> they say that iMessage is end-to-end encrypted, and then the second you have an iCloud backup that's completely broken.
It’s not completely broken. For average users, erring on the side of being able to restore from backup is the best choice. For people who need more security, that’s what Advanced Data Protection is for. You have the choice of which option suits you best; I think the default is appropriate for typical users.
> Apple is also the company that tried to introduce client-side content scanning of user photos.
What happened was they put a huge amount of effort into building a system that goes as far as it possibly can to implement CSAM detection that could work on E2E encrypted photo libraries while maintaining as much privacy as possible.
The design of the feature demonstrates they put a lot of effort into privacy – competitors just scan everything that’s uploaded to them, while Apple went above and beyond to do something a lot more difficult. The entire point of it was to detect without Apple having to have access to your photo library. There’s no point to design a system like that if they weren’t prioritising privacy – they could just scan on the server like everybody else if privacy isn’t a priority.
And what happened – everybody freaked out anyway, so they cancelled the feature. It’s an example that supports my point. Apple respond to incentives.
Personally, I wish they hadn’t cancelled the feature. Virtually everybody complaining about it didn’t understand how it worked and thought it worked in a completely different way.