this post was submitted on 18 Jul 2025
335 points (100.0% liked)

Buy European

6597 readers
768 users here now

Overview:

The community to discuss buying European goods and services.


Matrix Chat of this community


Rules:

  • Be kind to each other, and argue in good faith. No direct insults nor disrespectful and condescending comments.

  • Do not use this community to promote Nationalism/Euronationalism. This community is for discussing European products/services and news related to that. For other topics the following might be of interest:

  • Include a disclaimer at the bottom of the post if you're affiliated with the recommendation.

  • No russian suggestions.

Feddit.uk's instance rules apply:

  • No racism, sexism, homophobia, transphobia or xenophobia.
  • No incitement of violence or promotion of violent ideologies.
  • No harassment, dogpiling or doxxing of other users.
  • Do not share intentionally false or misleading information.
  • Do not spam or abuse network features.
  • Alt accounts are permitted, but all accounts must list each other in their bios.
  • No generative AI content.

Useful Websites

Benefits of Buying Local:

local investment, job creation, innovation, increased competition, more redundancy.

European Instances

Lemmy:

Friendica:

Matrix:


Related Communities:

Buy Local:

Continents:

European:

Buying and Selling:

Boycott:

Countries:

Companies:

Stop Publisher Kill Switch in Games Practice:


Banner credits: BYTEAlliance


founded 5 months ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] anamethatisnt@sopuli.xyz 95 points 1 day ago (2 children)

"Don't worry, we encrypt all the data"
"I've heard as part of the prism program NSA has the encryption key?"
"I don't know the answer to that"

I wouldn't dare believe that anything in AWS or Azure or Google Cloud is out of reach for the US agencies unless the end-user has encrypted it with a key that the cloud provider doesn't have access to.

[โ€“] fistac0rpse@fedia.io 26 points 1 day ago (2 children)

Some services in Azure, like storage accounts let you encrypt data with your own key in addition to MS's. But there's always some level of implicit trust with cloud based services, so y'know

[โ€“] hemko@lemmy.dbzer0.com 34 points 1 day ago* (last edited 1 day ago) (1 children)

Yes, but the encryption keys are stored in an azure key vault, so Microsoft still has the keys.

There's no difference whether you use customer managed keys or not, Microsoft always has the keys but customer managed keys are more hassle to give an illusion of security.

Yes there's other reasons to use them, but not to protect against Microsoft/us gov spying

[โ€“] CallMeAnAI@lemmy.world -5 points 1 day ago* (last edited 1 day ago) (1 children)

Which is why companies that are concerned use something like vault do keys via API, and rotate them often instead of default services.

Anyone who cares is perfectly able to encrypt the entire system via third party tools which includes many foss projects.

The default 15 years ago was fuck it. AWS is pretty much the only reason security on the web is as *good as it is. At least Russia and China don't have free reign over your data ๐Ÿคทโ€โ™‚๏ธ.

[โ€“] ramble81@lemmy.zip 6 points 1 day ago

You missed their point, or youโ€™re using a different term for โ€œvaultโ€. If youโ€™re talking something like KeyVault, it still exists on Microsoft hardware, which means ultimately they could access it.

The only way they would have a lot of trouble is if you only stored the encrypted blob on their platform and then streamed it to something off platform (AWS, on-premises, etc. ) and decrypted it there so they never had access to the key.

[โ€“] anamethatisnt@sopuli.xyz 5 points 1 day ago

That's why my data lives on redundant disks in the basement and my remote backup lives in a closet at my parents house. :)

[โ€“] slazer2au@lemmy.world 4 points 1 day ago (1 children)

Honestly that is the right answer.

Why would a media manager at MS know about what data is handed off to the NSA?

[โ€“] anamethatisnt@sopuli.xyz 6 points 1 day ago (1 children)

If the answer was no then I imagine being able to say so would be good for Microsoft in regards to both Public and Legal Affairs, so the fact that he doesn't know do say something in my opinion.

[โ€“] slazer2au@lemmy.world 4 points 1 day ago

Knowing what the US is like for gag orders saying no would open a can of shareholder worms they don't want to touch at any distance.