, and they should pay us for using it. |
Föderation EN Di 16.07.2024 02:44:08 They should pay a fine for holding it. Something comparable to what they're asking copyright violators to pay, per item of PHI. |