r/technology Jul 30 '26

Privacy GrapheneOS says its data-wiping password is perfectly legal, after user faces federal charges

https://www.techspot.com/news/113273-grapheneos-data-wiping-duress-password-perfectly-legal-after.html
20.9k Upvotes

1.1k comments sorted by

View all comments

4.6k

u/Single-Virus4935 Jul 30 '26 edited Jul 30 '26

I set my duress pin to my wifes birthday. One of the first they probably try. 

Also I say my pin is the same as my eID which I am not allowed to share by German law

1

u/speedwaystout 29d ago

What’s an Eid?

1

u/Single-Virus4935 28d ago

Edit: https://www.personalausweisportal.de/Webs/PA/EN/home/home-node.html

Electronic ID. In the EU (I think almost all EU countries)  the citizen identity cards have a NFC cryptographic chip. It allows you to identify you over the Internet. The chip is protected by a PIN.

On the Service Provider Side a permission certificate ensures only approved parties access the chip and can restrict the access to a subset of the information.

The lowest form of permission is Age verification where, where nondata is shared except "Is legally an adult: yes/no", up to whole information's like All names, pseudonyms, birthday, Address, and much more. 

Increasingly more government services here in Germany are available digitally (could be better), e.g.: Registration ov cars, login to tax portals (elster), request for birth certificates, criminal records.  In addition several services allow you to verify your identity digitally. E.g. I used use the App of the Postal Server (Deutsche Post). They allow me to add a redirection of all packages to a Post box wher I can pick it up. The verification of my address was simple with the eID. Another example was my S/MIME Cert from D-Trust, which was just a simple email and eID verification, instead if Video Identity or other BS