Skip to content

Comment on Security for the people

Comments

The simplysecure.org domain uses Google Analytics which isn't disclosed on their privacy page (as required by Google Analytics' TOS). There is also a mixed-content warning because someone hard-coded an http:// link to the balloons image in the blog post on their https site. I went to email them and first looked for PGP keys (us pro-privacy & security people all use PGP, right?) and found none for the domain on any key servers.

I point all this out because it perfectly illustrates their point. Here are a group of smart people launching a great initiative with a beautiful and modern website, and they made some mistakes just like the rest of us do.

I've offered to help and recommended they switch to Piwik (and fix the http link). I hope others here on HN who care about security and privacy will also offer to help out. Some of this stuff is easy to fix and I think it's a great initiative.

    I've offered to help and recommended they switch to Piwik (and fix the http link).
HN does tech satire so much better than the rest of the internet..

What do you exactly mean?

Telling the Google Open Source people to use Piwik instead of Google Analytics seems like satire.

I know the Piwik recommendation gave some a reason to chuckle but I was dead serious. This initiative was promoted by Dropbox (who recently brought Condoleeza Rice on board) and Google (an ad company currently removing privacy-enhancing apps from their mobile marketplace) and so this group will need to distinguish themselves to appear credible.

It's that or be dismissed as just another iteration of Microsoft's 'embrace, extend, extinguish' plays.

Not sure exactly, I was copying this comment: https://news.ycombinator.com/item?id=35143

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.