▲ 307 ▼ EU’s new social media child protection rules to require all social media accounts to produce state ID - Leaked documents suggest that some existing accounts will also be subject to identification che… (www.independent.ie) submitted 2 weeks ago by Mustachius_Grumpius@thelemmy.club to c/technology@lemmy.world 63 comments fedilink hide all child comments Full title: EU’s new social media child protection rules to require all social media accounts to produce state ID - Leaked documents suggest that some existing accounts will also be subject to identification checks
[+] DrunkenDuckling@lemmus.org -10 points 2 weeks ago (5 children) https://ageverification.dev/ The framework is anonymous and open source. permalink fedilink source parent hideshow 5 child comments replies: [–] Cethin@lemmy.zip 16 points 2 weeks ago (4 children) Even if it's secure (no software is ever 100% secure), it can't be anonymous. How could they verify your ID? Maybe they theoretically don't store the record, and the checks after the first don't provide it, it can't be anonymous or it's worthless for ID verification. permalink fedilink source parent hideshow 4 child comments replies: [–] Puddinghelmet@lemmy.world 3 points 2 weeks ago* (last edited 2 weeks ago) (3 children) That's the cool part, they found a way to keep it anonymous and still be ID verification, it's called a white card, a simple yes or no if you're 18+, it's like you get a simple white card from a verified institution like a bank saying you're 18+ with no other information like... How is that not anonymous? Search for zero-knowledge proof, and the techniques behind it Whatsapp is less safe than this Sources for ZKP: https://ageverification.dev/av-doc-technical-specification/docs/annexes/annex-B/annex-B-zkp/ https://en.wikipedia.org/wiki/Elliptic_Curve_Digital_Signature_Algorithm Vulnerabilities: https://www.encryptionconsulting.com/education-center/what-is-ecdsa/ [Api2025] Rutchathon Chairattana-Apirom, Franklin Harding, Anna Lysyanskaya, and Stefano Tessaro, “Server-Aided Anonymous Credentials,” available at https://eprint.iacr.org/2025/513, 2025 permalink fedilink source parent hideshow 3 child comments replies: [–] Digit@lemmy.today 4 points 2 weeks ago Sounds too good to be true. ... But, if it's as you say... sure, lets use it to let pedos know where to target. Oh, sorry, I mean, use it to "protect children". permalink fedilink source parent [–] Cethin@lemmy.zip 3 points 2 weeks ago (1 child) If I'm understanding it correctly, and I'm pretty sure I am, it requires a witness, like I said. That witness has to be trusted to not reveal any information. The receiver doesn't get any information theoretically, but it requires that someone check your ID. That's pretty obvious though because how else could it work? permalink fedilink source parent hideshow 1 child comment replies: [–] Puddinghelmet@lemmy.world 1 point 1 week ago You mean a system that automatically checks it? Your bank already has that data so its not a person or something permalink fedilink source parent
[–] Cethin@lemmy.zip 16 points 2 weeks ago (4 children) Even if it's secure (no software is ever 100% secure), it can't be anonymous. How could they verify your ID? Maybe they theoretically don't store the record, and the checks after the first don't provide it, it can't be anonymous or it's worthless for ID verification. permalink fedilink source parent hideshow 4 child comments replies: [–] Puddinghelmet@lemmy.world 3 points 2 weeks ago* (last edited 2 weeks ago) (3 children) That's the cool part, they found a way to keep it anonymous and still be ID verification, it's called a white card, a simple yes or no if you're 18+, it's like you get a simple white card from a verified institution like a bank saying you're 18+ with no other information like... How is that not anonymous? Search for zero-knowledge proof, and the techniques behind it Whatsapp is less safe than this Sources for ZKP: https://ageverification.dev/av-doc-technical-specification/docs/annexes/annex-B/annex-B-zkp/ https://en.wikipedia.org/wiki/Elliptic_Curve_Digital_Signature_Algorithm Vulnerabilities: