Kohler, the makers of a smart toilet camera, can access customers’ data stored on its servers, and can use customers’ bowl pictures to train AI.

  • commie@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    3
    ·
    19 hours ago

    if Kohler is the other end of your transmission, and the data is encrypted til they decrypt it, it’s e2ee. if you disagree, try explaining why.

    • theunknownmuncher@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      19 hours ago

      Because that’s plainly not what end to end encrypted means. That’s just HTTPS.

      if Kohler is the other end of your transmission

      They’re providing the service. End to end encryption maintains an encrypted communication channel between two clients that the service provider cannot decrypt.

      By your definition, all HTTPS traffic would be end to end encrypted.

      The term “end to end encryption” is just not applicable to this context and using it as marketting to users in order to give them a false sense of security is disingenous.

      • pivot_root@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        edit-2
        19 hours ago

        From the perspective of the Kohler toilet camera being the sender and the Kohler shit-reviewing service being the recipient, TLS can technically be end-to-end encryption. As long as the shit-reviewing server is doing the TLS termination itself—and not Cloudflare or a reverse proxy—that meets the definition insofar as only the two communicating parties having the ability to see the cleartext. That’s assuming the server has disk encryption and no employee has access to it while the disk is unlocked.

        Kohler calling it E2EE is still disingenuous as fuck regardless of my above hypothetical, however.