I came here for the same reasons as most of you and chiefly among them was to escape the corporate embrace of common social media platforms.
But how much trust can we place into Lemmy, Mastodon, and/or other various integrated Fediverse platform instances?
I’m all for open-source and transparency which the devs seem to provide, although providing source code and routinely audited source code are entirely different concepts.
Similarly, the high availability of source code may lead to malicious instances, actors, and/or back-end modifications that would favor specific instances resounding consequence throughout the Fediverse.
So I ask simply: How much faith do you have? (Please provide supporting documentation links supporting your answer because I’m genuinely interested.)
EDIT: I literally removed a semi-colon character ‘:’
Historically availability of source code has prevented that sort of thing since forever. Plus you can’t favor a specific instance, that’s the beauty of the protocol. It’s like saying google can favourite a specific email provider, they can’t, if suddenly Gmail stops receiving or sending emails to random domains people would just switch boats because you can register on any of the other email providers that don’t do that. Gmail can collect your data and all, but all data on Lemmy is public, so there’s no need to mess with the source code to gather data.
So what are you worried about? Mods moderating content in ways you don’t like? That will happen on any platform that allows moderation, and you don’t want to use one that doesn’t (plus it has nothing to do with the open source nature of the server, and you can jump to another community with different mods). Maybe you’re worried that malicious software will run on your phone? That’s more likely to happen with a closed source software, if you’re truly paranoid about these things you would have a full open source phone with a custom OS without google components flashed into it, I can see that you’re not on that level since you still don’t understand that open source is needed for transparency. Or maybe you’re worried the server itself will host malicious content? Any server can do that, servers that host things people write will always be able to host malicious content, it’s not hard to link to an external website or provide malicious scripts or files, just don’t click on random links or download random things from strangers online and you should be mostly fine.
Availability of source code and actual auditing are entirely different.
They very well can as a private platform. For the record, google does favor specific vendors through their Google Partnership program and similarly through search results as recently found through court proceedings.
It’s also managed by a single source of truth, ie. databases… correct?
I’m not worried about anything. I asked a question to a forum which seemed to superficially accommodate questions, my bad.
I literally don’t care about moderated content, censorship, or whatever.
Nope.
Yes, I’m lower than you. Teach me.
Counter question, how many straws are you grasping at here?
Realize how many questions you levied and that I was actually kind enough to take the time to answer most of them even if possibly rhetorical.
You insulted me and I’m okay with your opinions that I’m ignorant, “not on the level”, or whatever. I literally just asked a question.
EDIT: I failed to proofread and had a redundancy collision.
First of all I never insulted you, I said you’re not on the level of paranoia to be using exclusively open source software on your phone, if you were you wouldn’t use open source as a negative term (btw I’m also not on that level, I’m writing this answer from a third party closed source client on a stock Android phone). I apologise for the misunderstanding and rereading my answer I can see why you would take it as an insult, but let me assure you it was not, I only meant to say you’re not too paranoid about other software that’s running on your phone so you shouldn’t be about this either.
Indeed they are, but auditing is only possible on open source programs, therefore on the worst case scenario, i.e. no one ever audited the code, it should be at least just as safe as a closed source alternative. Plus I was answering to a point you made which specifically stated that code availability might lead to malicious instances, which is completely contrary to all historical information we have, which is why the most critical pieces of software for security (SSL, TLS, etc) are all (100%, no exceptions) open source.
Yes, but I was specifically talking about emails, if gmail refused to send/receive emails from addresses @yahoo or @microsoft people would not use it. Remember that the fediverse is similar to email, where different servers talk to each other, if one server refuses to play nice and blocks content it’s by definition worse than the others that show you that content, therefore there’s no incentive to keep using that server and users would migrate away.
Noz it’s managed by multiple sources of truth, each server has their own database of the content they serve and/or have cached. Being worried about a server altering the data is like being worried Google will alter the content of the emails you send/receive, possible? Yes, but the moment someone discovered it (and it would be very simple to discover) no one else would trust that server and would instead use another.
But your question was about how much trust to put in it, which implies you think there’s a reason to be worried and not put trust in it, and I’m trying to figure out what is your worry, what exactly is it that you think you shouldn’t trust.
As many as I could think, because honestly I can’t understand what is it that you have a problem with trusting, so I was bouncing ideas on things people might not trust (mods, malicious code, etc).
Yes, because I don’t understand what is it that you have a problem with trusting, content? Server code? Client code? There are many things you could have an issue with trusting, and I honestly want to understand which one is it.
Again, I’m sorry for the miscommunication, it was never my intention to insult you.