icedterminal

@icedterminal@lemmy.world
0 Post – 126 Comments
Joined 11 months ago

It doesn't matter if it's apps that use data or apps that don't use data. If your employer requires you to install an app on your personal phone, you can refuse. It is your legal right. If you choose to exercise your legal rights, your employer must provide you with an alternative method that doesn't involve your personal phone. Whatever they choose.

If you agree to installing a work related app on your personal phone, you must be compensated. If they refuse to compensate, you're back to square one. They must provide you alternatives.

If your employer refuses to supply you with the tools to complete your job and/or refuse to compensate personal phone use for work related reasons, they are breaking the law. If they fire you for exercising your rights, it's unlawful termination.


Here's an example: My employer started requiring 2FA for the computer logins. They wanted me to install an app by Cisco. I said no. You can provide a locked down phone that can be used for the sole purpose of 2FA. They declined as that isn't in their budget and "unnecessary". They later came back with a little keychain that's bound to my account. I press a button on the keychain and get the 2FA code. I can do my job and they did their job and gave me the tools to do so.

My examples are the common scenarios. Apps typically use data. Even if in your case data isn't used, your employer is still required to provide you with the tools necessary to complete your job. It's as simple as that.

5 more...

No matter what app it is, if employers require one to be used on a smartphone, they are legally obligated to provide you with a work phone. If they refuse, they are legally obligated to provide reimbursement for your personal mobile plan. This can be as simple as $5 or $10 added monthly to a paycheck, or as detailed as actual usage down to the kilobyte.

Even if it's as simple as clocking in and out. If they won't provide a phone or reimburse, they must have some other method to complete the task. Whether it be a computer or paper. Failing that, they are not upholding the law of providing you tools necessary to complete your job. Which means if they terminate you for any of the above under "not able to do your job", it is retaliation for you requiring them to do their job. You could potentially win a suit against them.

9 more...

Oh my. You're doing it wrong. Exposing the unencrypted connection without the proper security measures is putting yourself at risk. Regardless of how strong you set the password, the connection can still be abused in all manner of ways. If you read the jellyfin documentation, you'd see the developers clearly state you should never do this. You need to put Jellyfin behind server software. Specifically a reverse proxy. I use NGINX. You can setup your connection to be secure this way. You can now also use Cloudflare if you have cache turned off. And if you really wanna go the extra mile, route it behind a VPN. Though this makes it harder for those you share it with or some devices that don't support VPN.

Please revise your connection. If you need help, feel free to reach out.

5 more...

...well yeah...

If a US based company (via their websites) collects data on citizens in the EU, they have to comply. Otherwise the EU can issue fines. This is why some websites are geo-blocked.

If you are a website admin and know some of your traffic will come from the EU, you have to comply with the GDPR set for their residents, or block anyone from that region from accessing. You have complied by taking one of those actions.

23 more...

Some apps can't be posted on store fronts for one or more reasons.

Side loading definitely has its place and is a welcome change to iOS.

13 more...

"VPN user voting is not allowed"

Lol.

1 more...

Your entire statement here stems from not knowing what you're talking about. That's OK. I'll provide some insight.

Secure Boot is a security feature of UEFI that only allows trusted, cryptographically signed operating systems to boot. The nature of this prevents rootkits. Software that runs before the OS and injects itself. BIOS has many hard limitations and disadvantages over the modern standard that is UEFI. Your comparison going from 32 to 64 bit architecture is quite fitting. It's not that different. There are many hard limitations and disadvantages to 32 bit. It's unfit for today's standards due to lack of features and security. All aspects of technology have to move forward.

7 more...

No.

  • A Muted user can still follow you and send direct messages. They can see your profile incl. tweets, retweets, and likes. You simply hide their tweets from your timeline/feed only.
  • A Blocked user is prevented from following you and cannot send direct messages. They cannot see your profile incl. tweets, retweets, and likes. You are preventing any and all interaction.
5 more...

Once you agree to letting friends and family access your hosted services, you become the tech support for any problems. Whether that be your fault, user error, etc. You should absolutely limit who you give access to. In my case, only three people can and that's immediate family. No friends, no extended family. I don't wanna deal with all that mess when I deal with it at work. Don't over extend yourself by being nice.

Using Cloudflare is against the ToS when used for services like Jellyfin. Your account can be limited, closed, or find yourself getting a several hundred dollar bill for data usage because you've breached the terms of service. Additionally, streaming content on free accounts incurs higher latency which I've confirmed myself Argo smart routing massively reduces. https://github.com/jellyfin/jellyfin/issues/9295 - Don't abuse what's free or you may lose it.

