1
2
 
 

Full article:

Claude is exposing a wealth of users’ chats and creations in Google search results, meaning anyone can dig through conversations or other material that people used Claude to make but may not have realized were publicly available for strangers to see.

The exposed data includes an AI-powered therapy app that someone appears to have vibe-coded, notes on meetings, and a dashboard someone made apparently to analyze medical billing data. Exposed chats reportedly include private cryptocurrency wallet keys and personal information like peoples’ addresses

Anthropic did not immediately respond to a request for comment.

Like other chatbots, Claude lets people share their conversations with others by creating a publicly accessible link of the chat. People may do this to send the full text of a conversation to their friends or coworkers in a group chat, for example. But they may not realize Google is also surfacing these links in search results, making them available to essentially anyone.

One Google dork — a super specific search that is useful for finding particular webpages or files — surfaced Claude chats, according to this post on the Claude subreddit. At the time of writing, that Google dork appears to have been mitigated. No results appeared when 404 Media tested it, on both Google and DuckDuckGo. The post said some of the surfaced chats included API keys, login credentials, and personal information like names, addresses, and phone numbers.

Claude also offers Artifacts, which are interactive work spaces for trying out vibe-coded apps or other tools. A Google dork for surfacing them is still working at the time of writing.

The data exposure is similar to one that impacted OpenAI’s ChatGPT last year, in which nearly 100,00 ChatGPT conversations were searchable on Google. A researcher was able to scrape those exposed chats, meaning that even if Google or Anthropic works to remove the Claude search results, third parties may have already grabbed their content. And it is still possible to view exposed chats even if they’re removed from Google results if you have the direct link itself.

Forbes reported the same thing happened with Claude last year too.

Claude users can change their privacy and sharing settings to make their chats no longer publicly accessible.

3
4
Signal Messenger Clone (programming.dev)
submitted 4 hours ago* (last edited 4 hours ago) by to c/privacy@programming.dev
 
 

Lemmy isnt ready for this project and so deleting the post


I hope this project has reached a level i can share the following details. I've made a genuine effort towards documentation and transparancy. I dont think it'll ever be enough and so im still concerned it isnt ready to share. While im using AI throughout. This is not a vibecoded project. There is attention throughout for unit tests and formal-verification. With your feedback, id like to make improvements for clarity throughout.

This version of the app demonstrates a fairly unique approach using a browser-based, local-only and webrtc approach. I know it's impossible for any system to be the "world's most secure", but that isnt a reason to not try. By rigorously implementing an exhaustive list of security features and practices, the aim is to get as close as possible.

This is intended to demonstrate client-side managed secure cryptography.

I know the project above is going to be tricky to understand. It might help to understand with an open-source version of the concept for educational purposes. Its's important to note, i have since deprecated it in favour of the version linked above.

Open source demo (deprecated)

PS. Im calling it a "Signal Messenger Clone"... that's just a matter of how to frame it for users getting started. It doesnt work in a way thats comparable to the signal architecture. This project is fairly complicated and the links above are likely not going to be enough, so feel free to reach out for clarity on the details.

PPS. I made a similar post on Reddit and it seems to be reasonably well recieved and so branching out to Lemmy here. It might help to take a look there if questions are asked/answered already.

5
 
 

TL;DR: v1.4.2 is the latest stable release. Since v1.0, I've added P2P synchronization, ArchiveBox integration, and expanded platform support to Windows and BSD.

Release v1.4.2

GitHub: https://github.com/blob42/gosuki Documentation: https://gosuki.net/


Hi All,

It has been about a year since I posted the first version of GoSuki here. For those who missed it, I built this tool because I was tired of bookmark managers that require a cloud account or a browser extension that tracks every page I visit.

Since v1.0, the project has evolved from a simple aggregator into a more robust local-first data tool.

