-
Notifications
You must be signed in to change notification settings - Fork 161
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Software contains nonconsensual spyware that exfiltrates the user's activity #495
Comments
plz can you confirme (rejecte) this "problem"? and if so , fix it!! as a proton license user on linux i am expecting a strong & safe app running on my all my devices ... |
5 things : 1. You can opt out before login. 2. Here is what is collected (
So, it does not collect any "privacy" data about your mails or your activity or else, only configuration settings... 3. You should read Privacy policy before using a service. In Proton Mail case, it's explained here (https://proton.me/legal/privacy) : 4. It's also opt-out in Proton Mail web (it's not only proton-bridge) : 5. I agree that it could be opt-in |
@BarbossHack ok thanks for the clarifications. |
Expected Behavior
The bridge gets me my mail.
Current Behavior
The bridge gets me my mail, and also reports on my activity without my consent to a third party.
Possible Solution
Disable the spyware unless the user opts in to such surveillance and tracking.
Steps to Reproduce
Run the bridge and check mail.
Version Information
Current: da76784
Context (Environment)
Detailed Description
See above. Furthermore, a dark pattern is present that exists to confuse the user into accidentally leaving it on. After entering an explicit command "telemetry disable", it then prompts for confirmation with confusing wording "do you want to disable yes/no", with the default option being "no", so if the user hits enter they will not disable (a double negative) and countermand their explicit instruction to "telemetry disable".
The default out of the box should be SURVEILLANCE OFF. If the user wants to transmit their data, ask them, and allow them to opt in. If the user enters the "telemetry disable" command, don't prompt them any further, and certainly don't make the default answer to that prompt to "ignore the user's command and keep sending telemetry".
Possible Implementation
Just remove all of the surveillance features from the app. They have no place in a client for end to end encrypted commuications.
The text was updated successfully, but these errors were encountered: