Live data from Hacker News

Librarian's Letter to Google Security

docs.google.com

381–390 of 484 posts

Re: Librarian's Letter to Google Security

#382

Earlier quoted context omitted.

I’m not GP, but I expect that regulation could help by requiring customer service. Similar to banking. And there could be an agency similar to CFPB where citizens could appeal who would then make formal investigations. So regulation would force the workflow described in the article to not have a grim outcome for elderly users of gmail.

Since opening all these offices costs money, this means that the accounts can't be free anymore. I suppose they could be subsidized by the state for low income people.

Not necessarily. The margin is really high on Google services even though they are free.

I don’t know Google well enough to know what they would need to do to offer non-shitty service. Maybe they show more ads.

I also think they could automate good service if they wanted to, but it’s not a priority and they aren’t required. I used financial services before and after CFPB and I don’t remember price increases on my bank accounts. So perhaps something similar would apply here.

Re: Librarian's Letter to Google Security

#383
post #379

It looks like the author is requesting this link be removed from HN: > STOP EMAILING ME AND CALLING THE LIBRARY ABOUT THIS > This was shared without my permission. This was not supposed to be public. It was meant to be shared internally to Google. > ...

Yes, this one is a bit of a grey area and I'd love to hear dang's opinion on it, but personally based off the user's EDIT I have used my "flag" on this post.

You don't really need dang's opinion to flag unclearly-sourced outrage stories. There are much better places for them to be verified. It's a good idea to do that well before they potentially affect someone badly.

Re: Librarian's Letter to Google Security

#384

I don't particularly love gmail and I'm personally trying to switch to fastmail over time, however I am on google's side this time around. There are reasonable approaches that can address this librarian's concern. Backup codes, backing up the MFA seed. She talks about patrons having cell service shutoff, but that doesn't affect google authenticator. There are good reasons why google went to an MFA only model and yes…

MFA is a great option to provide, and I would even suggest it should be default on, but what's the harm in allowing the user to opt out of MFA?

If available, it seems to me it would be the best option for this demographic.

Re: Librarian's Letter to Google Security

#385
"Today I decided I would try to change Google."

The best part for me is "try to" rather than the much more common and nonsensical "try and" that I see all the time. I think I would pay for a Chrome extension to automatically replace all occurrences of "try and" with "try to."

It takes a librarian...

Also, thanks for changing Google for the better, and helping those who need help the most!

Re: Librarian's Letter to Google Security

#386
post #43

Perhaps the solution is for libraries or local authorities to setup their own email providers. An email address “for life” with your library card, with the necessary support and in-person reset verification that their patrons need. I’m not suggesting this would be an easy or inexpensive undertaking, but maybe that’s just the next step in service evolution for a public information service like a library group.

They (libraries) could even set it up using Google Workspace, or any other email service provider like FastMail, Outlook, etc. Maybe companies could add a super inexpensive plan for public service providers like libraries to enable this sort of account for which librarians could do password resets, unlocks, etc. Maybe charge for the # of administrators only?

Re: Librarian's Letter to Google Security

#387

Earlier quoted context omitted.

Google doesn’t have a picture of me linked to my gmail account, so this would require as much planning as printing 2fa backup codes right?

They would use photo ID the same way everyone else does. Compare the photo on the ID to the picture the person provides; which is why it needs todays date in the photo.

All that proves is that there is a person who matches the photo on their ID? It doesn’t prove it is the account owner unless the ID and personal information is stored with google ahead of time. And now you have people upset about google asking people for id to sign up, like their children for a school account and other people like me upset that my account was phished. I don’t think they even have my real birthday on my account, at least I don’t remember being required to share it.

Re: Librarian's Letter to Google Security

#388
post #108

More than all the antitrust regulations being thrown at Google, I'd like to see regulators force Google to provide users customer support.

> More than all the antitrust regulations being thrown at Google, I'd like to see regulators force Google to provide users customer support. I would recommend a $5/month email service. It would be nice if free Gmail gave even more free stuff, but only a paid for service can really expect paid support staff. Having said that, this seems like a terrible idea from a security perspective. There may well be no way to desi…

Ironically I just wrote[0] about my experience moving from Google to Zoho and, despite the slightly sub-par experience with Zoho, I'm happier now because there are actual human beings at Zoho that I can talk to when I run into a problem. I pay $1.25/mo for peace of mind.

[0]: https://jedfonner.com/2022/07/30/switching-to-zoho/

Re: Librarian's Letter to Google Security

#389

"Today I decided I would try to change Google." The best part for me is "try to" rather than the much more common and nonsensical "try and" that I see all the time. I think I would pay for a Chrome extension to automatically replace all occurrences of "try and" with "try to." It takes a librarian... Also, thanks for changing Google for the better, and helping those who need help the most!

It bothers me too because the more I read it, the more it gets burnt into my brain leading me to make the mistake myself.

Side note: she did unfortunately use "try and" once.

Re: Librarian's Letter to Google Security

#390

"Today I decided I would try to change Google." The best part for me is "try to" rather than the much more common and nonsensical "try and" that I see all the time. I think I would pay for a Chrome extension to automatically replace all occurrences of "try and" with "try to." It takes a librarian... Also, thanks for changing Google for the better, and helping those who need help the most!

https://www.merriam-webster.com/words-at-play/were-going-to-...
Post reply on HN