What has changed since v1.0 The core philosophy remains the same—no extensions, no cloud, no telemetry—but the implementation is significantly more capable:

  • P2P Synchronization (Gosuki+): I implemented a real-time peer-to-peer sync mechanism. You can now synchronize bookmarks across multiple devices without a central server or a third-party provider.
  • Archival Integration: I've integrated ArchiveBox support, allowing users to automatically trigger local snapshots of their bookmarks to prevent linkrot.
  • Expanded Browser Support: Beyond the basics, GoSuki now supports Zen Browser, IceCat, Pale Moon, and Basilisk.
  • Database Resilience: The storage layer has been hardened with schema versioning and automatic backups before migrations to ensure data integrity.

Highlights of the v1.4.x Series

The latest updates focus on platform accessibility and developer workflow:

  • Windows and BSD Support: GoSuki is no longer Linux-only. It now builds for Windows (with a native systray icon) and Open/Net/Free-BSD.
  • macOS: Available via homebrew Tap / Cask
  • Decoupled Browser Definitions: Anyone can participate to add support for new browser by defining default paths in a simple YAML file.
  • Enhanced CLI: The suki command now supports advanced search and sort syntax.

Upcoming feature: Local Reddit Archival

I am currently building a deeper archival system for the Reddit module that will keep a full local copy of all your liked/upvoted posts, including comment tree and media. Lemmy would be an easy update afterwards.

GoSuki remains open source under the AGPLv3 license. If you value data ownership and want a tool that treats your bookmarks as your own, I invite you to check out the latest release.

6
 
 

Reports that Madison Square Garden temporarily shut off its facial recognition system for Swift’s wedding expose a glaring problem with how the elite wield and control mass surveillance.

7
8
 
 

They gonna ram it in. They create the problem to solve the problem. Boy oh boy they getting creative on those camera tricks.... @1:49... constitution be damned... there is nothing good left in the USA... nothing but a zombie corporation ran by pdfiles. We are slaves no doubt about that. It is like us plebs get no chances but the corpos get infinite forgiveness.

9
10
11
 
 

Privacy.sexy builds privacy and hardening scripts for Windows, macOS and Linux. You pick the changes you want, read the exact commands and side effects, then copy or download the script and run it yourself. Nothing runs in the browser, no backend.

The original by undergroundwires hasn't had a commit since April 2025 and the OSes moved on. Windows shipped Recall and Click to Do, wmic is gone, half the registry paths point at nothing. I forked it and started fixing.

What's different:

  • Updated the Windows catalog for the new AI features (Recall, Click to Do, Copilot).
  • Removed tweaks I think were harmful, like ones that disabled browser updates or antivirus for a marginal privacy win. Gone or opt-in now.
  • Deleted the Electron app. Shipping a stale Chromium to run a static page is a worse tradeoff than opening a browser.
  • Fixed dead registry paths and stale commands across all three platforms.
  • Added regression tests so a script that disables security-critical behavior fails CI.

One disclosure: I use AI assistance to write and research scripts, and review everything against vendor docs and the tests before merging. If you find a script that's wrong, that's the best bug report you can file and I'll fix it fast.

Independent fork, AGPL-3.0 like the original, not affiliated with undergroundwires. The architecture and most of the script library are their work.

By developer @turtlecute@feddit.it

12
13
 
 

Tails 7.10 has been released, continuing the project's focus on privacy protection and resistance to surveillance and censorship.

This update introduces the use of the standard GNOME shutdown procedure. With this change, users receive a power off confirmation dialog that identifies any open documents or running applications before shutdown, preventing data-loss. The procedure will automatically power off the system after 60 seconds if no user action occurs. The previous emergency shutdown method remains available for faster exits.

Following the shutdown improvements, Tails now ships with Celluloid, replacing GNOME Videos as the default media player. Celluloid is based on GTK and MPV, offering improved reliability and security by preventing network access through the player. Users who need to open online video files, such as MP4 or AVI, can use Tor Browser, while streaming types like IPTV or HLS can be opened in VLC. If Celluloid is incompatible with older hardware, VLC remains an installable alternative.

