Spyke

Replies

Comment on

til about manjaro

Reply in thread

The "internal struggle" was actually related to the rest and (hopefully) sorted out the other issues.

The tl;dr is that Manjaro was setup as a company with one owner who often didn't do what he was supposed to and no one else had access to do it. This caused issues like the SSL stuff but also other things. Obviously this made quite some volunteers leave over time, but as the distro itself is actually quite nice also a bunch didn't want to give up that easily. Those pretty much gave that one person the choice to transfer the distro to a new to-be-made non-profit (leaving only the commercial activities in the company) or they would leave (and likely fork it or something). He agreed and they're now in the legal process of setting up the non-profit, where important things will not be in the hands of a single person.

So all with all it was a bit messy, but it seems they got it sorted out now. That should also prevent issues like they've seen in the past. So with that I wouldn't recommend against the distro. I still have it on some secundairy systems, where my main one (I need to say this naturally) got switched to run Arch (btw).

You can read more here: https://forum.manjaro.org/t/manjaro-2-0-manifesto/186171

Comment on

til about manjaro

Reply in thread

Outside of what Hamsda said (to which I've added some context), the thing with Manjaro is also that it's target is easy usage which attracts beginners. Now that isn't bad per se (it was my first distro too, and I still run it on some machines. I'm not a hater) but it does become a thing when those people go to Arch-related spaces (like the Arch forum or the AUR comment section) asking Arch-people for help.

For one, Manjaro isn't Arch. It may be based on it, but it also has it's differences. It's better to ask on the Manjaro forums. Why some Manjaro users go bother the Arch forums I never understood. The Manjaro forum is very helpful, quick to react, and more appropiate. No reason to divert really...

And secondary, Arch is a distro aimed at more advanced users and has a "know the basics, read the documentation, understand it, and try stuff yourself. And if you thén still don't know you can ask". Since Manjaro attracts beginners, the questions they ask are often not only about a different distro, but on the level Arch expects you to be able to figure it out yourself making it rather a nuicance (after all, they're asking beginner questions in a space for advanced users). Manjaro users doing that somewhat regularily gave it a bad reputation.

Comment on

People who dress "nicely" to travel through airports, why?

I never understood why not. Dressing up "nicely" doesn't need to be uncomfortable at all. If the clothes fit well and are suitable for the occasion and location you can be comfortable and be dressed nicely.

What I never understood is people going out in pjama's or sportwear while acting like those are the only comfy clothes in the world and the rest of the people are making themselves have a worse time. Be it at airports/planes or elsewhere. Putting on decent pants take 2 seconds and can be just as comfy, so time and comfort aren't really much of an excuse. People should invest in good basics for day to day use, you'll earn it back in daily comfort.

But also, some people simply enjoy looking a certain way. Even for less comfortable clothes, that enjoyment can be bigger than the discomfort making it worth it to them. It's not always about having a reason.

Comment on

What wloud you do if you were to use windows 11

It depends why I need to use it.

To help someone on their Windows computer with an otherwise unrelated issue? I just help them. Pushing Linux unasked all the time just pushes people away. Better keep it for when that is a relevant answer to their problem.

If my boss decides Linux is no longer an option? I would fiercly contest it, but if that's to no avail I would seriously consider switching jobs. Even outside worries about loosing sovereignity I simply won't be very happy working on Windows every day.

I see no reason of this happening at my personal devices. If something doesn't run on Linux I just don't use it, same for hardware that's incompatible with it. Worked well for years now, never felt like I missed out much.

tes

Comment on

The Oblivion OST is burned into my brain forever (appreciation post)

I agree. Every time I hear any of the tracks from Oblivion's OST I feel nostalgic in all the right ways. The tracks are memorable and noticable without taking over. And it manages to do so for nearly every track on the OST. Harvest Dawn is indeed very iconic in there.