Google shouldn't be indexing your domains anyway. If it's flagged your domain, it's been indexed and scanned. Alternatively, it could indicate you have a weak point somewhere on your server and you've been breached. Google's scan picked up whatever it was. Though I doubt this is the case and just a false positive. Double check your robots.txt files and disallow everything. Most index bots respect this. You can use a community sourced bot blocker. https://github.com/mitchellkrogza/nginx-ultimate-bad-bot-blocker

I've been running my own self hosted services for almost a decade. Though I have a background in IT directly doing this kind of stuff daily at work. As long as you have a strong firewall, modern TLS, relevant security headers, automatic tools like fail2ban, and have a strong grasp on permissions, you should be fine. Before I moved everything to non-root docker, it was given its own service user and SELinux policy. Using direct DNS isn't so much of a problem. You shouldn't have any issues. Feel free to reach out if you have any questions.

8 more...

Pretty sure you can see their email address. This should give you the opportunity to message them stating you'll be canceling the subscription. They'll still be able to subscribe on their own.

Everyone knows Denuvo's statement isn't true. There are hundreds of games with Denuvo that have improved performance after being cracked, compared to the legitimately owned version. This conversation pops up all the time. It's quite funny when pirated games have a better experience. At least until Denuvo is removed to cut cost (it's a subscription).

Your use of the Platform is licensed, not sold, to you, and you hereby acknowledge that no title or ownership with respect to the Platform or the Games is being transferred or assigned and this Agreement should not be construed as a sale of any rights.

From the Blizz terms.

WoW has always revolved around having a server handle everything and your client is just the textures/models viewer where you tell the server what to do, I have been fine with this. But I do agree, it should say something else on the button. Other games that are not MMO shouldn't be a "license" to play. If you buy it, you can play it whenever and wherever. Features that are not multiplayer should work regardless. Some things just shouldn't be tied to a server. I really despise modern gaming because of this.

Anecdotal experience: Gran Turismo Sport recently lost its servers. When they went down, the Mileage Exchange shop went with it. This means all the cosmetics for cars. and a few unique cars, are now unobtainable for future players. PD could have patched the shop to be a complete list of everything and you buy it with the plethora of points you will collect in the future as you race. But no, they didn't.

I can't speak for the others, but the Samsung Galaxy Store does come pre-installed. However, Google paid Samsung for the Play Store to be the default action for app installs. So you get both stores and can pick which one you want.

2 more...

From their own privacy policy they outline what they do:

For research and development purposes, we may use datasets such as those that contain images, voices or other data that could be associated with an identifiable person.

To provide location-based services on Apple products, Apple and our partners and licensees, such as maps data providers, may collect, use, and share precise location data, including the real-time geographic location of your Apple computer or device.

Apple’s websites, online services, interactive applications, email messages, and advertisements may use "cookies" and other technologies such as pixel tags and web beacons.

We also use personal information to help us create, develop, operate, deliver, and improve our products, services, content and advertising

At times Apple may provide third parties with certain personal information to provide or improve our products and services, including to deliver products at your request, or to help Apple market to consumers.

Apple may collect location, IP Address, network information, Bluetooth information, connected devices, accessories, personal demographics, browsing history, browser fingerprint, device fingerprint, search history, app data, usage data, performance, diagnostics, product interaction, transaction information, payment information, purchasing records, contacts, social graph, watch history, listening interests, reading list, call metadata, device information, messaging metadata, email addresses, salary, income, assets, health data, ad interaction, in-app purchases, in-app subscriptions, app downloads, music downloads, movie downloads, TV show downloads, Apple ID, IDFA, Random Unique ID, UUID, IMEI, Hardware serial number, SIM serial number, phone number, telemetry, cookies, Nearby WiFi MAC, Siri request history, Web sign-in, songs played, play and pause times, playlists, engagement and library.

Literally all of this is what Google does. The only thing Apple does differently is hinder 3rd party apps to a greater degree. But to be fair, Google has been improving the Privacy features of Android with each version.

Best Buy started doing this with their app. I've used it multiple times already. It's so convenient. Scan the barcode with your camera in the app, it adds to the cart, pay when you're done.

Anecdotal experience: Unfortunately, products that are locked up create a problem. I went in for two items. One of which was a single RAM stick for laptops. The employee refused to give me it even though I was literally going to pay for it on the spot as I had already collected the other item I wanted. He insisted it goes to the register per policy. I quickly got the barcode as he held it, then paid. "There. Paid for. See" as I showed him the screen. Dude was so annoyed as he handed me the RAM.