https://www.encryptionconsulting.com/education-center/what-is-ecdsa/ [Api2025] Rutchathon Chairattana-Apirom, Franklin Harding, Anna Lysyanskaya, and Stefano Tessaro, “Server-Aided Anonymous Credentials,” available at https://eprint.iacr.org/2025/513, 2025 permalink fedilink source parent hideshow 3 child comments replies: [–] Digit@lemmy.today 4 points 2 weeks ago Sounds too good to be true. ... But, if it's as you say... sure, lets use it to let pedos know where to target. Oh, sorry, I mean, use it to "protect children". permalink fedilink source parent [–] Cethin@lemmy.zip 3 points 2 weeks ago (1 child) If I'm understanding it correctly, and I'm pretty sure I am, it requires a witness, like I said. That witness has to be trusted to not reveal any information. The receiver doesn't get any information theoretically, but it requires that someone check your ID. That's pretty obvious though because how else could it work? permalink fedilink source parent hideshow 1 child comment replies: [–] Puddinghelmet@lemmy.world 1 point 1 week ago You mean a system that automatically checks it? Your bank already has that data so its not a person or something permalink fedilink source parent
[–] Puddinghelmet@lemmy.world 3 points 2 weeks ago* (last edited 2 weeks ago) (3 children) That's the cool part, they found a way to keep it anonymous and still be ID verification, it's called a white card, a simple yes or no if you're 18+, it's like you get a simple white card from a verified institution like a bank saying you're 18+ with no other information like... How is that not anonymous? Search for zero-knowledge proof, and the techniques behind it Whatsapp is less safe than this Sources for ZKP: https://ageverification.dev/av-doc-technical-specification/docs/annexes/annex-B/annex-B-zkp/ https://en.wikipedia.org/wiki/Elliptic_Curve_Digital_Signature_Algorithm Vulnerabilities: https://www.encryptionconsulting.com/education-center/what-is-ecdsa/ [Api2025] Rutchathon Chairattana-Apirom, Franklin Harding, Anna Lysyanskaya, and Stefano Tessaro, “Server-Aided Anonymous Credentials,” available at https://eprint.iacr.org/2025/513, 2025 permalink fedilink source parent hideshow 3 child comments replies: [–] Digit@lemmy.today 4 points 2 weeks ago Sounds too good to be true. ... But, if it's as you say... sure, lets use it to let pedos know where to target. Oh, sorry, I mean, use it to "protect children". permalink fedilink source parent [–] Cethin@lemmy.zip 3 points 2 weeks ago (1 child) If I'm understanding it correctly, and I'm pretty sure I am, it requires a witness, like I said. That witness has to be trusted to not reveal any information. The receiver doesn't get any information theoretically, but it requires that someone check your ID. That's pretty obvious though because how else could it work? permalink fedilink source parent hideshow 1 child comment replies: [–] Puddinghelmet@lemmy.world 1 point 1 week ago You mean a system that automatically checks it? Your bank already has that data so its not a person or something permalink fedilink source parent
[–] Digit@lemmy.today 4 points 2 weeks ago Sounds too good to be true. ... But, if it's as you say... sure, lets use it to let pedos know where to target. Oh, sorry, I mean, use it to "protect children". permalink fedilink source parent
[–] Cethin@lemmy.zip 3 points 2 weeks ago (1 child) If I'm understanding it correctly, and I'm pretty sure I am, it requires a witness, like I said. That witness has to be trusted to not reveal any information. The receiver doesn't get any information theoretically, but it requires that someone check your ID. That's pretty obvious though because how else could it work? permalink fedilink source parent hideshow 1 child comment replies: [–] Puddinghelmet@lemmy.world 1 point 1 week ago You mean a system that automatically checks it? Your bank already has that data so its not a person or something permalink fedilink source parent
[–] Puddinghelmet@lemmy.world 1 point 1 week ago You mean a system that automatically checks it? Your bank already has that data so its not a person or something permalink fedilink source parent