Live data from Hacker News

Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

foundation.mozilla.org

1–10 of 75 posts

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#5
>Mozilla’s Minimum Security Standards, like requiring strong passwords

What if I don't want a strong password? What if I have 0 care for my account because I never wanted an account to being with but was strong armed into giving away my email, phone number, and now need a unique password because I'm worried someone is going to see that I 'prayed' 100 times.

I loved that reddit didn't need an email, and I could use a generic password. If I lost my reddit account, no big deal at all. For my personal/PR reddit account, email and strong password, great.

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#6
Canada recently funded a mental health website which suffers from many of the same problems mentioned in the article. It's under review with OPC currently, but additional reports always help.

This website is advertised by our PM to children.

https://www.wellnesstogether.ca

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#7

>Mozilla’s Minimum Security Standards, like requiring strong passwords What if I don't want a strong password? What if I have 0 care for my account because I never wanted an account to being with but was strong armed into giving away my email, phone number, and now need a unique password because I'm worried someone is going to see that I 'prayed' 100 times. I loved that reddit didn't need an email, and I could use a…

One very, very basic measurement / thought experiment for holiness in Christian circles to think about is the following:

Imagine Christianity is illegal. Imagine the government decides to prosecute you, but hires the weakest, most incompetent, repeatedly-almost-disbarred prosecutor there is. You meanwhile get access to David Boies. Would the government have enough evidence for even the worst prosecutor to prove you are a Christian?

Well, if not… it’s like Mozilla doesn’t realize that religious people don’t mind prayer being a fairly public act as long as people against them aren’t preying on them. Catholics have Mass every Sunday; Muslims have their five-times-daily prayers and often wear clothing that clearly identifies them as such; and so forth.

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#8
iOS or Android, both get your data. What is the difference in privacy? Please use actual examples and not boogeymen 'Google is an ad company'.

I personally have seen iphones(or at least iphone users) have far more intrusive and customized ads to the point where saying a word in a home puts you at risk of getting physical mail related to that word. (It was dog food, and a dog food ad.)

I've come to the conclusion that privacy and security are mostly theater, and if I am being realistic, I need to assume everything I say/do is being recorded. I also treat my devices as compromised. Any thoughts that your device is private or secure is delusion.

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#9
post #2

[flagged]

Believe it or not, a lot of people are not aware this is a major problem for wellness/prayer apps specifically. I was one of those people and found this interesting. You’re being needlessly snarky and condescending.

Re: Top Mental Health and Prayer Apps Fail at Privacy, Security (2022)

#10

>Mozilla’s Minimum Security Standards, like requiring strong passwords What if I don't want a strong password? What if I have 0 care for my account because I never wanted an account to being with but was strong armed into giving away my email, phone number, and now need a unique password because I'm worried someone is going to see that I 'prayed' 100 times. I loved that reddit didn't need an email, and I could use a…

There are substantial incentives for practically everyone to adopt strong passwords, including yourself, even if it's just a temporary account.

The platform actually desires you to possess a robust password, given that hijacked accounts contribute to spam so heavily.

Many people often use the same "basic passwords" on multiple websites. If one of your temporary accounts gets hijacked all your other "temporary" (in quotes because some of them might actually be important) accounts, including older ones you might have forgotten about, could be exposed.

Essentially, there are hardly any valid grounds for any platform to permit the utilization of frail passwords, especially considering how effortless it is to create distinct passwords using a password manager nowadays.

Post reply on HN