It's not odd at all. It's well known this is actually the truth. Ask any video editor in the professional field. You can search the Internet yourself. Better yet, do a test run with ffmpeg, the software that does encoding and decoding. It's available to download by anyone as it's open source.

Hardware accelerated processing is faster because it takes shortcuts. It's handled by the dedicated hardware found in GPUs. By default, there are parameters out of your control that you cannot change allowing hardware accelerated video to be faster. These are defined at the firmware level of the GPU. This comes at the cost of quality and file size (larger) for faster processing and less power consumption. If quality is your concern, you never use a GPU. No matter which one you use (AMD AMF, Intel QSV or Nvidia NVENC/DEC/CUDA), you're going to end up with a video that appears more blocky or grainy at the same bitrate. These are called "artifacts" and make videos look bad.

Software processing uses the CPU entirely. You have granular control over the entire process. There are preset parameters programmed if you don't define them, but every single one of them can be overridden. Because it's inherently limited by the power of your CPU, it's slower and consumes more power.

I can go a lot more in depth but I'm choosing to stop here because this can comment can get absurdly long.

6 more...

Lol. You have to understand the context here. This is just translations. Actual code has many, many more eyes on it. An entire university was banned from submitting code to Linux, because of two dumbasses. They found and fixed genuine bugs. Built up lots of trust. Then violated that trust with actual use-after-free bugs submitted intentionally.

The submitted "patches" to the development branch was to prove it's easy to get exploits into high profile open source projects. They ultimately proved the contrary. Making their "research" bunk. The code they submitted never made it past the development testing phase.

2 more...

The battery is sourced from Ganfeng Lithium, CATL, Panasonic, and/or LG Chemical. The majority actually comes from CATL. The world's leading EV battery manufacturer. Various automakers work with them. The cells arrive at the automakers manufacturing and all they do is pack it into a case. The statement they have leading battery tech is disingenuous. No matter which automaker you look at, they're using the same cells from the same sources.

Due to a bunch of political mess with China, both CATL and automakers are trying to get around it. https://www.reuters.com/business/autos-transportation/catl-talks-with-tesla-global-automakers-us-licensing-wsj-reports-2024-03-25/

Lastly, Tesla isn't ahead. China is. It's why automakers are going to them. Credit where it's due, Tesla did push for EV adoption outside of China. But that's about it.

1 more...

Tesla likely uses an incorrect grade/family for the truck. Think bare minimum to be classified as stainless steel. Quality stainless steel is not cheap. A good example is surgical equipment and the DeLorean pointed out earlier in this thread.

https://www.unifiedalloys.com/blog/stainless-grades-families

It's a version of Windows 10 targeted at businesses that choose to run Windows on "Internet of Things" devices. It is a "Long Term Service Channel" release that receives primarily security updates (little to no features updates), because the devices that will use this need to be in service for a very long time. Enterprise Windows typically activates with a licensing server that's subscription based. But you can use the "Microsoft Activation Scripts" to activate it as if it were a retail copy you pick up the store.

Jellyfin gives you 100% control. You're responsible for setting up remote access. Which actually isn't that hard. Several IT and network admins of the community (myself included) hand out documentation on how to do this. Without completely ruining your security.

With Plex, some of the application communication is routed through their network. It requires an active internet connection and you must create an account with them. They have third party analytics embedded, use tracking pixels, beacons and device fingerprinting. Whatever personal data you have supplied is used to serve ads. This being their promoted content that isn't part of your library.

See 2.5.6 here: https://developer.apple.com/app-store/review/guidelines/

It is possible to build perfectly decent web apps but many times they choose not to or it’s too much trouble

On iOS, they quite literally can't in some aspects. They're restricted to using the supplied WebKit Apple enforces. On Android you can use the Blink Web View (Chromium) or Gecko Web View (Firefox). Both of which can be bundled in the app, or you can use the system version.

They have different browsers with limitations but I don’t know about not proper.

Every single iOS "browser" is WebKit. AKA Safari. Due to Apple's plug-in system being proprietary, it's difficult to extend. Third party browsers typically use JavaScript injections which slow down the browsing experience. The supplied WebKit is also watered down and updated on a slower cycle. Apple intentionally makes their browser better.

You're not actually using Microsoft Edge. You're using Safari and it's being identified as such by the UA string. Due to Safari being in last place for web standards feature support, it's not surprising you're coming across the issue.

If you're interested at all:

Google Chrome is a fork of the open source Chromium with several Google proprietary features. Chromium uses the Blink engine. Blink is a fork of a large component of WebKit called WebCore. Apple primarily develops WebKit (and by proxy WebCore), itself being a fork of KHTML and KJS which were actually discontinued this year.

1 more...

