7 ms·
> If you use iCloud+ and Hide My Email, there is still time to generate more aliases on @icloud.com as the change has not yet landed and the rate limit for crea
by jawiggins 4mo ago
> If you use iCloud+ and Hide My Email, there is still time to generate more aliases on @icloud.com as the change has not yet landed and the rate limit for creating aliases is at least 30 per hour.
Part of the reason to use Hide My Email was that it made keeping myself private hassle-free. Making a system to pre-generate values and then catalog them for later use is quite the hassle.
- SXX 4mo agoYep, but I still generated some for myself just in case and fellow hackers can do the same if they want to. iCloud+ was the best $1 / month custom domain email and email alias service with 100GB of E2EE cloud drive. Obviously it will be sad to see it enshittified for seemingly no reason.
- reaperducer 4mo ago[flagged]
- SXX 4mo agoYou could've at least checked my profile... Problem is that using of own domain is creating huge privacy and cybersecurity risk since you can track all the person profiles across all the databases ever leaked. Its nice as vanity item, but it's better not to use same domain across banks, online forums and porn sites. ;-)
- chucksmash 4mo ago1. Create a domain like myquickanonemailaccount.com. 2. Use the domain exclusively for hosting your own mail, but create a fake account creation page that just temporarily doesn't work. 3. As an added bonus, should you one day get a subpoena for information about one of your site user's online activities, you've got like a 24 hour head start on fleeing the country.
- choilive 4mo agoThere are no true scotsman
- dang 4mo agoPersonal attacks aren't acceptable and you've been doing this repeatedly again recently (e.g. https://news.ycombinator.com/item?id=48522089 https://news.ycombinator.com/item?id=48522089) We've had to ask you many times to stop breaking the site guidelines. If you keep doing it, we'll end up having to ban you. I don't want to ban you, so please fix this. It shouldn't be hard to make your substantive points without being an asshole. https://news.ycombinator.com/newsguidelines.html https://news.ycombinator.com/newsguidelines.html
- applfanboysbgon 4mo agoYeah, real hackers use a uniquely identifying domain that lets everyone in the world trivially trace all of said hacker's online activity to the same person.
- sneak 4mo agoIt's E2EE (only if you turn it on, which you can't do in the UK) but it saves (non-encrypted) the hashes of the plaintext of the files to Apple (presumably for dedup). This allows Apple to see which sets of users share unique Winnie the Pooh memes. They know who had them first, who they sent them to, and when. The E2EE is useless with such unencrypted metadata leaks. https://www.youtube.com/watch?v=tL8_caB35Pg https://www.youtube.com/watch?v=tL8_caB35Pg
- SXX 4mo ago> only if you turn it on, which you can't do in the UK Fortunately changing Apple account country is as easy as buying US gift card on Amazon and unlike Google they dont mess with account location. As about encryption I totally agree its pretty meh, but again it's not why I paid my $1.
- sneak 4mo agoIt’s not based on Apple account country, and even if it were, it’s not nearly that simple to switch it.
- SXX 4mo agoDid you checked it? I did. I do have Apple devices in UK that have E2EE enabled and it works just fine. Switching account country is super straightforward: cancel subscriptiona, change address to US, top up with apple gift card from amazon us. No US payment details needed.
- c7b 4mo agoIf you don't mind trusting another company with forwarding your emails, it's definitely less hassle to set up an equivalent service for yourself.
- LordDragonfang 4mo agoIf you mean "set up an equivalent service" under your own domain, that's both less private and more likely to be blocked; there are a lot of services which, unfortunately, only allow sign-ups from big, well-known domains.
- weird-eye-issue 4mo agoAre you sure you don’t have this backwards? Some B2B websites only accept sign-ups from domains not associated with Gmail, Yahoo, and similar providers.
- wartijn_ 4mo agoAre there really? I don't think I've ever encountered such a service in all the years I've been using an email address under my own domain. And blocking every email address that's not from a big provider means blocking basically everyone who tries to sign up with their company email, which might not be great for business.
- xigoi 4mo agoI recently tried signing up for DeepSeek using my custom-domain e-mail address and the website said the domain is “not supported”.
- BiteCode_dev 4mo agoYes, espacially exotic tld. I have a ".email" domain name, and I get 2 to 3 instances a year of either rejected forms, or sneakier, just confirmation email that never come until I use a .com address.
- 4mo ago
- sciencesama 4mo agowe need s script to make date aliases for the next 10 years so one has a email for each day
- JKCalhoun 4mo agoYeah, I have several dozen already—I suppose I can reuse those forever… I guess it's kind of cool having one-per-site though so you can tell who the "rat" is when one of your hide-my's gets spammed.
- treesknees 4mo agoI have over 300 so far. In addition to knowing where spam is coming from, and being able to block it, it also helps prevent correlation across accounts and websites as data leaks occur.
- trueno 4mo agois it possible to automate this
- port11 4mo agoI pay for the bundle, but HME was never hassle-free. I would say that it works on ~40% of form fields. Most of the time I never get the prompt from HME. It’s also might obnoxious if you ever need to remove an email from that list (or, gods forbid, mass clean the list). But okay, this update is even worse. I might just stop paying for the iCloud+ whatchamacallit and backup to my Mac like I used to.