• Mozilla has launched a paid subscription service called Mozilla Monitor Plus, which monitors and removes personal information from over 190 sites where brokers sell data.
  • The service is priced at $8.99 per month and is an extension of the free dark web monitoring service Mozilla Monitor (previously Firefox Monitor).
  • Basic Monitor members receive a free scan and one-time removal sweep, while Plus members get continual monthly data broker scans and removal attempts.

Archive link: https://archive.ph/YdY3R

  • Rodeo@lemmy.ca
    link
    fedilink
    English
    arrow-up
    69
    arrow-down
    23
    ·
    edit-2
    8 months ago

    How can they know it’s your data without first collecting your data to compare it?

    “Give us your personal information so we can ask others to delete your personal information” just doesn’t sound like a trustworthy offer.

    • Steve@communick.news
      link
      fedilink
      English
      arrow-up
      91
      ·
      edit-2
      8 months ago

      I can also see the irony. But I can’t imagine another way to do it at any scale. Do you know of another option?

        • NaN@lemmy.sdf.org
          link
          fedilink
          English
          arrow-up
          55
          arrow-down
          1
          ·
          edit-2
          8 months ago

          No. If your name is Dave Jones they have to look around those broker sites for Dave Jones. If those sites were using hashes then they could use hashes too.

          This is no different than any credit or identity monitoring service. The need to give them basic information should be obvious, people have to decide if the company is trustworthy or not.

          • Peer@discuss.tchncs.de
            link
            fedilink
            English
            arrow-up
            4
            arrow-down
            2
            ·
            8 months ago

            They could just look for names, then hash those names and compare them to your hashed name. So technically that don’t need to store your data, just hashes.

            • Lmaydev@programming.dev
              link
              fedilink
              English
              arrow-up
              5
              arrow-down
              1
              ·
              edit-2
              8 months ago

              I’m all for privacy but worrying about giving one of the most trustworthy companies around your name seems a bit much.

              You’d also have to give them your card details to pay for it.

              This would also require searching and indexing the entire system as opposed to searching it.

        • Steve@communick.news
          link
          fedilink
          English
          arrow-up
          20
          arrow-down
          1
          ·
          8 months ago

          The front page there is literally: “Give us your email, so we can find leaks of your email.” It’s exactly the same thing.

            • Nyfure@kbin.social
              link
              fedilink
              arrow-up
              12
              ·
              8 months ago

              To be fair, you can check the code they run or just use the API.
              The hash is calculated locally, cut-off and then send, the server returns all hashes it found which start with your one and then you can check if yours in in the list locally.

              • claudiop@lemmy.world
                link
                fedilink
                English
                arrow-up
                4
                ·
                8 months ago

                Y’know that you can see the requests your browser makes, right? Mind putting in here a screenshot of HIBP uploading your password or any complete hash of it?

                Failing to provide that grants you the “talking shit out of ya ass” award.

        • admiralteal@kbin.social
          link
          fedilink
          arrow-up
          11
          arrow-down
          1
          ·
          8 months ago

          No, because you are asking the data broker to do something with your data that they possess. It is not possible for them to delete your data without knowing which are your data.

          The only alternative is fully banning this kind of data collection. Which would be nice, but isn’t happening anytime soon.

    • Neato@ttrpg.network
      link
      fedilink
      English
      arrow-up
      31
      ·
      8 months ago

      Likely you must provide Mozilla with basic identifying data like name and birth date. Which isn’t all that radical since you’re giving them quite a bit more by paying them.

    • TrickDacy@lemmy.world
      link
      fedilink
      English
      arrow-up
      30
      arrow-down
      4
      ·
      8 months ago

      Unless you trust Mozilla. I’m unaware of another organization that is more trustworthy, despite the haters mad that CEOs make money.

      • LWD@lemm.ee
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        3
        ·
        8 months ago

        The CEO is making an inordinate amount of money. $6.9 million is excessive.

        You can argue that Mozilla should be held to the same low standard as every other corporation, but if you do that, you have to take into account that the Mozilla CEO got a huge pay raise in a year where other CEOs got less money.

        • Telodzrum@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          3
          ·
          8 months ago

          $6.9MM is a perfectly reasonable compensation package for a $500MM organization and is probably low to attract a significant number of quality candidates.

          • idefix@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            0
            ·
            8 months ago

            Just no. My CEO runs a much larger organisation than Mozilla corp and her salary is 1m€ per year (public information), and that’s perfectly adequate.

    • AeonFelis@lemmy.world
      link
      fedilink
      English
      arrow-up
      18
      arrow-down
      1
      ·
      8 months ago

      It’s better when it’s in their hands, because:

      1. It’s Mozilla - one of the more trusty organizations out there.
      2. They don’t get your information in some sneaky way from some source that was never supposed to be available to them.
      3. You know exactly how they make money from your data.
    • Defaced@lemmy.world
      link
      fedilink
      English
      arrow-up
      17
      ·
      8 months ago

      It’s ironic yeah, but if trust is the only way to implement something like this, then Mozilla is probably the one company I would trust considering they’re a non-profit org.

    • JustUseMint@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      8 months ago

      There isn’t a better company to do this than mozzila. I mean there literally are but in practice this is a good thing

    • /home/pineapplelover@lemm.ee
      link
      fedilink
      English
      arrow-up
      3
      ·
      8 months ago

      The way I see it, if you’re asking for data removal, it’s because your identity is public online already, the company has nothing else to gain maybe other than the payment information and you can get a new card if they just happened to be untrustworthy.