You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
That means that there is all information provided to the server that would be needed to build movement profiles around a phone number.
The luca app maintainers mentioned multiple times that the app is built based on trust to them, so this is not an issue from their perspective.
But as I see no reason why I should trust a few incompetent venture-funded 🤡 with influencer friends, I don't see why the entire security concept should work out.
From an architectural perspective, it would be totally possible (e.g. by utilizing the signal protocol and decentralized storage of the personal/tracking data) to work without a trusted central platform to tackle the same issues. But as the luca team didn't come up with these ideas themselves, I don't think it makes sense to discuss them here 🤷♀️.
The client leaks the following information via the API to the luca servers:
That means that there is all information provided to the server that would be needed to build movement profiles around a phone number.
The luca app maintainers mentioned multiple times that the app is built based on trust to them, so this is not an issue from their perspective.
But as I see no reason why I should trust a few incompetent venture-funded 🤡 with influencer friends, I don't see why the entire security concept should work out.
From an architectural perspective, it would be totally possible (e.g. by utilizing the signal protocol and decentralized storage of the personal/tracking data) to work without a trusted central platform to tackle the same issues. But as the luca team didn't come up with these ideas themselves, I don't think it makes sense to discuss them here 🤷♀️.