RE: https://aus.social/@mojo/116321714247825786
En Wero draait op (tadaa) het Amerikaanse Amazon Web Services. Van de regen in de drup.
RE: https://aus.social/@mojo/116321714247825786
En Wero draait op (tadaa) het Amerikaanse Amazon Web Services. Van de regen in de drup.
@bert_hubert Despite this it may still be worth using, but we would definitely need to be strong in lobbying towards getting them off American services.
From command `dig -t any wero-wallet.eu`:
- Amazon for DNS: `wero-wallet.eu. 86400 IN NS ns-155.awsdns-19.com.`
- Microsoft for E-Mail: `wero-wallet.eu. 3600 IN MX 0 werowallet-eu01b.mail.protection.outlook.com.`
- Digital Ocean for hosting: `wero-wallet.eu. 3600 IN A 142.93.239.121` and `wero-wallet.eu. 3600 IN AAAA 2a03:b0c0:2:d0::115a:1001`
- Google for "site verification: `wero-wallet.eu. 3600 IN TXT "google-site-verification=mXzESlCJHy0hf-CC4eArUzeTYVsfCyqZpx2tdc3UAO0"` (this one might be a harmless SEO thing)
From visiting the website I see HTTP requests to the following non-EU domains:
- vimeo.com (in the US)
- plyr.io (in the UK)
- zdassets.com (i.e. ZenDesk, in the US)
- hs-scripts.com (i.e. HubSpot, in the US)
This also lists a `weropay.eu` domain. This in addition finds:
- Amazon for E-Mail: `weropay.eu. 300 IN TXT "v=spf1 include:amazonses.com -all"`
Not very European at all. I didn't list the few EU services they use, but it was less than 30% of the total.
Using Amazon and Microsoft for E-Mail means they cannot have any US-sanctioned employees. Using Digital Ocean and various Javascript hosts from the US means the US can get at the data.
@jwildeboer
I don't see a campaign here, but caution.
Indeed getting regulation up to speed to provide sane guardrails will help.
@bert_hubert @divVerent
@bert_hubert @jwildeboer Out of curiosity, how does on check? Does user traffic actually hit AWS (or even just Amazon managed DNS domains)?
This is precisely what I will try to check once I can use it, and annoy customer support and regulators about it.
@jwildeboer @bert_hubert I will check that once I can use it. Definitive will sniff the traffic.
Also the website may be used for logging in from a laptop.
Plus, the part that their use of MS and Amazon for E-Mail implies that they can still be arbitrarily threatened with US sanctions.
So, if none of the user data based flows go through these domains, that would be good, but they still need to move off the MS Teams suite at least, or else MS can basically fire their employees.
@jeffreyb @bert_hubert Ik weet niet hoe het bij AWS werkt maar Azure, bijv, heeft data centers in de EU. Het zou me verbazen als dat voor AWS niet ook zo was. Alle hardware en software is onderhevig aan EU wetgeving dan en wordt beschermt door de GDPR wetgeving.
Geloof ik dat dat waterdicht is? He-le-maaaaal niet. Maar het is een stap in de goede richting en zoals Jeffrey al aangeeft, dat maakt het gemakkelijker om straks naar een volledig EU native systeem over te stappen.
@jeffreyb @bert_hubert o ja en inderdaad dan is er die CLOUD wetgeving.
Ben benieuwd of de EU die nog gaat uitdagen maar ik weet niet of dat kan en hoe.
@jeffreyb @bert_hubert I don't know what it's like in AWS but Azure has data centers in the EU. I'd be surprised if it wasn't the same for AWS. All the hardware and software is subject to EU law then and data would be protected by GDPR legislation.
Do I believe that's watertight? Ab-so-luuute-ly not. But it's a step in the right direction and as Jeffrey already pointed out, it would make it easier to switch to a fully native EU system later.
@bert_hubert En Wero kan geen "oudewetse" betalingskarten aanbieden.
Dus zonder en iPhone of en Android mobieltje (beide met een OS dat in de USA ontwikkeld is), is Wero nutteloos.
Dus ik kan tussen een Mastercard/VISA kaart van bvb de ING of Android/iPhone en Wero kiezen.
In beide geval ben ik gedwongen om Amerikaans systemen te gebruiken om voor mijn boodschappen te kunnen betalen.

The European Central Bank (ECB) is the central bank of the European Union countries which have adopted the euro. Our main task is to maintain price stability in the euro area and so preserve the purchasing power of the single currency.