This shouldn’t come as a huge surprise. Meta is moving forward with their plans for Theads and the Fediverse, and their adjusted terms reflect a new impending reality for Fediverse users.

  • Ottomateeverything@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    3 years ago

    Provided that a Third Party User is followed by or following a Threads account, Meta will ingest these pieces of data specifically:

    Username

    Profile Picture

    IP Address

    Name of Third Party Service

    Posts from profile

    Post interactions (Follow, Like, Reshare, Mentions)

    So if you follow a threads user or even if a threads user just follows you, they pull all this data?

    IMO this seems like reason to defederate across the board. Someone else can leak your info to Meta.

  • maynarkh@feddit.nl
    link
    fedilink
    arrow-up
    0
    ·
    3 years ago

    Stupid question, couldn’t instances just say they don’t allow scraping specifically from Facebook in their ToS and then report them for GDPR violations if they do?

    As in say that have the ToS says that “we’ll give your data to other instances because that’s how the Fediverse works, we won’t give your data to Facebook” and also “Facebook is not allowed to federate, and is not allowed to pull data”.

    Then just say that your data subjects don’t consent to any data pulling by Facebook, and Facebook scraping your system even through ActivityPub is a violation of GDPR.

    • Razp@lemm.ee
      link
      fedilink
      arrow-up
      0
      ·
      3 years ago

      But GDPR is the European thing, and Threads isn’t even available in Europe.

      • Squizzy@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        3 years ago

        If there service is affecting a service in the EU then they will have to abide by Gdpr. Fact is if your server is in the EU and they scrape it they are active in the EU.

      • Ctri@beehaw.org
        link
        fedilink
        English
        arrow-up
        1
        ·
        3 years ago

        GDPR is a protection that applies to European citizens, regardless of where they’re situated. companies don’t get a pass because they blocked IP addresses coming from Europe.

        now, enforcement outside the EU is a challenge, but the law is written in such a way that it covers the personal info of every EU citizen regardless of location.