Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>Why do people always attack these projects on "Hacker" News?

It's not an attack. It's a pertinent statement of fact that some privacy-conscious people may want to consider when choosing their browser.



Are the developers on Chrome or Safari not anonymous to you as well? Or basically every piece of software that you did not author yourself?


That's where the second half of the sentence comes into play:

"organisation behind the fork to serve as a legal entity."

There is a legal entity behind both Chrome & Safari.


Yeah, in both cases it is user hostile entity hellbent on tracking you, with strong legal defense.

I think this actually makes things worse.


The threat model is completely different.

A big company tracking you generally does so in a fully algorithmic manner, with little to no human eyes on the actual data, and any individual's unauthorized access to such data is generally considered a Big Deal™ in these companies and grounds for instant termination.

Furthermore, these companies generally have good security controls that would be hard to subvert by a hostile attacker to release a malicious build or leak the collected data.

Finally there's also safety in numbers - you are statistically unlikely to be the "most interesting" person using a major company's software product such as Chrome, so even if someone managed to gain full unfettered access to the collected tracking data and/or is able to push a malicious update, it's very unlikely you will be the target.

A smaller project led by a lone developer or a small team of contributors lacks those various checks and balances, large security team, and the numbers of users, such that once breached you may very well be interesting enough for the attacker to actually take a personal look at.


It is all also trust based, with plenty of examples showing that access was available despite all checks and balances supposedly being in place.

If it is trust based i would rather trust someone who's open source and privacy advocate than any corporation that will abuse the data as soon as it is profitable for them. but that is my choice that follows my priorities.

Even more so when company - in the cited examples - already has heavy conflict of interest when it comes to service provided(chrome tracking <-> google ads feedback loop that gives them even higher unfair advantage)


>Yeah, in both cases it is user hostile entity hellbent on tracking you, with strong legal defense.

This isn't related to the point. I'm not recommending any specific product.

I'm just saying that the anonymity (or not) of the maintainer(s) can and should play a role in the decision of which browser you use. You may decide that you don't care about that, or that it's a risk you accept, and that's completely fine. But having the information to base the decision on is important.


I'm just providing a counterpoint that non-anonymity of maintainer can also be a downside. with similar caveats.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: