@fruitchypear🍐 Perivi Yohanesburgo 🍐
@greatlaketrout
@IvanSanchezIván Sánchez Ortega
@jdelacuevaJavier de la Cueva
@EUCommissionEuropean Commission requiring drm for a digital identity wallet... yikes
apps attesting the hardware and software they run on is fundamentally drm and is awful. it's also just completely backwards, apps shouldn't even have the capability to do that
the os should be attesting this, not the apps
@lumilumizza🍕goxide
@jdelacuevaJavier de la Cueva
@IvanSanchezIván Sánchez Ortega
@EUCommissionEuropean Commission @fruitchypear🍐 Perivi Yohanesburgo 🍐
@greatlaketrout thas has nothing to do with "drm"
It is there because remote service needs assertion, your generated private key is bound to your device and can't be copied to another phone.
And to assert that, a trusted party (google/Apple) asserts the complete chain from hardware up to the os it is ronning on - so no MITM sits within.
Currently there is no other way, other than not using mobile os's
https://berlin.social/@asltf/116104851486148728
If you have a fediverse account, you can quote this note from your own instance. Search https://berlin.social/users/asltf/statuses/116115154819838632 on your instance and quote it. (Note that quoting is not supported in Mastodon.)