Morrowind's OST is a close second tho. The theme (Nerevar Rising) is as classic, even stronger than Oblivion's theme (Reign Of The Septims). And a few of the other tracks equally so. Especially Peaceful Waters, Caprice, and The Road Most Travelled are on par to Oblivion if not better. But the rest of the tracks, while beautiful, somehow never hit me as strongly as the Oblivion ones do.

Skyrim's OST is beautiful but so atmopheric it can go unnoticed as part of the general feel at times. I feel I didn't truely appriciate them until I listened to it outside the game, which was not an issue with the previous two games. Other games have some good music, but it also never hit me as hard. I guess the sung version of "The Dawn Will Come" in Dragon Age: Inquisition (the one you hear in-game between Haven and Skyhold, not the OST version) is one of the most memorable ones to come to mind, together with the Dragon Age: Origins theme song. But again, other tracks aren't nearly as iconic.

privacy

Comment on

Signal is Private. Why do people think so?

Well outside of the general open source and E2EE stuff, there are a few more things.

They're under a non-profit foundation and charity to which donating is tax-deducatble. That means they have to publicice their financial numbers. Selling data would generate a sudden revenue, which would draw attention.

They also regularily do external audits, both from external audit organisations as individuals. This list was made in august 2022, you can likely find a newer list somewhere. I just did a quick search for you. https://community.signalusers.org/t/overview-of-third-party-security-audits/13243

Signal also runs perfectly fine without anything Google btw. It uses PlayServices only if you have it on your phone (otherwise it just uses WebSockets), as it preserves battery life. However, it doesn't actually send data to Google over PlayServices. Instead it sends an empty notification, which wakes the phone and is recognised by Signal as a trigger to make it connect to Signal servers to grab data directly from there. If you wish, you can check this in the code yourself. I guess you may also be able to confirm this looking at network traffic from and to your phone.

Also a note on the E2EE. Another important thing is that not only the message is encrypted, but also the metadata. Unlike most other chatapps like WhatsApp; who knows where you are, who you talk to, how often, etc. You could theoretically also check this by checking outgoing traffic if you wish.

This also means that unless they somehow secretly have a copy of your private key, there is no data for them to sell anyways. The fact that even in court they've didn't have data to show, them passing many external audits without this being a point (sometimes issues are found, which is normal. If audits are always perfect I'd be more warry. But never on this point afaik), and that nothing in the code nor internet traffic points to them possibly having this, makes me not that worried about the idea that they secretly got a copy of peoples private keys.

So overal while it's perhaps technically possible they secretly run something else on their server and build a back door to read your messages, they are many things that show they don't, and literally nothing that would say they do. And neither does there seem to be any reason why, since they can't sell it nor give it in court. So unless you believe they have some evil bigger plan, I don't see the reason to doubt.

And a little note. Privacy people can be crazy, and I say that in a positive way! If you can check it, people no doubt have, and issues would've been found. Yet many people deep into it still vouch for it. That says something. And the less crazy people profit of this. This is similar to why many big FOSS projects are considered safe even if you didn't check all code yourself. And before you say "but if everyone thinks like that", realise that the craziest don't trust other people either. While smaller projects could hide perhaps, the real big/famous projects like Signal, Linux, LibreOffice, etc would fall trough as soon as they start doing shit.

Comment on

YouTube tests disabling videos for people using ad blockers

I actually used to have YT Premium because I'm a strong believer that nothing is free, so you either pay with data or money (on anything slightly commercial, not counting FOSS projects made as hobby or under foundations etc. as things get more complex then. But even then I pay/donate for some stuff in the same way of reasoning).

Yet I cancled the YT Premium subscription. Simply for one reason, privacy. I don't mind paying, but then I don't want just no adds, I also want no tracking. I pay with money, so I don't want to pay with data as well having a whole profile made.

Switched to NewPipe with sponsorblock on phone and TV and FreeTube on PC. Got a redirect extension in FireFox automatically sending YT videos to either Invidious or Pipe.

