beige.party is one of the many independent Mastodon servers you can use to participate in the fediverse.
A home to friendly weirdos. The Grey Gardens of the Fediverse (but beige). Occasionally graphically cacographic. Definitely probably not a cult (though you'll never be 100% sure). Beige-bless 🙏

Server stats:

449
active users

I'm really trying to make sense of the new @mozillaofficial privacy policy.

Here's where I'm getting tripped up:

> Mozilla doesn’t sell data about you (in the way that most people think about ‘selling data’)

OK, sure. But if Moz isn't "selling my data in the way that most people think about selling data" then how *is* Moz selling my data?

@pluralistic @mozillaofficial Apparently it has to do with CCPA’s definition of “selling data” which simply includes data being transferred to any third party for any reason. Because Mozilla uses tools for collecting usage metrics and has some marketing and tracking stuff built in, any third party involved in this would receive this data, and the CCPA considers this “selling data”.

It can apparently be so over-broad that service providers have included this kind of language simply for your data being hosted in their services in a third party provider like Hetzner, AWS, etc.

So it appears to be some potentially over-broad definitions in law.

@bedast @pluralistic @mozillaofficial I don't buy it, sorry to say. There are graceful ways for orgs + lawyers to handle this. Rather than a broad clause like that, you can separate collection & usage into sections and describe it.

For ex, in cases where data is necessary for payment processing, email subs etc my orgs specify that collection + usage and the reason it's warranted.

Mozilla does telemetry I won't do, but still could've written that in specific terms. No one would have bat an eye.

BedastGPT

@profdiggity @pluralistic @mozillaofficial There have certainly been arguments that Mozilla communicated this poorly. They used boilerplate legal nonsense in their terms of use that tends to frighten a lot of people who don’t understand that hosting solutions such as AWS are “third parties” which you have to disclose sharing data to.

@bedast @pluralistic @mozillaofficial it's a hard explanation for me to accept given my experience with Mozilla and folks at Mozilla. They know this stuff re: data and licensing extremely well.

This response seems like a smokescreen, and one with multiple iterations.

I wish Mozilla and Firefox well. There might be some soul-searching here to do and some re-centering of the org around its core values.

@profdiggity @pluralistic @mozillaofficial I'm a user of medical devices and I ran across someone complaining that Abbott has similar data sharing boilerplate in order to use their Libre sensors. Though it's worth noting Abbott has a bit more regulation to follow via HIPAA.

But one thing they do is host a page that explains all of the ways they use your data with adequate detail. It's possible HIPAA requires this, but it's something other companies could follow to help with trust.

@bedast @profdiggity @pluralistic @mozillaofficial Even if it is just a case of boilerplate language that's overbroad and they aren't currently planning on harvesting as much data as possible they now could do so later without needing to revise their terms.

No. They need to be clearer, and it makes sense for us to be on guard for the worst.