Elektrine lite

← Feed

@asltf@berlin.social

Post #2843616

2026-02-22 17:15 UTC

@navi@social.vlhl.dev @lumi@snug.moe pleas read my responses or stop wasting my time. Recommendations almost have to be read as "have to unless impossible (with permitted reason)" for national bodies. And I've already wrote some words about companies willing to take the risk *on them* - i.e. they calculate in fraud, which you as customer pays - that doesn't work for national ID systems

Replies (3)

  • @navi@social.vlhl.dev 2026-02-22 17:17

    @asltf@berlin.social @lumi@snug.moe you know what, fuck your high and mighty "my time is so precious" attitude

    Open ##2843617

  • @asltf@berlin.social 2026-02-22 17:19

    @navi@social.vlhl.dev @lumi@snug.moe And to your last point: I've already answered that. Runtime assertion is required to attest, the attestation from hardware key store is from within their untampered app, otherwise MITM could relay to any other device. One could work around this by paper verificaton process (i.e. the bank print our revceived public key fingerprint and sens it back to you with a verification password, you have to type in to complete key binding)

    Open ##2843618

  • @matildalove@wetdry.world 2026-06-09 08:30

    @asltf@berlin.social lmfao you're wasting your own time buddy and also carrying water for corporate surveillance

    Open ##3226701