Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I hope Discord understands the risks they pose to their audience when they open source their IDs again.

Discord is used by a bunch of closeted users having pseudos, who wouldn't do the same activities on it if everyone had their names.

A part of the Discord users is from countries from which Discord isn't even officially accessible (eg China) or where involvement in LGBT discussions could result to death row (Afghanis are still on Discord)

For me, a company that open sourced 70,000 IDs and ask for moooooore just weeks later is just a joke about the sharing economy

The problem isn't even for new users. Some users have over a decade of private hobbies and will now need to associate their governement ID to their profile. Discord pinky swears they ask but don't keep this time, which isn't enough.

Companies shouldn't be allowed to change such fundamental ToS after an account is created.

 help



> Discord is used by a bunch of closeted users having pseudos, who wouldn't do the same activities on it if everyone had their names.

Exactly. I am sure they won't share their face or ID and will move somewhere else. Big opportunity for other platforms to stand up and grow their user base.


Literally just finished spinning up a Matrix server for my friends and I to try out

nice!

+1.

It's a push out.

That's fine. We'll take our attention elsewhere.


Discord also calculates a whole lot of (inferred) demographic information. Estimated age, gender, and surely much more. They also feed all the messages into a ML model, which guesses what people are talking about, and pushes a notification to other users. This is probably the culmination of all that, this is why they refuse to be e2e like every other reasonable messaging app...

Discord is focused on large groups. E2EE doesn't work in this case. Group management overhead traffic is too high and too unreliable, and a bad actor could just join the group under a pseudonym to log messages. Discord isn't E2EE for the same reason Hacker News isn't.

For large public servers it would be pointless. But for DMs and small private servers, it would be meaningful. Most people in DMs and small private servers would not appreciate their messages being publicly accessible like HN comments are.

I REALLY doubt anyone XYZ while XYZ is illegal/pursued/banned in their country hasn't already extensively thought about their own threat model, and that disclosing this kind of infomration on a public platform is not safe.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: