Live data from Hacker News

Your online identity is owned by your email provider (2019)

ctrl.blog

11–20 of 258 posts

Re: Your online identity is owned by your email provider (2019)

#11
post #7

State-funded email with E2EE. Every citizen gets an email address. You don't have to use it (and it will probably suck compared to competitors), but you'll have it as a permanent fallback address. And presumably it will come with some legal protections and due process.

State-funded, E2EE: Pick one

Re: Your online identity is owned by your email provider (2019)

#12
post #6

The problem with several of these email subscriptions is that they will reissue your email address to another if you leave them, with all the risks that entails. The answer is to buy and use your own domain or get someone else to do it.

This seems backwards. Most email providers won't reissue your login, while domain registrars will definitely resell your domain.

Re: Your online identity is owned by your email provider (2019)

#13
post #7

State-funded email with E2EE. Every citizen gets an email address. You don't have to use it (and it will probably suck compared to competitors), but you'll have it as a permanent fallback address. And presumably it will come with some legal protections and due process.

Alternatively, give everyone an assymmetric encryption key associated with you identity. To prove your identity, you sign a challenge with your private key, and the other party verifies it using your public key (which could itself be signed your government).

Although, for that to fully work,you would need international cooperation on a standard for that protocol.

Re: Your online identity is owned by your email provider (2019)

#15
post #5

> The only real solution is to rethink online identity and stop depending on email addresses. I think that is true, but it would have to be a better solution. Some groups heavily push for this reformation of online identity but most of them have in common that they want to strongly bind online identity to your offline one. That simply isn't desirable in many cases.

iirc online identity used to be tied to your public key signature ? Might be too technical for most population to use, but the ideal solution is already there I think ?

Some people will definitely lose their private key

Re: Your online identity is owned by your email provider (2019)

#16
And this is why, back in 2007, I registered my own domain, and signed up for then-free Google Apps for Your Domain (then GSuite, Google Workspaces, whatever they're calling it now). Earlier this year I moved my email to Fastmail, and I can move it elsewhere if I want to, with zero disruption or downtime.

I really wish email providers would make custom domains either the default, or a very obvious option when signing up. Google is already a domain registrar, and other providers could partner with one. Granted, this option would not be free (though Google could probably swing making it free; they just wouldn't let you use the domain for anything else unless you start paying for the registration), so that would reduce its desirability for most people, unfortunately.

(On the downside, I wish I could convert my GSuite account to a regular Google Account, because GSuite accounts are occasionally crippled in random ways, and now I'm not even using the email part of it anymore. But that's a separate complaint.)

Re: Your online identity is owned by your email provider (2019)

#17
post #7

State-funded email with E2EE. Every citizen gets an email address. You don't have to use it (and it will probably suck compared to competitors), but you'll have it as a permanent fallback address. And presumably it will come with some legal protections and due process.

Then conservatives win, sell off state assets to reduce government/patch a deficit and suddenly a private company is data mining anonymized emails for money again :(

Re: Your online identity is owned by your email provider (2019)

#18
"You can take some control over your own identity in the current email-based online ecosystem by renting a domain name"

Originally, the idea was that you owned a domain name. Gradually, domain registrars have moved this to the concept that you're just renting it from them. Although you can still transfer domains to another registrar.

I'd like to find a domain registrar whose contractual terms stated that you own your domain name, and they are contractually prohibited from cancelling it or revoking it without a court order. Basically, a contract that forbids what lawyers call "self-help".

Re: Your online identity is owned by your email provider (2019)

#19
post #13
post #7

State-funded email with E2EE. Every citizen gets an email address. You don't have to use it (and it will probably suck compared to competitors), but you'll have it as a permanent fallback address. And presumably it will come with some legal protections and due process.

Alternatively, give everyone an assymmetric encryption key associated with you identity. To prove your identity, you sign a challenge with your private key, and the other party verifies it using your public key (which could itself be signed your government). Although, for that to fully work,you would need international cooperation on a standard for that protocol.

Nah. Just have people generate their own keys. Then distribute a token to everyone, like registering to vote or NYC ID. Finally, have an official mixer like tornado cash that only works with these tokens. Ring signatures baby !

Now you distribute UBI, allow voting etc. And it is all pseudonymous.

That’s what we are building out at Intercoin.org/applications btw :)

Re: Your online identity is owned by your email provider (2019)

#20
post #11
post #7

State-funded email with E2EE. Every citizen gets an email address. You don't have to use it (and it will probably suck compared to competitors), but you'll have it as a permanent fallback address. And presumably it will come with some legal protections and due process.

State-funded, E2EE: Pick one

Also if you want good E2EE, it's not going to be email (at least not with current protocols). Especially if you want interoperability with the existing web.
Post reply on HN