cross-posted from: https://discuss.tchncs.de/post/48813307
!!! IF YOU ARE AN EU CITIZEN, PLEASE DO THE FOLLOWING FORM !!!
https://fightchatcontrol.eu/#contact-tool
Be especially sure to select your home country’s permanent representation in the Committee, but selecting everyone the website proposes is a very good idea (and done by default).
Raise your voices and flood their inbox, this might be the last chance we ever get


Just a question from my ignorance: but is this really enforceable, outside of mainstream apps/services? What happens if someone creates a custom app relying on a custom sever and uses it only among few trusted people?
is the keyword here. Mainstream is really big.
They come for the lions share first. You do nothing because you think you’re unaffected. Then later they will come for you. And nobody will do anything for you either.
Of course, professional criminals like yourself (sarcasm) will find a way to escape the law. But I doubt it’s nice to live on the edge of society like that anyway, being unable to interact with most services.
Able, but no reason to.
Yeah, criminals are smarter than politicians anyway. And far more knowledge, with respect to technology.
Just an example: Of course you can use a private email service. You don’t need to give a copy of all your communications to Google Mail or outlook. Or medical data.
But what helps that, if 97% of the people you communicate with (including your doctor) use outlook or gmail, and all messages you write them are kindly stored there “for them”?
For the moment, that would not be enforceable in respect to people with technical knowledge. Enforcing it would require authoritarian control and even China’s Great Firewall has way to circumvent it.
On the other hand, this is already far more difficult than you might think. You could not install such an app from a server authenticated with TLS because the TLS keys might be subverted - the certification chain has national institutions as the top certificate authorities. You would also not be able to install such an app on an Android phone because Google has decided it needs developer attestation to install apps in a way accesible to end users. You can run Linux now but if all that is taken seriously, your options to run Linux might become limited. E.g. you already can’t run many banking apps on phones with user-controlled OS software. Railway apps like the German one already don’t work. In future, you might not even be able to use a municipial library’s or bookstore’s website this way.
But more to the point, the real application case for this kind of civil rights is not some nerd kids which want to play DnD or minecraft on their own server or test their self-written IRC service. The real application case is what we see in the US, people being dragged out of their house and disappearing just because of their ancestry, how they look, being poor or the area they live in. They don’t have time to compile software or configure port-knocking protocols.
Somebody has called these systems of “democratic” mass surveillance uncovered by Snowden “Turnkey Dictatorship” . I for sure wish they would have been wrong.
Well… I assume that might be illegal. Or maybe these rules would only apply to public software? For sure it wouldn’t be enforceable, and it would still allow criminals to use it to communicate privately between each other, but it would make it harder to exploit mainstream public apps (e.g.: WhatsApp) to scam or exploit weaker individuals.