22
submitted 3 months ago by german@pawb.social to c/privacy@lemmy.world

Good read. I don’t trust the people who wrote it or who sponsor them, but good read for awareness.

top 3 comments
sorted by: hot top new old
[-] TachyonTele@piefed.social 4 points 3 months ago* (last edited 3 months ago)

Agreed, good read.
Im not surprised. I figure anything digital is tracked in some way. Or can be and just hasn't been shitified yet.

[-] XLE@piefed.social 2 points 3 months ago* (last edited 3 months ago)

I have an issue with this article:

You would be led to believe that any notification content that is the result of a cloud push would be visible to the server. And in Signal's case, it isn't.

The content of push notifications is fully visible to platforms like Google or Apple.

It doesn't provide enough detail, and you'd assume Signal was compromised based on it. (It's not.)

What apps are affected?

In principle, the issue affects all applications that use push notifications as provided by either the Google Play Services on Android or iOS. The issue is, however, particularly salient with social networks, especially secure messengers. When those apps promise they collect very little data about their users and users don’t volunteer any data that makes them identifiable, such as using a throwaway number for Signal...

"What apps are affected? Secure messengers. Including Signal, despite your best efforts" are what people will read.

[-] bitfucker@programming.dev 0 points 3 months ago* (last edited 3 months ago)

Ironically, using web push and web notification would solve this privacy issue since it falls upon the browser to provide the push mechanism. And browsers can be used without an account unless they want to enshittify that too

this post was submitted on 27 May 2026
22 points (95.8% liked)

Privacy

10678 readers
231 users here now

A community for Lemmy users interested in privacy

Rules:

  1. Be civil
  2. No spam posting
  3. Keep posts on-topic
  4. No trolling

founded 3 years ago
MODERATORS