So if you're using Proton thinking it's "privacy-focused", it turns out they're giving data to the Feebs now. https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/
Proton Mail Helped FBI Unmask Anonymous ‘Stop Cop City’ Protester

A court record reviewed by 404 Media shows privacy-focused email provider Proton Mail handed over payment data related to a Stop Cop City email account to the Swiss government, which handed it to the FBI.

404 Media
@adrienne so who's left?
@nitinkhanna @adrienne If that's a serious question - https://bear-den.org.

It's plain old normal encryption in transit - TLS (plus encryption at rest) - but it's a known, well studied technology and I don't comply with bullshit.
Bear Den Hosting, LLC

@arthfach @adrienne

Always good to see smaller service providers building the open Internet!

By the way, where do the keys sit for the encryption at rest?

@nitinkhanna @adrienne I use LVM-on-LUKS and have the header backup stored with my attorney.

@arthfach @adrienne

very nice! Since I'm just encountering this tech - LUKS saves the data when the system is turned off, right? What about when it's running?

@nitinkhanna @adrienne That, unfortunately, is something LUKS doesn't handle. Once the system is online and the passphrase provided to unlock the volume, it stays unlocked until the system is shut down.

I'm working on the basis of "if we're at the point where the government is going to surgically remove the system from the datacenter while keeping it powered on and I get no prior notice that they're attempting that so I can't shut the system down, we're more screwed than I as a small provider can handle," to be honest.

@arthfach @nitinkhanna @adrienne fwiw, keeping a computer powered while seizing it is a standard tactic, and tools to do it are commercially available and not particularly expensive, e.g. https://cdsg.com/products/hotplug-field-kit?image=0

No surgery needed most of the time, unless you are connected directly to the wall (no power strip), and your power connector doesn't expose anything hot while slightly removed from the wall.

HotPlug Field Kit | DigiStor

@adrake @arthfach @adrienne damn. Good to know!