Live data from Hacker News

Tl;dv: Over 180k meetings left wide open

bobdahacker.com

211–220 of 231 posts

Re: Tl;dv: Over 180k meetings left wide open

#211
post #64

> He responded within minutes: "thank you! can you report it to our CTO and we will look at it immediately?" Why could he not speak to HIS ceo himself instead of asking Bob to

I've know executives like this; at some level they seem to be self aware enough* to realize that any message that passes through them will be garbled beyond recognition and so actively encourage people to route around them.

* I know they're just saying the words a self aware person would say to give that impression, but it can be eerily convincing.

Re: Tl;dv: Over 180k meetings left wide open

#212
post #60

I saw an YouTuber the other day sharing their "day in the life" as an Amazon Software Engineer while promoting (as part of a paid sponsorship) the AI note taking feature of SoundCore headphones, claiming they now record their meetings and receive an AI summary at the end. I wonder how many companies realise these devices that appear as "headsets" are now funnelling their meetings into these new AI companies who are m…

Well, on the plus side, SoundCore (Anker) are at least reputable enough (even though security teams would still want to review that!): Under the security part, they do seem to at least be compliant with your typical security standards (HIPAA, SOC 2 Type 1, etc.) and claim that all data is deleted within 12 hours of transcription. So it isn't like the contents of your meeting are being siphoned off to some fly-by-nigh…

The one thing I know Anker for is that they were uploading the feeds of their doorbell cameras without encryption (even though they claimed e2ee), and iirc they were also uploading thumbnails of these cameras to a publicly accessible S3 bucket, and consistently lying about it all.

So no, I don't think they're very reputable at all.

Re: Tl;dv: Over 180k meetings left wide open

#213
1785854861 | Tl;Dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open | https://bobdahacker.com/blog/tldv-hack | https://news.ycombinator.com/item?id=49169753

1785962536 | Tl;Dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open | https://bobdahacker.com/blog/tldv-hack | https://news.ycombinator.com/item?id=49188723

Re: Tl;dv: Over 180k meetings left wide open

#214
post #177

Earlier quoted context omitted.

The company computer typically comes with some data protection agreement, where you agree to only access confidential data via the company computer, or at least to never copy confidential company data to personal devices.

On the one side you are liable because you are accessing company data on your personal computer. On the other you are liable because the company is forcing you to use insecure devices to access company data because of compliance. I think we need to check the contracts to see which liability to choose that will give you the least amount of headache.

You're not liable for using company devices to access company data, regardless of if it's insecure or not. Don't use personal devices for work

Re: Tl;dv: Over 180k meetings left wide open

#215

Earlier quoted context omitted.

Allow me to introduce you to: Burden of Proof.

I can prove God exists is the same sense that you can explain why there isn’t simply nothing at all.

Material existence != a guy flying around in space listening to your thoughts

Re: Tl;dv: Over 180k meetings left wide open

#216

Earlier quoted context omitted.

On the one side you are liable because you are accessing company data on your personal computer. On the other you are liable because the company is forcing you to use insecure devices to access company data because of compliance. I think we need to check the contracts to see which liability to choose that will give you the least amount of headache.

You're not liable for using company devices to access company data, regardless of if it's insecure or not. Don't use personal devices for work

I know, I was being coy, but if I'm being honest using company devices makes me really anxious, it's always in the back of my head that someone is going to abuse that outdated and opaque VPN stack from Fortinet or that Kaspersky Daemon I needed to install using a script some guy from security sent me with a Google Docs link over DM, and I'll have a really hard time explaining there was no mishandling of data from my part

Re: Tl;dv: Over 180k meetings left wide open

#218

Earlier quoted context omitted.

Well, on the plus side, SoundCore (Anker) are at least reputable enough (even though security teams would still want to review that!): Under the security part, they do seem to at least be compliant with your typical security standards (HIPAA, SOC 2 Type 1, etc.) and claim that all data is deleted within 12 hours of transcription. So it isn't like the contents of your meeting are being siphoned off to some fly-by-nigh…

The one thing I know Anker for is that they were uploading the feeds of their doorbell cameras without encryption (even though they claimed e2ee), and iirc they were also uploading thumbnails of these cameras to a publicly accessible S3 bucket, and consistently lying about it all. So no, I don't think they're very reputable at all.

I moreso meant the quality of their hardware, though that's fair, I didn't recall that. Still, if they are bothering to go to the effort of getting audited (granted, I don't like reading audit reports so I didn't look at who actually performed them) - it seems like they are actually trying, as opposed to what you might expect from a less scrupulous company, where it's more like the wild west.

Re: Tl;dv: Over 180k meetings left wide open

#219
post #176
post #166

Heh, interesting. I literally just vibe-coded an app tonight that takes a meeting recording, runs it through whisper to generate the text, then through your local codex gives you a summary and creates actions that are pushable to either github (technical) or PM tool (project level) Takes about 7 minutes for a 2 hour meeting on my 3080 GPU so well within useful timeframe. I did it because i didn't want to pay £7 a mon…

Why not just pay attention in the meetings you are paid to attend?

Depends on your level of interaction in the meeting. I have a lot of meetings where I’m having in-depth “fact finding” interviews with one or two other participants. Taking notes breaks the flow and sometimes the other participants find it rude. So instead record those meetings and generate a local transcript after using whisper.

Re: Tl;dv: Over 180k meetings left wide open

#220

The worst part of these AI meeting notes and recordings is that I have literally never seen anybody , in any situation, go back to them. The (very) few times I ever bothered to check the transcripts and especially the summaries immediately after a meeting, without fail they'd have something in them that is the complete opposite of what someone said in the meeting, or they'd miss extremely important clarifications or…

My own anecdata, fwiw. I have periods of my year where I spend the majority of my time (like 25-30 hours a week) holding and recording calls, which I then transcribe and review. I’ve never once found an error of this type. I also record and review a lot of quarterly earnings calls, and have never experienced an error of this type.
Post reply on HN