4 ms·
This is not as true as it used to be, at least in certain states. Under CCPA/CPRA in California, you can request that personal information is removed. There a
by nugget 4y ago
This is not as true as it used to be, at least in certain states.
Under CCPA/CPRA in California, you can request that personal information is removed. There are half a dozen other laws around the US that allow for similar requests in different forms.
Enforcement is still hit or miss. Lobbyists are starting to fight back against the most effective laws, for example:
https://www.chicagotribune.com/opinion/commentary/ct-opinion-biometric-privacy-law-illinois-white-castle-liability-20230306-3a3642hgurgzjomqkfr3r35wee-story.html https://www.chicagotribune.com/opinion/commentary/ct-opinion...
I'm involved in the fight to strengthen and expand these laws, and overall I'm hopeful for the future.
- caseysoftware 4y agoThere are exceptions for LEO in each of the relevant laws - cited in the article - but thanks for fighting this battle. We didn't get this way overnight so while I'd love my idea to fly immediately, I appreciate people pushing things the right direction.
- nugget 4y agoAs a rule, if law enforcement has a warrant then it's going to be difficult to prevent them from gaining access. You can self-host and encrypt but that's difficult for mainstream users to do, and even for experts, it limits the tools you have access to. You can also be prosecuted for refusal to decrypt a device since SCOTUS hasn't yet ruled on the scope of the 5th amendment's protections with respect to encrypted personal devices. I think the best solution is to set content to auto-delete (unless flagged) after some period of time. You can't turn over what you don't have.
- giantg2 4y ago"I think the best solution is to set content to auto-delete (unless flagged) after some period of time." This is basically a necessity in on-site systems to free up space for additonal recordings anyways. Run a few cameras at decent resolution even at a fairly low framerate and you're looking at a couple TB per month.
- JohnFen 4y agoMost systems (I think -- at least the ones I've seen) let you set it up so video is only recorded when the camera sees movement. Depending on what's in the field of view, that seriously cuts down on the memory requirement. Even inexpensive commercial systems will also allow you to specify areas in the field of view to ignore motion in, so that swaying trees and the like won't constantly trigger recording. I have three cameras recording at a decent resolution and framerate, and together, about two weeks of video takes up less than 32Gb, because most of the time nothing is moving in the fields of view.
- giantg2 4y agoTrue, depending on the circumstances that works. It doesn't work great from some angles or other environmental factors. It works great for a door bell shot though.
- JohnFen 4y ago> You can self-host and encrypt but that's difficult for mainstream users to do It's really not. You can buy off-the-shelf systems from Amazon right now for around $500 that your grandmother could set up and have running without difficulty. The real problem is the perception that this is a difficult thing for non-techy people to do.
- nobody9999 4y ago>Under CCPA/CPRA in California, you can request that personal information is removed. There are half a dozen other laws around the US that allow for similar requests in different forms. CCPA/CPRA is a minor start, IMHO. Telecoms need to collect and store usage information (including call detail) to perform billing functions. As with most such laws, there are loopholes big enough to drive a column of tanks through. And many other corporations collect and store data both for billing and because they can [mine|analyse|sell] such data. Just being able to request removal of "data" isn't nearly enough. Unless there are unambiguous opt-in data collection/retention policies, with clear, concise language about how such data could be used. What's more, such policies should apply to any and all third parties providing services to corporations with such data. Further, as another comment[0] in this discussion pointed out, the Third-Party Doctrine should be gutted and a requirement that all government agencies collect data for law enforcement purposes through the issuance of warrants by judges that specify the "probable cause, supported by oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized."[1] This is (unfortunately) a wide-ranging issue, with a growing number of industries (autos, electronics, "cloud" services, etc., etc., etc.) collecting, storing, using and selling all sorts of PII. From a privacy perspective, this is a nightmare, the CCPA notwithstanding -- even in California. [0] https://news.ycombinator.com/item?id=35073264 https://news.ycombinator.com/item?id=35073264 [1] https://www.law.cornell.edu/constitution/fourth_amendment https://www.law.cornell.edu/constitution/fourth_amendment
- JohnFen 4y ago> CCPA/CPRA is a minor start, IMHO. That's a real understatement. When I see how much effort is being put into neutering even the minor protections that has, I wonder how we'll ever get anything like reasonable protection.
- nugget 4y agoIf you're interested in advancing more effective privacy legislation (or just curious in general about what's going on out there), drop me an email and I can loop you into some interesting (and real-world-productive, not academic or theoretical) discussions with folks at the forefront of the effort.