ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.3K
active users

as the person who pushed for the alpine core team (now TSC) to adopt a policy of rejecting telemetry features in alpine-packaged software, i have opinions on flathub 🙃

mostly i am concerned that pushing users to use vendor-provided builds distributed on flathub may be exposing users to harmful software misfeatures like telemetry in ways that they would not if those same users installed packages from a distribution which patches out these misfeatures as a matter of policy

i wish that flathub would explicitly ban telemetry and check for telemetry features during their review processes. i would be more likely to recommend flatpak in more cases if they did.

my philosophy here effectively boils down to a simple position: your computer should not be a rat.

Kevin Riggle

@ariadne my inability to tell whether any text I enter into text box or command line on my computer will get sent to another computer is drubbing be fucking nuts

@kevinriggle well in alpine at least, that would be a release-critical bug in whatever package is doing it 🙃

@kevinriggle@ioc.exchange @ariadne@social.treehouse.systems

honestly this, i do some work with sensitive data and i'm always just left wondering if running this command or that program is calling home with sensitive data. like even if its been approved for use and all that, i still see things like copilot which is installed and active in the vs code instance they provide and i just have to squint like "you sure?"