In which I put my head in the lion’s jaws and write 2700 words about privacy and full-text search on #mastodon: https://www.tbray.org/ongoing/When/202x/2022/12/30/Mastodon-Privacy-and-Search
Private and Public Mastodon

ongoing by Tim Bray

@timbray thoughts on authorized fetch? ( https://docs.joinmastodon.org/admin/config/#authorized_fetch ) It seems like it shares some commonalities with your proposed step one particularly when used in combination with disallow unauthenticated access ( https://docs.joinmastodon.org/admin/config/#disallow_unauthenticated_api_access )

Of course we still have a long way to go with building on top of that for your other suggestions re: federation & data handling contracts but

Configuring your environment - Mastodon documentation

Setting environment variables for your Mastodon installation.

@Satsuma

Hadn't seen that… interesting. But like I said, it's the policy consensus that matters, technology we can fix up.

@timbray oh definitely, people are always the messiest part of the equation! but seems like a decent place to start building off, as it already has moderate adoption on fedi