To Jitsi admins:

– Add a privacy policy (or a link to it) to your landing page.
– Be aware of Google STUN servers in your configuration (see also github.com/jitsi/jitsi-meet/pu).
– Change the default text of the landing page since it may incorrectly state that Jitsi is fully encrypted.
– Try to deploy HTTP security headers, like a strict Content Security Policy.
– Keep your server software up-to-date (see also infosec-handbook.eu/as-wss/).
– Be nice to each other.

#jitsi

Zoom meetings aren’t actually end-to-end encrypted, despite misleading marketing on their website, in their security white paper, and in the user interface in their app theintercept.com/2020/03/31/zo by @yaelwrites and myself

MOSS launches COVID-19 Solutions Fund – The Mozilla Blog

Mozilla is announcing today the creation of a COVID-19 Solutions Fund as part of the Mozilla Open Source Support Program (MOSS).

blog.mozilla.org/blog/2020/03/

Just saw this on lobste.rs and #Fedora is a sponsor. #Libravatar is a federated avatar hosting solution. #foss #floss

libravatar.org/

Do not use zoom:

protonmail.com/blog/zoom-priva

And to all developers out there:
Stop using facebook sdk and other stupid stuff. Take care of your users!

#zoom #privacy #tracking #attention #facebook #sdk

The sooner that people who are thinking about replacing Zoom realize that the problem isn't one of software but of infrastructure, the better.

The reason Zoom works so well on a technical level is that they have a lot of infrastrutcture to support the downmixing of streams- including a ton of processing power, as well as very good bandwidth between their data centers.

You could build an equilvient program, but without the hardware and connectivity behind it, it won't be as good.

Before I'm misunderstood- I'm *not* suggesting that we throw up our hands and use Zoom.

Instead, I'm suggesting that we need to start realizing that simply building software isn't enough. Projects like Wikipedia, OpenStreetMap and Signal work because they're backed with hardware and bandwidth.

If we want a Zoom replacement, we'll need to ensure there is money to pay for the necessary components to pay for its infrasturcture and ongoing maintence.

Privacy and protecting data is usually not much of a concern for SAAS providers - Zoom here shares your data on Facebook, even if you don't have a facebook account...
#selfhosting #onpremises
vice.com/en_us/article/k7e599/

Well Telegram is not great, I admit. But #Signal also has the same centralised surveillance system. SMS is the worst. There is no kind of encryption in SMS, and those unencrypted texts can stay in your cellular connection providers servers for years.
Btw if you want use #Telegram, use the F-droid version which is compiled from source.

invidio.us/watch?v=5FgEOchiDiA

Calling all teachers! LibreOffice is a great choice for schools and education – it's free and open source, compatible with Microsoft Office, and you don't have to worry about license fees, subscriptions or software audits. Learn more: blog.documentfoundation.org/bl

Hello world!

We're slowly making progress towards our first product. It's a standard 65% PCB with hotswap sockets. It's powered by the open source software QMK and it features a standard ISO-layout to fit as much people as possible.

Our goal is to make custom keyboards easy and available for everyone.

#MechanicalKeyboards

Regarding Jitsi Meet servers:
There is a recent trend to use Jitsi Meet, a JavaScript WebRTC application, for videoconferencing.

Please note that these video conferences aren't end-to-end encrypted. This means server-side parties can monitor your activity. If you want to use Jitsi hosted by others, look for a comprehensive privacy policy as always.

There could be additional legal requirements if you want to use third-party Jitsi servers for school or work.

#jitsi #privacy #security #infosec

Whatever your Android app for accessing the Fediverse, you can use #NitterizeMe for sharing links. It will help you to transform Twitter, YouTube or Instagram links into a URL of a front-end instance (Nitter, Invidious, Bibliogram) that respects the user's privacy.
As a bonus, it will resolve redirects without visiting the site.

Available on F-Droid: f-droid.org/packages/app.fedil

Show more
Mastodon @ UMU

The social network of the future: No ads, no corporate surveillance, ethical design, and decentralization! Own your data with Mastodon!