this post was submitted on 31 May 2026
64 points (90.0% liked)

Technology

85080 readers
4466 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
all 13 comments
sorted by: hot top controversial new old
[–] Mad_Punda@feddit.org 12 points 1 day ago (2 children)

And can we interest sir in an EU privacy law–mandated cookie consent pop-up?

That is the malicious compliance implementation that big tech went for in order to nag us into accepting all cookies, not at all what the EU law had in mind. ”Reject All” is supposed to be as easy to choose as ”Accept All”, or you know, you could just read my browser’s ”do not track” setting, that’s what it’s ducking for.

[–] mech@feddit.org 8 points 1 day ago* (last edited 1 day ago) (1 children)

GDPR also mandates only collecting as much data as is necessary.
Even with a consent banner, collecting all possible tracking data and selling it to 600 "partners" just to show a text page is against the law.
Unfortunately, you'd have to sue each website individually.

[–] BigJohnnyHines@lemmy.ca 2 points 1 day ago

They could start by making an example out of a big player like formula 1.

[–] belochka@lemmy.world 1 points 1 day ago* (last edited 1 day ago)

Non-malicious compliance would be a protocol extension, don't ask me how, but if WebSockets exist, then it's possible to make an EuHTTP standard to which you'd upgrade. So that all these popups wouldn't be needed and you'd conveniently set things up on the client.

Actually owch. One can just take some WS library and make a Gemini-like protocol, only over WebSockets (allowing for much of normal infrastructure to support it, you know, nginx, haproxy, lots of stuff), that would leverage convenient existing technologies and without need for Google's browser engine more complex and expensive than a rocket.

OK, that's called NOSTR, they are just not aiming for replacing Web in any form. For now.

EDIT: And this probably is not what's being discussed.

[–] rekabis@lemmy.ca 4 points 1 day ago* (last edited 1 day ago)
  1. Actually text me the one-time passcode, rather than saying you sent it to me while instead texting it to the molten core of the earth.

Uhhh… how about NO??

In fact, as a casual security professional (it’s not a core part of my job, but I know a lot more than most ppl), I openly advocate making SMS and eMail illegal for transmitting one-time passcodes.

Why? Because both are critically insecure, cannot be adequately secured outside of laboratory or highly restrictive environments, and can be trivially hijacked.

The only one-time passcode that should be used are one-time password generators (TOTP) such as Google Authenticator or any other such method.

Yes, this requires a little more effort on the part of the site owner, but it’s worlds better than SMS or eMail, and far more user-friendly than forcing the user to open the company’s app just to receive the code (looking at you, Canadian banks and other businesses like Telus).

[–] mitrosus@discuss.tchncs.de 25 points 2 days ago (1 children)

Along with everything great he said, one I get disturbed by in reading any page is "Stop doing the thing where the banner at the top of the site auto-hides when I scroll a short way down the page, but then reappears when I scroll back up"

[–] deegeese@sopuli.xyz 6 points 2 days ago (1 children)
[–] Flower@sh.itjust.works 4 points 2 days ago

Describing the symptoms of enshittification in the article

Amen. Maybe the pope should get into tech. It’s ducking time.

[–] terabyterex@lemmy.world -4 points 2 days ago (1 children)

i am so tired of everyone being catholic sll of the sudden. all religion can suck dick.

[–] Mad_Punda@feddit.org 1 points 1 day ago

Downvoting because in the 2nd paragraph:

I’m not Catholic, and I have grave disagreements with the pope on issues ranging from trans rights to women’s ordination.