Yes, it is my post, and I am trying to find a reason why it won’t work. Sadly, without such a solution, it will be impossible to use many Internet services without having an Android/iOS.

  • Funwayguy@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    31 minutes ago

    This sounds like OpenID with extra steps. A signed JWT could serve the same purpose without reinventing the wheel and inherit all privacy and scope controls out of the box. For example, a site can send a userid and challenge that I hash before authorising my identity provider to attach a signed age attestation to. Provider can’t see the hash contents and the site only gets to see the pre-verified age in the JWT and nothing else identifiable (could even be a regional yes/no of-age value or content flags).

    All that said, you’d be hard pressed to find any company that wouldn’t immediately regect something that could not be collected, sold, or abused. The law was never about the children in the first place and they’re not about to have a change of heart on that any time soon.

  • schnurrito@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    15
    ·
    5 hours ago

    No. Stop being constructive about this. There should not be age verification on the Internet, at all, period, no compromises whatsoever. People who want it to exist do not deserve that anyone work constructively with them, they deserve only complete and fundamental opposition.

    • [object Object]@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 hours ago

      A header that says “user is under 18, no nsfw content” should generally be fine and should be sufficient, or websites could report a tag list like “tag: 18+ reason: explicit nudity” for the client to filter.

      However, that will soon inevitably become “lgbtq content is inherently mature” which is not fine, but probably in the for parents to decide bucket.

      Ultimately, parents need to fucking parent. That’s the problem. But im fine making on device private parental controls better/easier.

      • schnurrito@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 hours ago

        A header that says “user is under 18, no nsfw content” should generally be fine and should be sufficient, or websites could report a tag list like “tag: 18+ reason: explicit nudity” for the client to filter.

        Voluntarily, not mandated by the government; and then without actual verification requirements.

  • Tom@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    ·
    4 hours ago

    Sadly, without such a solution, it will be impossible to use many Internet services without having an Android/iOS.

    Who fed you that line of crap?

    Are you having trouble using many internet services without android/ios right now?

    If not, why not stop pushing this mandatory age verification crap on us?

    • [object Object]@lemmy.ca
      link
      fedilink
      English
      arrow-up
      4
      ·
      3 hours ago

      I got blocked from cloudflare for trying to download my dishwasher’s user manual from the manufacturer’s own website today. That was “suspicious behaviour” to them.

      So yes, internet services are becoming impossible to use right now.

        • [object Object]@lemmy.ca
          link
          fedilink
          English
          arrow-up
          3
          ·
          edit-2
          2 hours ago

          No, I had to use a different website and do a captcha every page on my computer.

          My IP was banned from the manufacturer website, so all my devices didn’t work.

    • hendrik@palaver.p3x.de
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      3 hours ago

      By the way, I’m indeed having trouble using modern, enshittified apps and services. A friend wanted to use their Netflix account and my tablet just shows a black screen, Linux only shows 720p after installing some extras… One of my apps on the phone recently stopped working, because it’s not verified by Google… Some never worked… I can’t use some services because some shitty company wants my private phone number, and I’m not gonna provide it to them… It’s definitely a thing in the modern world.

      • Tom@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 hours ago

        do you think mandatory age verification will prevent/remediate that?

        • hendrik@palaver.p3x.de
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          2 hours ago

          The thing is, age verification as it comes up in politics on a regular basis isn’t about protecting children or anything. It’s about control. Locking things down more and more, plus more internet surveillance. It’s basically the same thing I already experience every other day with my devices and slightly more privacy oriented lifestyle…

  • hendrik@palaver.p3x.de
    link
    fedilink
    English
    arrow-up
    3
    ·
    edit-2
    5 hours ago

    Sorry, I didn’t read the specification. Does it contain something which (in)directly makes Android/iOS a requirement? I mean if it’s just an open protocol how to talk to each other wile doing attestation… Maybe that’s already part of it?! Most important thing I can come up with, would be to mandate public access to the API which grants the token, or connects to the eID, so those government servers actually accept connections from our Linux or FreeBSD phones…

    And better do it for both parties. Otherwise they’re going to come up with some new age verification laws, the phones are fine, but we all have to shut down our internet servers and online forums unless we’re some big company.

    • roundabout@feddit.orgOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      44 minutes ago

      It needs ‘hardware attestation’, so a closed set of OS. It would be much better without any age verification.

      • hendrik@palaver.p3x.de
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        14 minutes ago

        Thanks. “Hardware” was a good search term. But it’s more complicated than that: “[…] SHALL rely on the device’s native cryptographic hardware […], when they are available.” Shall means mandatory in the document. But seems someone put a loophole there. So I guess technically it doesn’t “need” it?! But I’d also guess it’ll be available for 99.9% of users.

        I suspect we’re going to see more of those hardware backed shenanigans anyway. Several entities are pushing for it. For other, unrelated causes as well. And it fits the purpose because now people don’t really own their devices anymore. Which might already be a thing. I recently tried to back up and copy a phone… And, …well… tough luck. Google is in control. There wasn’t much I could do.