Earlier quoted context omitted.
As Argento Dragone said in the Kotaku comments: "Face scanning is used to do ID verification on your device and then deleted immediately." "By immediately I mean we send it to k-ID who said that's what they do." "By that I mean they partnered with Persona to do the actual verification." "Persona clarified that by 'immediately' they mean 'after seven days.'" "And given their ties to Palantir, it's probably fine. You t…
> "By immediately I mean we send it to k-ID who said that's what they do." People have already validated this fyi. When k-ID was first added you could send a bogus age result to discord from your local device, which probably still works. There's no evidence your facial scans leave the device. > "By that I mean they partnered with Persona to do the actual verification." Which isn't true, it was a UK-only experiment be…
Discord probably still claims they weren't hacked. How they handle incidents like this matters to a lot of folks, and that's what this is about.
3 months after a major breach, how could anybody possibly believe that they fixed all their wrong organizational policies and security measurements within that time, while still not even acknowledging the incident?