this post was submitted on 06 Sep 2023
407 points (80.2% liked)
Privacy
31990 readers
567 users here now
A place to discuss privacy and freedom in the digital world.
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
Some Rules
- Posting a link to a website containing tracking isn't great, if contents of the website are behind a paywall maybe copy them into the post
- Don't promote proprietary software
- Try to keep things on topic
- If you have a question, please try searching for previous discussions, maybe it has already been answered
- Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
- Be nice :)
Related communities
Chat rooms
-
[Matrix/Element]Dead
much thanks to @gary_host_laptop for the logo design :)
founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
You dont even need google to access your emails for that. You dont even need to be a google user at all, unfortunately.
I think the phone number is easily found by google, by all their users synching their contact list... If you're google and you have 100 people Synching John B. Smith with number 123 in Region A of the world, you're pretty confident that that the person and the phone number are linked.
And that's terrifying.
Imagine you didn't even heard about google, but some of your colleague/friend use Google contact synching (which is very default these days) And ta da! Google knows your name and number with 99% percent of accuracy.
Exactly. You don't even need to have ever used the internet. It's concerning, to say the least...
I do agree that adding some kind of backup option is probably a good idea. For many people, losing their email account would mean being locked out of basically all their online accounts (or, in case the account gets compromised, it would mean that all other online accounts would now be compromised too). The majority of people do not use password managers or 2FA, and I've made the experience that many people simply cannot be convinced to make online security a priority. While I'm also a FOSS and online privacy advocate and use tons of self hosted services for that reason, having some way to regain access to their Google account is almost certainly worth the extra data point that Google gets access to. Especially since the likelihood of them already knowing about your phone number is basically 100% if you are logged in on an Android device.
I used to work in support for a phone manufacturer. I spent more hours than I'd like to know helping people navigate Google account recovery because their only computing device was their phone which they just got replaced under warranty and they don't remember their Google password. The lucky ones had set a recovery phone number and/or email, the unlucky ones were simply at the mercy of the ivory tower that is Google
Then add a recovery email address for your recovery address