Schluss – A secure vault for personal data
schluss.org
schluss.org
On a side note, I also find their "Responsible Disclosure" page at https://schluss.org/responsible-disclosure/ to say the least, funny:
- "Your reward. We work as a community, in which you contribute to improve Schluss. With this you contribute to a better internet."
- "If you meet all conditions, we will not submit legal proceedings against you."
- "Any abuse of our systems in any way will be punished."
But honestly, I think what they're trying to say is, we're happy if you report issues, but please don't commit a legal offense. This policy will not absolve you.
A large company like Apple would be in a better position to do something like this, and in principle Apple Pay does it already as merchants can e.g. request your shipping or billing address through that system.
Why on earth would anyone in their right mind do this? I use things like noScript to specifically avoid this kind of thing.
Do I need a service between me and Schluss, to ensure that they are following my laws?
The problem with these approaches is that no significant company is going to do this voluntarily. And this is not going to make a dent until Meta, Apple and friends do it. They are not going to do it because it doesn't give them an advantage, it only makes their lifes harder. It makes it harder even if they don't use the data for anything, because of increased technical complexity etc.
So, this is not a technology problem, but a legal/political problem. Just as the EU is forcing big messaging apps to ensure interoperability now, the only thing that will make a difference here is a law that disallows companies from saving customer data in their own databases. A GDPR 2.0. If you want to make a difference in this space, you need to spend your time pushing new legislation.
I'm sure that in time the EU will get there. And then we will need good tech like Schluss or Solid. But before then, it's not going to do anything.
I don't think Tim Berners-Lee is trying to sell us some vaporware, so has anyone got any pointer?
The crux is that you can self-host your own solid server with your own pods, or choose to rely on a hosting provider. That's the decentralized aspect of the idea.
The big question is how this plugs into an economic model with real world incentives, interests, distribution of power / leverage, trust / credit, and so on.
Since many would not be able to store user information they are reliant on people hosting themselves or at a service. I know it is difficult to explain that having control about your data is important and probably the most significant barrier. There are non-technical people that value privacy and data protection but most of them are highly educated.
[0] https://inrupt.com/ [1] https://inrupt.com/solid-enterprise-natwest-bbc
Lobbyists will do this regardless if the tech exists or not. They currently doing it for messaging app interoperability, even though open protocols and APIs have been around since the internet started.
Don't get me wrong, I'm not saying let's not work on this tech. Just saying that this is not some hard tech problem that needs to be solved. If a law would be passed today that forbid companies from saving customer data, a dozen startups would launch tomorrow with this tech.
Not only this, but it will also prevent a scenario where the political will is given, but the tech does not exist yet and then the lowest bidder will implement it, instead of a genuinely interested group of players.
What could go wrong?
I like the idea of getting it out of control of the current harvesting orgs, but what makes this group more trustworthy? They seem great now, but when you are dealing with a corporation, things can change - their situation andmor leadership changes and the formerly trustworthy organization is now extracting everything they can from you.
A much better model would be to store the data locally with your equipment (maybe offering e2e encrypted cloud backup such that they can't read it), and their service provides a hub controlling the gathering & distribution of info according to your rules/permissions.
EDIT Typo in 1st line
The second thought was, "basta!"
We share your distrust against anyone making big claims. We also have been disappointed more than once. So, we get where you come from. We believe in dialogue. Therefore, we take each and every one of you serious. With what we are trying to achieve we know we have a major challenge up ahead. We take it to the extreme: Schluss does not want to have any knowledge about its users and usage. The company at this moment is a foundation (no shares!) with the sole purpose to become a cooperative. This way every user is co-owner. On the technical side, the system must be decentralized and distributed and we want to stay away from vendor lock-ins. You as a user will own and control what is yours. No one will know of your existence or have access to your data unless you want so. This is complex and difficult to achieve because there is so much to take into account. And even though we're building a few years already, we know we're just getting started. Our software is, of course, open source and BSD licensed. See our repo's here: https://gitlab.com/schluss.
Unfortunately I don’t see any of those on the horizon…
It has different connotations from the other word for end, “das Ende”, which is more literally “the end”: “Schluss” is something like “it’s over, pack it up!”
Technically it does come from a declination of “schließen”, which mostly means “close”, so I assume that’s where the idea comes from, but in this form it does not reflect normal usage. “Lock” would be “abschließen”, but “Abschluss” as a substantive also rather means “the end of something”.
As a free standing word it’s just… weird.
If it’s Dutch maybe it makes sense, don’t know Dutch!
Keeping your data after this request has a tiny benefit to the company - not that many people retract access, and one individual's data is not that valuable. On the other hand, intentionally keeping and using that carries significant financial risk of fines if found out; so a prudent organization simply won't do that - otherwise, it'll just be a huge expense for no good reason after e.g. some disgruntled ex-employee blows the whistle on this practice.
> Same with GDPR. I often ask companies to remove my data, and legally they should, but I highly doubt many of them do indeed scrap all my data
Anecdotal: When GDPR came, the companies I worked with/in took it REALLY serious and spent huge amounts of money and resources to change ALL of their processes to label and clearly isolate data with customer-identified and identifiable content. Not necessarily because they had a change of mind about privacy, but because the risk and the penalty if found non-compliant was so high ("up to €20 million, or 4% of worldwide turnover for the preceding financial year – whichever is HIGHER (!)", PER incident!). Some level of user-data privacy was already in place, but suddenly all understood the risk of not sufficiently isolating identifiable data (data which in itself is not personal information, but could be combined with other data to identify the user)
So at least in my direct experience GDPR caused a huge shift in many company mindsets from "let's store now and review later" to "wait, what is this data?", and all departments which store data from the field had to start answering to a data protection entity within the company about all the data they have or intend to collect.
It literally forced companies which always played with the idea of one day utilizing harvested data to create some undefined value in the future to challenge themselves. And many companies concluded "we don't know what type of data we have, it's too risky/expensive, scrape the servers and delete it".
Those were all large international companies though, maybe smaller companies acted differently. And for sure your typical data-collecting companies (FAANG) are a completely different story.
But the complexity for a small company with smaller processes to become GDPR-compliant is much lower, with the penalty risking to not just hurt you but immediately send you into bancrupcy. So for a small company especially in Europe it would be plain-stupid to not have GDPR-compliant processes...
This is the same with data protection and GDPR. They could just say that they deleted it and keep a copy on their own. BUT using such systems or asking them (in a documented way) to delete your data is a really strong signal from your side what your assumptions are. This will make the fines much higher if a data protection authority would find out that a company kept the data when you have already shown your strong request to delete it. So in a way these mechanism should make it easier for you to trust the other side to do their part because the fines will just get bigger.
I was talking once with a friend who deals with GDPR issues at their company. They said that they’re required to keep a record of deletion requests so it can be spelunked through vendors for a full deletion. This often creates more data than was originally deleted.