this post was submitted on 08 Jan 2025
31 points (97.0% liked)

Self Hosted - Self-hosting your services.

11699 readers
1 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules

Important

Beginning of January 1st 2024 this rule WILL be enforced. Posts that are not tagged will be warned and if not fixed within 24h then removed!

Cross-posting

If you see a rule-breaker please DM the mods!

founded 3 years ago
MODERATORS
 

Can the vps provider not read everything on your server, unless it's explicitly encrypted?

I'm asking because I'm interested in self-hosting mainly as a way to get privacy respecting services where good hosted ones don't exist. I'm not sure I really want to deal with running my own hardware

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 9 points 1 week ago (2 children)

As soon as someone else has access to the hardware, assume someone else has access to the data. Depending on your threat model this might be acceptable. If you just don't want snooping, I'd say a VPS is a perfectly valid solution.

I use a dedicated server, but in this regard it is similar to a VPS, and I carefully consider what kind of data I put on it. I wouldn't put very private data on there. Simply because I see no need for it to be there.

[–] [email protected] 3 points 1 week ago

The important difference between a paid VPS subscription and a free account with s online services is how they are financed. With the latter, definitely assume you're the product, specifically your data.

Any VPS provider should have a privacy policy, and as a user you should acquaint yourself with the securities they (claim to) provide. The fact that you pay even a pittance for their service should be an incentive not to monetise or snoop your data.

But yeah, short of an encrypted online backup service, I'd never put "very private data" online at all...

[–] [email protected] 1 points 1 week ago

I don't have an explicit threat model beyond "I don't want anyone able to read my stuff". It just makes me uncomfortable and I find myself limiting what I'm able to put down. I'll trust a provider or service if I must, but generally I just prefer things to be E2E and not worry about it