Is it safe?

My apologies to Sir Laurence Olivier for stealing his line from Marathon Man. I mean Joplin cloud.

I was reading CNN this morning and came across an article that said the UK had backed down on its demand that Apple provide a backdoor into its E2EE iCloud offerings. Has Joplin received a similar demand or would the demand itself be a secret? Apple has some pretty powerful friends in high places (The Donald being one) who helped convince the UK that this was a bad idea. If the UK feels they can make demands of Apple, what smaller outfits will they now go after? Could they go after Joplin or even Swiss based companies like Proton?

No we didn't get such demand. For now I don't think we're affected with this since we are based in France and the servers too, and EU laws generally are more strict with user privacy.

Perhaps we should setup a warrant canary like rsync as an indication that things are fine.

2 Likes

The UK demand for the backdoor was into the US based servers as well as any in the UK. The US administration balked at allowing UK access to US customer data stored in the US. Perhaps since the UK left the EU they can’t make similar demands on EU based data. I don’t personally store anything on US or Canadian (I’m Canadian) based servers since both countries have been shown to have little respect for privacy in the past. Maybe the US is changing but Canada is not.

1 Like

I would also add that Joplin is open source. If there was something fishy going on in the code, someone with enough skills would likely be able to find it eventually. This is not the case with Apple and other companies that use proprietary solutions - you just have to "trust" them with no way to actually verify the code.

1 Like

Apple themselves have been known to toss customer privacy in the trash. The recent $95 million USD judgment for secretly recording customer's conversations shows that they are not above going for the quick buck. So when they scream about somebody trying to access private data it sounds a little hollow.

Now that Raspberry Pi devices are officially supported for Joplin Server, the cost and ease of use setting up your own server makes this a viable option. This keeps your data on your server in your house.

Can't wait for a Joplin Server app on Umbrel. Tons of Umbrel users would easily setup their Joplin Server in a few clicks. I would have built my own Joplin Server much earlier than I did if it existed.

“Knock Knock”
”Who’s there?”
”We have a warrant…” | [Door just bashes in and swarm of armed officers flows into the room]

Hello Officers. I'd like to introduce you to my friends here, Miss Vera Crypt and my portable buddy Jop Lin. Have fun questioning them. :slight_smile:

If somebody wants to keep something secret they would be advised to keep it in their head. The best encryption in the world is only safe today. Tomorrow some hacker will likely break it wide open or computing power will see some new breakthrough that will render encryption useless.