Comment on

Introducing the Proton Drive Windows app

Reply in thread

Article says:

We’re also beginning the beta for our upcoming macOS desktop app for Proton Drive. [...] Once the macOS app is released, we’ll also work on our planned Linux version.

Based on Proton's trackrecord in development times I'ld say a far future, but I must admit they've been making meters lately when it comes to releasing stuff. It may be sooner than expected (or it might take years, we'd have to wait and see).

Comment on

Thoughts on this Reddit post claiming 'Lemmy doesn't care about privacy'?

Well, while everything tarketed to Europeans (having EU domains is enough) should follow GDPR including the right to be forgotten, the whole issue is a bit more complex than most people seem to think.

For one, things not marketed to EU citizen don't count. And the owner of a website, this case the hoster of an instance, is responsible for this. Not the software they use (Lemmy). I don't think Lemmy tracks you specifically, as the code is open source and people likely would've noticed that by now. But servers could theoretically. That's why you need to choose a server you trust, or host your own.

An instance aimed at USA people hosted in the USA doesn't need to be GDPR compliant while a German one hosten in Germany would. An instance aimed at the world hosted in the USA also would, but likely breaks GDPR simply by being hosted in the USA. That's part of why big social media need EU servers.

A federated system is not in one place, and another issue is that while deletion requests could be send (and Lemmy supports this accourding to their website), it can't be as easily enforced to be followed by third parties. Of which, there are a lot in a decentral place.

Think of this: If I post something on Reddit, it get's reposted to 4chan, then I remove my original post, then it's still on 4chan. I could ask them to remove it, but that would likely be declined. Since 4chan has little to do with the EU and it's citizen, and doesn't actively market itself, they have little to do with the GDPR. At best you could make a copyright based claim, but that'll change it into a whole other topic.

Federated systems similarily take eachothers content. It's important to note that generally Federated networks don't push their content to other instances. Instead, other instances grab them from each other. How often has federation not gone smoothly causing deleted Mastodon posts to still show up on otger instances because they grabbed the post but not the deletion request (I've seen it happen multiple times already).

The right to be forgotten forces them to make it anonymous and untracable upon request, but not to delete every word you ever typed. Anonymising your account and deleting traceble info only would be enough. That means, if the server you requested to deletes their part + send a request to third parties they deliberatly send info to themselves, they did their job as far as law is concerned.

Any third party that grabbed the info by themselves, would require you to send a new request to them. Considering federation works by grabbing other instances, not by pushing your instance to others, any federated post that still has your old info could still be up if changes or deletion requests haven't been processed.

So is Lemmy bad for privacy by default? Not anymore than the rest of the web, as long as you understand that the whole point of decentral systems mean it's not one place. Best to always keep in mind that everything on the internet is forever and public, even if you delete it or use filters on who can see it, as you can never ensure no one copies it and post it elsewhere.

Comment on

*Permanently Deleted*

They said it will be able to connect with Mastodon, so there is zero need imho. I guess it's more aimed at the casual user who doesn't care much about data collection.

What I wonder more tho, how is Meta planning on not getting blocked by most Mastodon servers out of fear they'll go grab all data possible from any server they federate with? Most Mastodon users aren't exactly pro-Meta and pro-give all your data away...

privacy

Comment on

Standard notes: what about don’t put all your eggs in one basket rule?

Average Joe wants an easy all-in-one solution. That's what Google, Apple and Microsoft offer. An ecosystem. If you want to fight that, you need to be able to offer that. So that's what Proton is doing.

Of course it's better to have it seperated. And the security and privacy nerds will likely keep doing that anyways. But Average Joe doesn't want to take a hassle and rather looses privacy than do that.

Issue is, things are only as secure as the least secure point. Average Joe using Google and Microsoft means your data also goes there when interacting. When Average Joe is swayed by a place that is privacy-friendly ánd convinient, it makes your weakest link also stronger.

Meanwhile, Average Joe is also more save then when he was using Google or Microsoft services. Even when he would be less save than if he had his stuff seperated.

