:ellie: Noëlle the 8-Bit🏳️‍🌈🎄 is a user on elekk.xyz. You can follow them or interact with them if you have an account anywhere in the fediverse. If you don't, you can sign up here.
:ellie: Noëlle the 8-Bit🏳️‍🌈🎄 @noelle

I've updated my brief introduction to Mastodon with a new heading: "How private is "Private"?": gist.github.com/joyeusenoelle/

I've reprinted it here because it should be read.

I cannot stress this enough: Private toots are not encrypted or secure.

The admin of your server can read any toot posted on their server, as well as any toot sent to a user on their server. This is a necessary security precaution.

· Web · 55 · 30

Admins don't want to read your private toots, but they have to be able to because otherwise private toots allow some users to secretly harass others or to conduct illegal dealings without the admin's knowledge, and under many laws the admin will be responsible for enabling the harassment or illegal behavior even if they didn't know it was happening.

That said, in general, your admin will only look over the toots you've marked Private if they have reason to believe harassment or illicit dealings are going on. Make sure you trust your admin to act like this, and if you don't, it might be time to look for another instance.

As a general rule, if an application you're using isn't peer-to-peer and relies on an intermediary like a server, the information you're sending isn't secure unless you take extra steps outside the application to secure it.

@noelle I don't think “we have to be able to read private toots” is really true. If it were, how come WhatsApp / Signal etc are able to do what they do, legally or ethically.

Is it a design decision, or just the result of the complexity of implementing e2e encryption? I suspect the latter.

@noelle Basically i dont want private toots being used to trade child porn and i need to know this isnt happening. I dont care about anything other than that.

@noelle oh my god, I didn't know about Natalie before I read that gist. 😢 :red_candle: :lattentacle:

@noelle I'll add to this that if you need truly private text messaging, there are good options available.

The consensus among infosec people is Signal is the top of the heap for secure, private text messaging. (signal.org/)

Social media tools like Mastodon are great, just not for that use case.

At the end of the day, there is no perfect tool. It's all about tradeoffs.

@noelle
>How do I establish my brand's presence on Mastodon?
The short answer: Please don't.
We've had a decade of Twitter, Facebook, and heaven knows how many other social media platforms becoming platforms for Search Engine Optimization, Brand Awareness, and Corporate Synergy, and I'll be blunt: we're really, really tired of it.

Why? Pawoo is sponsored by pixiv and it's the largest instance. The software is free for use for everyone.

@noelle
You should put "set up your instance". There are "brands" related to floss here as librem or krita, are they censurable too for being "brands" ?
Do you prefer that the enterprises are continuing using propietary Social networks instead a floss one and carrying their users/consumer with them?
I only see a political view which it is not appropriated for a beginner's post.

@astheroth I see you just stopped reading at the point where you decided you could lecture a woman about tech.

@astheroth (if this wasn't clear enough, your position is ill-informed and you should stop talking about it.)

@noelle
If you want data, here it is
1. Screenshots Pawoo v/s Mastodon social

@noelle GNU Affero License is a free copyleft license for software and other kinds of works specifically designed to ensure cooperation with the community in the case of network server software
Licenses for most software and other practical works are designed to take away your freedom to share and change the works. By contrast, our General Public Licenses are intended to guarantee your freedom to share and change all versions of a program--to make sure it remains free software for all its users

@noelle gnu.org/licenses/agpl-3.0.en.h
Mastodon license.

Pd. If you want a good debate, pls don't add "ad hominem attacks; because I didn't made any.

@noelle This is *the best* intro to 🐘 I've seen yet. Thank you for putting it together! Will share out to my instance. 👍