this post was submitted on 22 Jan 2025
1 points (100.0% liked)

Privacy

0 readers
4 users here now

Everything about privacy (the confidentiality pillar of security) -- but not restricted to infosec. Offline privacy is also relevant here.

founded 1 year ago
MODERATORS
 

Seems it's also a good time to remember that the safest data is the data you don't collect.

You almost certainly don't need people's legal names for your blog commenters or forum users.

You don't need a date of birth for almost anything at all, unless you're selling pron, alcohol, tobacco etc..

You never need to know where someone was born, unless you are issuing passports or visas.

Basically, if you're not the government, don't ask for private details.

Stop using lazy pre-built forms that ask for address and phone number, if you don't actually need those things.

#privacy #webdev

top 1 comments
sorted by: hot top controversial new old
[–] [email protected] 1 points 1 week ago

I know there are issues with misuse of online spaces, and with people simply forgetting their credentials and wanting another way to prove who they are.

And for giant systems of great importance, maybe you need some extra information.

But we're not all managing giant systems of great importance. We're mostly running small to medium systems of great insignificance.

I run a small web service, have for 12 years now, that never asks for contact details, real names, gender, etc. And we have never had any problems. Ever. In 12 years.

Occasionally I've had to get on the phone with a user and find other ways to identify them enough to safely help them get back in. It's a lot more work than an online form, but it also happens less than once a year (and yes, it's been the same person a few times).

We're not high risk for misuse for various reasons, but seriously, try it out. People are better than you think.

#privacy #webdev