Different people know different things about us, and that’s completely normal. Friends, colleagues, employers, institutions and the services we use all meet us in different contexts. We don’t give every one of them the same access to our lives.
Something can be perfectly appropriate to share in one situation and completely out of place in another.
Online, those boundaries are easier to lose.
The same email, phone number, wallet address or persistent identifier can connect activity that happened in completely different parts of your life.
Digital identity now has to solve both aspects of that problem: continuity when we need it, without making everything automatically linkable.
Inside SourceLess, 𝐒𝐓𝐑.𝐃𝐨𝐦𝐚𝐢𝐧 is a human-readable identity recorded on-chain, purchased once and owned for life, and used across connected services. 𝐙𝐊𝟏𝟑 is being developed so that using the same identity doesn’t have to mean revealing the same information every time — ownership or certain attributes can be verified without exposing the information underneath.
We say things privately that we’re still trying to figure out ourselves. We ask questions we wouldn’t ask publicly.
Research on digital surveillance has found that simply 𝐟𝐞𝐞𝐥𝐢𝐧𝐠 𝐰𝐚𝐭𝐜𝐡𝐞𝐝 𝐜𝐚𝐧 𝐜𝐡𝐚𝐧𝐠𝐞 𝐡𝐨𝐰 𝐩𝐞𝐨𝐩𝐥𝐞 𝐜𝐨𝐦𝐦𝐮𝐧𝐢𝐜𝐚𝐭𝐞. Researchers call it a chilling effect: people hold back, avoid certain subjects or censor themselves.
Private messaging affects more than data security. It affects how freely people speak.
Europe is dealing with exactly that dilemma now: 𝐡𝐨𝐰 𝐭𝐨 𝐩𝐫𝐨𝐭𝐞𝐜𝐭 𝐜𝐡𝐢𝐥𝐝𝐫𝐞𝐧 𝐟𝐫𝐨𝐦 𝐚𝐛𝐮𝐬𝐞 𝐨𝐧𝐥𝐢𝐧𝐞 𝐰𝐢𝐭𝐡𝐨𝐮𝐭 𝐬𝐮𝐛𝐣𝐞𝐜𝐭𝐢𝐧𝐠 𝐩𝐫𝐢𝐯𝐚𝐭𝐞 𝐜𝐨𝐦𝐦𝐮𝐧𝐢𝐜𝐚𝐭𝐢𝐨𝐧 𝐭𝐨 𝐛𝐫𝐨𝐚𝐝 𝐬𝐜𝐚𝐧𝐧𝐢𝐧𝐠.
In 𝐒𝐭𝐫𝐓𝐚𝐥𝐤, conversation content isn’t kept in a permanent central archive. On the web, encryption keys are generated locally, your private key stays with you, and 𝐒𝐓𝐑.𝐃𝐨𝐦𝐚𝐢𝐧 access means you don’t need a phone number or email to use the service.
An ID verification company is suspected of being responsible for a data breach involving 153 million identity cards that were put up for sale to criminals! The cache includes drivers licenses, travel documents, medical cards, and other government issued IDs from North American victims.
This is another example of how companies are taking and storing personal and private identity documents which are eventually hacked and exposed for criminal activities.
We need better privacy rights.
How about we start with prohibiting the storage of personal Identity documents? There are legitimate needs to validate someone’s identity, but once it is complete, the documentation provided should be immediately purged. Let’s reduce the risks. The exposure of such documents can cause significant financial and reputational harms. By actively deleting data that is no longer required, we greatly reduce the exposure risks from data breaches.
So why don’t we do it? Because deleting private and personal data goes against business culture. There is value there. Something to be used or sold later for an economic advantage. This is where public security and safety collide with corporate interests. Regulations are the only fix when economic incentives are in conflict with consumer protection.