Excellent overview of #privacy, #security, and #accessibility on #Mastodon, by @themarkup https://themarkup.org/the-breakdown/2022/11/21/we-joined-mastodon-heres-what-we-learned-about-privacy-and-security

Highlights:

🔸 Check your server’s privacy policy, as each server has its own rules.

🔸 Watch out w/DMs. Direct messages are not end-to-end encrypted and can be read in full by server admins. Also, anyone you tag in a DM will be able to view it.

🔸 Remember to turn on 2-factor authentication.

🔸 Add alt-text to caption your images and help make this place accessible for all!

We Joined Mastodon. Here’s What We Learned About Privacy and Security – The Markup

As Elon Musk sends Twitter into chaos, we’re sharing what we picked up about Mastodon as we selected a server

@themarkup

I’d add to this a general note that some of the legal protections you may be relying on from your use of bird site and other platforms may not be applicable here. Highly unlikely server admins have plans or resources to fight law enforcement requests for user data, for example. But FOSS-y projects have figured this out in the past. Give it time.

@themarkup
Also, @wbm312 posted this incisive thread on some more of the legal and security issues, including the fact that the FTC does not have enforcement authority over non-profit server admins!

https://infosec.exchange/@wbm312/109380518522835175

Whitney Merrill (@[email protected])

Do not use Mastodon for anything that you’re not OK being 100% public. I’m surprised this hasn’t come up more here.

Infosec Exchange
@tiffanycli @themarkup or just individuals generally.
@wbm312 @tiffanycli @themarkup I bet a good number of small/medium instance admins will get spooked by individual liability and form LLCs.
@tiffanycli 100% +++. We'll be paying attention to updates and changes on this front.