Live data from Hacker News

How the UK's online safety bill threatens Matrix

matrix.org

121–130 of 165 posts

Re: How the UK's online safety bill threatens Matrix

#122
post #53

Earlier quoted context omitted.

GDPR is only tractable because 90% of companies don't implement it. In Germany thousands of companies illegally use Mailchimp for example.

I am curious what about Mailchimp make them illegal to use ? On the face of it they seem to have support for the required stuff: https://mailchimp.com/gdpr/

A US company can decalare themselves whatever they want, that doesn't make it legal in the EU. They don't get in trouble for saying this, EU companies are those that get in trouble when they believe the link you have provided.

Re: How the UK's online safety bill threatens Matrix

#123
post #72

Earlier quoted context omitted.

I was also curious, so I found this: https://edpb.europa.eu/news/national-news/2021/bavarian-dpa-... The core: ... transfers of personal data to the U.S.- were not lawful. So the problem is that an US company cannot be GDPR compliant, because that conflicts with US law. Which sucks for mailchimp but makes sense.

A US company can be compliant. They just have to host EU user data in the EU.

They would need to a have an independent legal entity in the EU on top of hosting data in the EU, perhaps only owning shares in that entity. The construct would need to be setup in a way that three letter agencies in the US (and courts) would have no way of forcing the US company to hand over data - not sure this is possible IANAL.

Re: How the UK's online safety bill threatens Matrix

#124

Earlier quoted context omitted.

It's the same with GDPR. When I worked for a large enterprise, we had a legal/compliance team of dozens of people and a huge outsourced legal budget. When I worked in the startup of my wife, it was me implementing GDPR compliance.

I'm not sure I understand. A large company has a whole team and a small start-up has one person assign the task? That sounds entirely reasonable.

The large company has a whole team with expertise to work on the task - they don't implement it but handle legal affairs and the process. It is implemented by hundres of employees all over the company. A small startup has one person without a clue (and I gave talks about GDPR).

Re: How the UK's online safety bill threatens Matrix

#125

Earlier quoted context omitted.

It's the same with GDPR. When I worked for a large enterprise, we had a legal/compliance team of dozens of people and a huge outsourced legal budget. When I worked in the startup of my wife, it was me implementing GDPR compliance.

But at least GDPR /is/ tractable to implement at small scale. Whereas for the OSB: if you run a smallish but popular chat/blog/forum/etc service, there literally isn’t a solution for moderation which isn’t fiendishly expensive, privacy invasive, or both. The legislation has clearly been dreamt up by folks saying “ah ha! if we threaten the Facebook UK executive mangement team with jailtime unless they do better at fil…

> The legislation has clearly been dreamt up by folks saying “ah ha! if we threaten the Facebook UK executive mangement team with jailtime unless they do better at filtering self-harm/CSAM/terrorism/etc then they will obviously get their house in order!”. Whereas in practice they crush their own UK-based startups instead. So frustrating.

Isn’t that exactly what the GDPR did? I know I pulled my apps for fear of fines and jailtime that might lead to the first country Im not allowed into.

Re: How the UK's online safety bill threatens Matrix

#126

Earlier quoted context omitted.

I like how you, with actual concrete real-world experiences you are sharing, are being downvoted by silent armchair enthusiasts who mostly just like GDPR because they get the sense that it’s vaguely bad for Facebook.

As a private citizen I like GDPR - even if Facebook will find ways around it (but I do not really care, I've left Facebook many years ago because of privacy concerns). As someone who implemented it in several companies, I don't like it because it hits smaller companies much harder than bigger ones, and because it tries to be technology agnostic it is quite fuzzy, compate to something like SOX or PCIDSS (which I also…

As both a private citizen, and one who implements it, I hate it. It’s increased regulation around a subject that I was not doing in the first place (I don’t care what you’re doing online, never tracked, etc) that only increased the cost of business. We need more competition, not less.

Re: How the UK's online safety bill threatens Matrix

#127

Earlier quoted context omitted.

It's the same with GDPR. When I worked for a large enterprise, we had a legal/compliance team of dozens of people and a huge outsourced legal budget. When I worked in the startup of my wife, it was me implementing GDPR compliance.

I'm not sure I understand. A large company has a whole team and a small start-up has one person assign the task? That sounds entirely reasonable.

the small startup has to pay for that person that didn’t exist before, which reduces the resources available to them. it’s pretty clear why it’s a detriment to startups but not to large tech.

Re: How the UK's online safety bill threatens Matrix

#128

> Whilst we sympathise with the government’s desire to show action in this space and to do something about children’s safety (everyone’s safety really), we cannot possibly agree with the methods. Respectfully, stop sympathising with authoritarians who want to take away your freedom. They are not good people. Good people aren't nosey. Good people don't deprive others of liberty. Neither do they class a whole group (In…

If I could give you 1000 upvotes, no 1000000, I would. This is a comment that should be spread far and wide.

Re: How the UK's online safety bill threatens Matrix

#129

Earlier quoted context omitted.

But at least GDPR /is/ tractable to implement at small scale. Whereas for the OSB: if you run a smallish but popular chat/blog/forum/etc service, there literally isn’t a solution for moderation which isn’t fiendishly expensive, privacy invasive, or both. The legislation has clearly been dreamt up by folks saying “ah ha! if we threaten the Facebook UK executive mangement team with jailtime unless they do better at fil…

> The legislation has clearly been dreamt up by folks saying “ah ha! if we threaten the Facebook UK executive mangement team with jailtime unless they do better at filtering self-harm/CSAM/terrorism/etc then they will obviously get their house in order!”. Whereas in practice they crush their own UK-based startups instead. So frustrating. Isn’t that exactly what the GDPR did? I know I pulled my apps for fear of fines…

GDPR is pretty harmless and relatively easy to implement I think

Re: How the UK's online safety bill threatens Matrix

#130

Earlier quoted context omitted.

The cameras tracking everything everywhere in UK would say that it's long been an authoritarian country. Authoritarianism is a sliding scale. From what I can gather, lots of humans that have any political pull at all tend to be authoritarian (against the kinds of people they don't like, of course).

Most cameras in the UK (I think around 95% even) are private. Not sure why you think the UK is an authoritarian regime. Check any ranking and it is one of the freest countries out there (Heritage Ranking, for example: https://www.heritage.org/index/ranking )

They will become increasingly networked via services like Amazon Ring and it may as well be a government surveillance network.
Post reply on HN