Amazon actively blocks VPNs when using their Video or Music services. They also do a DNS check. It's a game of whack-a-mole. Your VPN provider has an IP that works, 24 hours later Amazon have it on the VPN blacklist.

That's not what I see.

screenshot of Adobe photography plan

8 more...

You'd be surprised to learn then that a lot of software does this shit.

1 more...

Not just medication, but just choices regarding their bodies in general. It's appalling. A friend of mine doesn't want kids at all. She has been denied twice to have an elective hysterectomy. The doctors told her they won't in case she decides to have kids.

2 more...

I have no idea what carrier this user is with and I agree that sounds absurd. Photos and videos are automatically downgraded before being delivered. The file size limit is typically below 5MB. Videos are like 480p and photos are 720p. I hate sending photos through MMS and would rather use data with a different messaging app if RCS isnt available.

2 more...

Google Play policy forbids PornHub from being allowed. But yet we have web browsers... Idgi

It's pretty wild how Google search has degraded. The push for SEO has really ruined useful results.

This is a very jaded and warped take with some bias.

2 more...

Just throwing it out there: There's only one new car sold in the US below 20k. The Mitsubishi Mirage.

2 more...

Joke aside, Apple has always been anti-consumer and shitty. Unfortunately.

2 more...

These days, it's becoming less simple than that.

VW and BMW have it all baked into the infotainment system. Most others are doing this as well. Pull the fuse and you lose it all. No radio, no backup camera, etc. This triggers a check engine light because the computer detects the loss of several functions. With some manufacturers this may include driver assistance safety features.

Can't just pull SIMs either. VW place the module for that behind the instrument cluster. Which means you have to disable the entire dashboard to get to it. BMW is inside the infotainment system. These are not designed to be taken apart. So once you get it out of the dash, what good does it do you? If you do manage to remove the SIM, the infotainment will display a warning message. It's a permanent one that won't go away. Tells you to visit the dealer for service. Put the SIM in and the warning message goes away. Mercedes has an eSIM. Which means it's non-removable. It's digital and part of the modem firmware.

Some people have reported success with dummy load antennas. Others have found independent fuses or removed the SIM on select models. YMMV heavily.

Note that when the cellular services are disabled, you lose the following features:

  • Remote start (via the app)
  • Remote safety (automatically call help)
  • Theft tracking
  • Misc. Remote features as advertised.

In the case of Toyota, they do offer the ability to opt out entirely. Once opted out, the app becomes useless.

I commented further down, but I think you are confused with this bit:

RCS limits attaments to 100mb! What the hell, why? I can, today, send 100mb over SMS/MMS, on Verizon, to other Verizon phones. RCS would be a step backward.

This is not true by any means. See here: https://www.verizon.com/support/knowledge-base-14641/

The maximum file size for picture/video messages depends upon the device software and device's network capability. View the signal indicator on your phone to determine which signal is being received:

4G / 4GLTE = 1.2MB image / 3.5MB video

5G / 5G UWB = 1.2MB image / 3.5MB video

Using Verizon Messages = 100MB over Wi-Fi

As an American, it's exhausting.

I can't be reasonable with most because hardly anyone critically thinks. Not asking the important who, what, when, where, why and how questions. It's surface level and whatever has the most attention. It's hard to get someone to think for themselves. Not realising they are in fact easily influenced.

Balancing, customer needs, limitation of hardware/infrastructure. Copper doesn't handle symmetrical download and upload as well (this is where fiber comes in). There can be too much noise resulting in degraded consistency. Its prone to interference and leaks. To improve reliability, you get asymmetrical plans. Most people just want download. Which has historically been the cheaper choice. An example local to my area, a home plan will be 800 down and 20 up. A business plan will be 500 down and 300 up. The business plan costs more.

10 more...

Your statements made me believe the opposite. Though I wasn't condescending. I said it was OK to not know.

Microsoft doesn't say that. They state it adds to the security of your computer before Windows even starts. https://learn.microsoft.com/en-us/windows/security/operating-system-security/system-security/secure-the-windows-10-boot-process

Any device security is multi layered.

Having a mechanism that only accepts trusted boot binaries is pretty critical to fighting malware. Rootkits effectively have total control of whatever you decide to boot because of their persistence. When your hardware has its own security features (Secure Boot, TPM) why not take advantage of them to make the software you run more secure?

If you didn't know, Android, macOS and iOS have their own TPM and Secure Boot implementations that have been enforced and present for over a decade.

Depends. Not every site, or its pages, will be crawled by the Internet Archive. Many pages are available only because someone has submitted it to be archived. Whereas Google search will typically cache after indexed.