Building on these feature updates, Tails 7.10 also upgrades Tor Browser to version 15.0.19. Additionally, updated firmware packages enhance support for graphics, Wi-Fi, and other recent hardware, improving performance and compatibility for users on newer systems.

14
15
 
 

Basically, don't let your oppressors sleight of hand you. They YT channel.

16
17
18
19
 
 

Link from the local news org

Link says he's charged with petit larceny, which is a misdemeanor in USA. IDK where the destruction of property charges land.

He's receiving donations for his defense from across the country.

20
21
 
 

If you have been wondering about the effectiveness of the social media ban of under 15 year olds, this study got you :)

Spoiler: 92%+ of kids age 14-15 in Australia still use it 🥳

Meanwhile IMO forced verification of users had a much better success rate 😉

Source: https://www.nber.org/system/files/working_papers/w35162/w35162.pdf

Everybody knows that when you make laws banning teens from something they absolutely comply and aren't rebellious at ALL LMFAO

22
23
 
 

A new report from the Government Accounting Office reveals that the Department of Homeland Security (DHS) plans to nearly triple the number of surveillance towers along U.S. borders, from the current 830 to 2,300 by 2034.

DHS expects to expend $1 billion in taxpayer dollars for this dangerous expansion of a surveillance network indiscriminately trained on towns, school playgrounds, backyards, and vehicles—threatening the privacy and civil liberties of everyone in the border regions.

24
 
 

I ( @excursion22@piefed.ca ) received the email this morning from Proton announcing improvements to Drive speed, and they just happened to tuck this in there:

... It also allowed us to focus on deeper integration with the rest of the Proton ecosystem (such as Drive in Lumo) and support for a Linux client, which we're now actively building.

Glad I won't have to continue using my cobbled together Syncthing solution much longer.

Here's the full email for anyone interested, seems the announcement isn't on their website yet.

Tap for spoilerDear Proton community member,

A faster, more powerful Proton Drive is here, giving you smoother access, stronger protection, and more control over your files.

Proton Drive is up to 3x faster

We rebuilt Proton Drive around a single, shared engine that now powers uploading, downloading, and encryption across all our apps. Uploads are up to 3x faster and downloads up to 2x faster, plus smoother scrolling and quicker loading in Photos. It also allowed us to focus on deeper integration with the rest of the Proton ecosystem (such as Drive in Lumo) and support for a Linux client, which we're now actively building.

Faster, stronger encryption

Your files stay end-to-end encrypted — that hasn't changed, and never will. But that happens more efficiently now. We've adopted a cryptographic advance in the OpenPGP standard, cutting encryption time for new file uploads by up to 4x.

More control over who can manage your shared files

When you share a file or folder, you can already choose Viewer or Editor access. Now you can also decide whether an Editor can manage sharing on your behalf — inviting others, changing permissions, or removing access. To keep that control for yourself only, open the share's Settings and toggle off access.

More power and flexibility across Proton Drive

Alongside the updates above, we’ve continued improving Proton Drive across platforms, making it easier to automate workflows, browse shared files, manage syncing, and work more efficiently.

  • The Proton Drive CLI is now available for Linux, macOS, and Windows, so you can script uploads, downloads, and sharing from your terminal.
  • Grid view is now available on public Proton Drive links, making shared photo folders much easier to browse.
  • On the Windows desktop app, you can now pause syncing for a few hours or until the next day, and Proton Drive automatically resumes so you don't forget to turn it back on.
  • A new encrypted cache stores your 500 most recently viewed thumbnails, so albums you've already browsed load instantly the next time.
  • Proton Sheets now supports custom currency, number, and date/time formats, alongside bug fixes and reliability improvements.

Protecting your privacy is our priority. Follow us on X for the latest feature releases, privacy news, and security tips. Join the discussion on Reddit for insights directly from our team, and share your ideas on UserVoice to help shape Proton’s future.

Thank you for your continued support. Stay secure,

The Proton Drive team

25
view more: next ›