People with critically important privacy needs should never base their safety on the assumption that a Mastodon instance's data is secure from the feds.
@chadloder Don’t base your safety on the assumption that anything’s data is secure from the feds unless you are securing it yourself or have read it in the specs or user agreement.
@MisuseCase I would not trust a user agreement, personally.
@chadloder It’s a bit reductive because user agreements can change. Specs are better, like “we have set this up in such a way that we couldn’t turn data over to law enforcement if we wanted to, assuming you have put your settings on X Y and Z.”
@MisuseCase @chadloder Honestly, for very secure use-cases, the only thing I trust is a open-source application that (ideally) undergoes independent security audits, or at least has a lot of reputation/trust from the security community. Anything else feels like baselessly trusting some random developers to tell the truth.