• @refalo@programming.dev
    link
    fedilink
    23 months ago

    3rd party audits and legal encounters

    The problem I have with this is that audits or court cases do not prove that the server is only using that same exact code at the instant you are using it… changes to software are constantly made all the time, and they could all invalidate previous audits or presumptions of privacy or security.

    • Leraje
      link
      fedilink
      English
      13 months ago

      That’s true, there’s always going to have to be some trust, but a provider that takes the time and expense to invest in a privacy audit or defend their clients by not logging and establishing that in court certainly indicates they’re worth having that trust in.