Elektrine lite

← Feed

@2something@transfem.social

Post #2364048

2026-05-10 18:01 UTC

I believe the next step in the war on ownership is domain allow-listing. Google and Apple will point out that many websites contain malware. They will claim the only solution is to make themselves the sole arbiters of what websites you are allowed to visit. iOS and Android will each come with a list of approved domains, and will refuse to connect to any domain not on the list. To get a domain approved, the developer will have to provide Google and Apple with government documents, pay a fee, and go through the website approval process. The website approval guidelines will assume that all websites have JavaScript, ads, and accounts, and the AI that reviews it will run into trouble with any site that doesn't have all three. Of course, websites that actually have malicious JavaScript, such as Facebook, will get approved immediately. The only way to bypass the domain allowlist will be to jailbreak your phone, but then you won't be able to access your bank or government sites, even in a web browser.

Replies (5)

  • @gytisrepecka@social.gyt.is 2026-05-11 06:40

    @2something@transfem.social Existing app store playbook to be applied for websites too :blobcatfingerguns:

    Open ##2408319

  • @ojrask@piipitin.fi 2026-05-11 05:44

    @2something@transfem.social As with societies where we have to build shadow networks for mutual aid and more, we have to build shadow networks for serving and accessing internet without surrendering our personal information and freedoms.

    Open ##2408323

  • @lukyan@lukyan.eu 2026-05-10 18:05

    @2something@transfem.social Interesting, how much Google will risk losing its phishing-enablement business. Maybe they will just allowlist all sites pretending to be login pages of their competition. The thing about non-malicious sites getting rejected by the automation reminds me of the XScreenSaver privacy policy.

    Open ##2408325

  • @mainec@fromm.social 2026-05-11 23:10

    @2something@transfem.social https://www.securityweek.com/google-deepmind-researchers-map-web-attacks-against-ai-agents/ ... 'improving the hygiene of the digital ecosystem, establishing content governance frameworks, '

    Open ##2483084

  • @2something@transfem.social The only place I have encountered this is, ironically, the Linux Foundation. To sign up as an individual member, I needed to provide a personal email address, not one from my employer. How did they decide which email addresses were personal? The domain name was on an allow list of personal email addresses, which contained only the big commercial providers.

    Open ##2697446