5 ms·
Hi, this is Max from Notion. First: This is documented and we also warn users when they publish a page. But, that’s not good enough! Second: We don’t like thi
by mschoening 5mo ago
Hi, this is Max from Notion.
First: This is documented and we also warn users when they publish a page. But, that’s not good enough!
Second: We don’t like this and are looking at ways to fix this either by removing the PII from the public endpoints or by replacing it with an email proxy similar to GitHub’s equivalent functionality for public commits.
P.S: Some folks here have speculated that this should be a 1 minute fix. Unfortunately that is not the case. :(
- ktallett 5mo agoConsidering it was reported in 2022, and it is obviously an error, I don't think it is unfair for people here to have expected it to be fixed by now since it was first reported.
- mschoening 5mo agoI agree. We will do better.
- _kl 5mo agoCan you please share an update when you can? will this be prioritised and fixed or not.
- wferrell 5mo agoCan you share the warning? I made a public page and would say it was not clear to me this was a consequence of doing that. The warning as I remember it (a month ago) makes it sound like the information on this page is going to be public -- not - oh yeah the email addresses of everyone who edited this page will also be leaked.
- mschoening 5mo agoWhen you start contributing to a page you see this: https://cleanshot.com/share/trYdqYFZ https://cleanshot.com/share/trYdqYFZ This is pretty meh. We will deploy more explicit messaging while we mitigate this properly.
- janalsncm 5mo agoThe warning is too vague. “May become visible” kind of sounds like Notion doesn’t know whether they will become visible or not.
- halJordan 5mo agoIt's definitely weasel wording. And moreover, it's honestly tiring to constantly have these weasel words carrying such weight, and then jackasses getting bent out of shape that they aren't given the benefit of the doubt anymore.
- reddalo 5mo agoAlso, to me, "anyone who can view this page" sounds like "anyone _in this workspace_ that can view this page", not "anyone _on the public web_".
- mschoening 5mo agoJust following up that we've made it more explicit while we work on this: https://cleanshot.com/share/8yFpGVDQ https://cleanshot.com/share/8yFpGVDQ
- nashashmi 5mo agoPlease also especially clarify that IDs of contributors will be public. Meh is good, but this was a bit too simple. There is a way to mitigate this. Re-hash and cache the page to be meta-less for public URLs. I guess that requires a huge amount of coding for a team that has not built the product from the ground up. But I feel like a "copy and paste" could fix that (remove author data).
- cm11 5mo agoI will speculate that Notion has had more than one minute to fix it.
- aucisson_masque 5mo ago> P.S: Some folks here have speculated that this should be a 1 minute fix. Unfortunately that is not the case. :( 4 years.
- blitzar 5mo agoWe have top men working on it right now
- aucisson_masque 5mo agoHaha
- hluska 5mo agoThis flaw was reported four years ago. Forgive me if I don’t believe a word of what you’re saying.
- andrelaszlo 5mo agoWhile you're here, why is Notion so slow on Firefox? I mean extremely slow.
- gib444 5mo agoThe answer is usually that the devs only use Chrome.
- markdown 5mo ago> P.S: Some folks here have speculated that this should be a 1 minute fix. Unfortunately that is not the case. :( Nonsense! It is a 1 minute fix. You just don't want to take a $ hit from inconveniencing users by breaking another part of your app. Pull your thumb out and do the right thing. Implement the 1 minute fix, and then spend the rest of the week or month fixing the other parts of your app that might break as a result of fixing this.
- danpalmer 5mo agoWhat are you doing to address the process/structural issues that allowed such a privacy issue to get to production? What are you doing to address the support issues that allowed such a privacy issue to remain after being reported? What are you doing to address the issues with the company's prioritisation framework that allowed such a privacy issue to remain for 4 years? Which authorities are you reporting the privacy issue to in line with local requirements?
- dspillett 5mo ago> P.S: Some folks here have speculated that this should be a 1 minute fix. Unfortunately that is not the case. :( Ignoring the “the bug was raised four years ago” part and assuming you just mean it isn't as easy as that and might break other things: what other things could resolving this potentially break? If the issue is that the PII needs to be present for private/authenticated views, would not making it unavailable everywhere including there, and fixing that later, be the better option over leaving the PII present for public views for a second longer?
- popalchemist 5mo agoYou should explain WHY that is not the case, or else accept that everyone's takeaway about this is that you've KNOWN you've been leaking your users' data for FOUR YEARS and have done nothing about it by CHOICE.
- account42 5mo agoFor a PII leak like this, why do you think it's OK to wait for "looking at ways to fix this"? It you can't do anything better you shut those endpoints (or whole servers) down IMMEDIATELY and then deal with the fallout afterwards. Your attitude towards this is beyond unacceptable.