It helps everyone.

With that in mind, I applaud it. But I won't use it. I use Proton for mail, Joplin for notes (encrypting them in Joplin and syncing with NextCloud), and my passwords are also elsewhere than ProtonPass.

Comment on

so, which Big Tech company do you think is going to shit the bed next and popularize its Fediverse/FOSS equivalent in the process?

Well some Discord channels are already synchronising their content with Matrix, using the room feature to mimic the channel structure. OpenStreetMaps does this for example. I wouldn't mind that normalising as at least, it stops me from needing to use Discord myself. But the fact it still synchronises back to Discord is, of course, not ideal. Small steps to the right direction I guess.

Replacement would be nice, but I mainly use it for some local communities which I expect will be the last to migrate. They barely got a start on Discord...

Comment on

Seriously, what's up with big sites literally dying as we speak?

Don't get me wrong, I'd love for them to die and for federated or privacy-conscious alternatives to take their place. But I don't think they're all dying that much.

While it is true that more people complain and leave for alternatives than before, long term it doesn't seem like the masses are really switching yet. I feel like people are becoming more aware of privacy, market-monopoly, and other related issues, but at the same time don't want to hand in convinience, pay money to stop it, nor move somewhere when the rest isn't there yet. We see a spike on alternative SNS like Lemmy and Mastodon around the time news regarding some drama with big SNS releases, but we also see many users leave the alternatives after a time and that they never left the first platform that had drama to start with. They're just used both to eventually return. It's generally only a specific crowd that really leaves for good to go elsewhere, but not the masses.

As for the many lay-offs lately. Don't forget that during COVID the sky was the limit for tech. They all predicted that after the time being locked in our houses doing everything remotely, we'd keep doing that, and they invested accourdingly. However, as the world opened up more that predictioned turned out wrong, causing them to have over-invested and needing to make budget cuts to fix their mistake.

Comment on

Overwhelmed a bit with fediverse redundancy.

Personally, I'm sticking to Lemmy and Mastodon for now. I like things seperated. Heck, I even have 3 different Mastodon accounts for different purposes.

I wasn't a fan wel YT and insta started doing short videos alla TikTok. I wasn't a fan of stories in my chat app. Etc etc.

Now I quit using most conventional SNS ages ago, and never used others. But I still feel the same way. Luckily, the good thing of decentralised stuff is that it uses the same protocol, and I can still interact with people who do want everything in one place and use kbin while I don't have to.

gaming

Comment on

The Elder Scrolls 6 Announcement Trailer is Officially Five Years Old

I just realised the other day, that with the common definition that retro is older than the last two generations, Skyrim's original release is retro as it was a PS3 game originally....

Arena released in 1994.
Daggerfall 2 years later in 1996.
Morrowind in 2002, 6 years later.
Then Oblivion came in 2006, 4 years.
Skyrim was 2011, 5 years.
Now 12 years later, all we got is a 5 year old trailer and Todd once telling us they where still thinking aboht the setting.
Just let that sink in...

Comment on

I like this significantly better than Mastodon

Reply in thread

If your issue with Mastodon was mainly the interface, maybe you could try using a third party app like Tusky. Mastodon's own app isn't great, but when using Tusky it's quite nice.

I was never a fan of Twitter, but I use Mastodon quite a bit. Both for following news and projects as for just posting random crap. I never used Reddit much either, only read when it would come up on an online search. But Lemmy so far has been nice, if not a bit silent. I've got good hope for it.

Comment on

1Password: Rolling out telemetry this summer

Small nuance:
"Later this summer, you’ll see the option to participate in our telemetry system and help improve 1Password. You don’t need to take any action right now, and we won’t collect any usage data without your awareness and consent first. Participation will be optional for Individual and Family plan customers. And at this time, our telemetry system won’t be rolled out to any team or business using 1Password."

Aka, it's an opt-in that you can simply not opt-in to and if you don't nothing changes and then it won't be used on you.