<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Brandon Mechtley</title>
	<atom:link href="http://brandon.cherem.org/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://brandon.cherem.org/blog</link>
	<description>plant seeds</description>
	<pubDate>Fri, 16 May 2008 10:35:29 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
	<language>en</language>
			<item>
		<title>Facebook user templates are finally useful.</title>
		<link>http://brandon.cherem.org/blog/2008/03/19/facebook-user-templates-are-finally-used/</link>
		<comments>http://brandon.cherem.org/blog/2008/03/19/facebook-user-templates-are-finally-used/#comments</comments>
		<pubDate>Wed, 19 Mar 2008 16:24:18 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<category><![CDATA[facebook]]></category>

		<category><![CDATA[social]]></category>

		<guid isPermaLink="false">http://brandon.cherem.org/2008/03/19/facebook-user-templates-are-finally-used/</guid>
		<description><![CDATA[
Yes, I&#8217;m satisfied. (see: Choice and Consent, Proximity and Locality, and Templates. Three birds with one stone. Some users might want a white list instead of a black list, but I won&#8217;t begrudge Facebook this point.)
Almost. The news feed is still curiously noncooperative, but assuming visibility on the news feed is inherited from visibility in [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: center"><img src="http://brandon.cherem.org/blog/wp-content/uploads/2008/03/fbcustom.png" alt="Facebook Privacy Customization" /></p>
<p>Yes, I&#8217;m satisfied. (see: <a href="http://brandon.cherem.org/2008/02/13/choice-and-consent/">Choice and Consent</a>, <a href="http://brandon.cherem.org/2008/02/16/proximity-and-locality/">Proximity and Locality</a>, and <a href="http://brandon.cherem.org/2008/02/26/templates/">Templates</a>. Three birds with one stone. Some users might want a white list instead of a black list, but I won&#8217;t begrudge Facebook this point.)</p>
<p>Almost. <span></span>The news feed is still curiously noncooperative, but assuming visibility on the news feed is inherited from visibility in the profile, this shouldn&#8217;t be a problem. This ambiguity is a result of lacking proper <a href="http://brandon.cherem.org/2008/02/11/setting-notice/">Notice</a> of proximity of effect. <a href="http://brandon.cherem.org/complementary/profile_notice.png">LinkedIn&#8217;s &#8220;View my profile as others see it&#8221; button</a> could still be useful for Facebook&#8217;s news feed. There are also still a number of items, such as status updates, that are absent from the news feed configuration.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/03/19/facebook-user-templates-are-finally-used/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Ratio capital.</title>
		<link>http://brandon.cherem.org/blog/2008/03/14/ratio-capital/</link>
		<comments>http://brandon.cherem.org/blog/2008/03/14/ratio-capital/#comments</comments>
		<pubDate>Sat, 15 Mar 2008 05:32:07 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Web]]></category>

		<category><![CDATA[bittorrent]]></category>

		<category><![CDATA[community]]></category>

		<category><![CDATA[economics]]></category>

		<category><![CDATA[social]]></category>

		<guid isPermaLink="false">http://brandon.cherem.org/2008/03/14/ratio-capital/</guid>
		<description><![CDATA[I&#8217;m sure this has all been said before and will be said again.
I&#8217;ve been making some observations about a BitTorrent community that&#8217;s having a lot of troubles getting off the ground. They have a 30:1 seeder:leecher ratio, which they wear like a badge. Everybody&#8217;s giving, no one&#8217;s taking. That&#8217;s good right?
Not really. I think the [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m sure this has all been said before and will be said again.</p>
<p>I&#8217;ve been making some observations about a BitTorrent community that&#8217;s having a lot of troubles getting off the ground. They have a 30:1 seeder:leecher ratio, which they wear like a badge. Everybody&#8217;s giving, no one&#8217;s taking. That&#8217;s good right?</p>
<p>Not really. I think the administrators are oblivious to what&#8217;s actually going on. This ratio makes it incredibly difficult for new users (i.e. poor people) to get started. On communities where the ratio is more balanced, you can usually start out by leeching popular content and seeding it back to the rest of the community. With such a high ratio of seeders, you have to compete with every other member of the community, which makes it impossible. In a given day, with the most highly active torrent, you can expect to have uploaded a total of 1MB&#8211;maybe.</p>
<p>A user&#8217;s best bet is to hunt down a smallish torrent that has more leechers than seeders. As I&#8217;ve said, these don&#8217;t really exist. There are a few out there, but most of them are extraordinarily large (&gt; 12GB) which is too much of a risk. This particular service introduces ratio requirements at around 5GB. One idea would be to start leeching one of these larger torrents and then stop a smaller amount in, only seeding. I don&#8217;t know the nitty gritty details of how BitTorrent works, so I&#8217;m not sure if (besides availability) there are any biases in which chunks are chosen for uploading (such as order within the file), but assuming it&#8217;s uniformly random, if you only have a small percentage of the actual file, the probability that someone actually needs something from you is quite low. I haven&#8217;t had any success with this at all.</p>
<p>So occasionally the administrators will throw &#8220;free leech&#8221; torrents out there to stimulate things. Other communities have tried entire weeks of free leeching on all content. This helps a bit, because it temporarily stimulates the economy, but if the underlying model isn&#8217;t sustainable, these aren&#8217;t going to help matters much. No new member wants to wait for the next free leech, and since the rate of new users coming into the site is rather low, once everyone has the free content, no one&#8217;s going to be left to download it. You&#8217;ve just momentarily given a boost to people&#8217;s ratios. It doesn&#8217;t help much. It&#8217;s like tax rebates. No&#8211;I take that back: it&#8217;s like printing money.</p>
<p>The real problem that I see is hoarding. Most people in the community, in the face of rather draconian ratio requirements, will hoard their ratio as much as possible. Since the ratio of the community (ignoring free leech) is a closed system, this causes a great imbalance that can blow up over time. The net ratio of the entire community is constant at 1.0 (ignoring free leech), so your best bet is going to be evenly distributing everyone&#8217;s individual ratio to 1.0. A little socialist, I admit, but that&#8217;s what&#8217;s going to make things work best. There needs to be a motivation for hoarders to spend their ratio.</p>
<p>The easiest way I&#8217;ve thought of doing this is to make ratio a depleting resource for the individual. Use It or Lose It. To keep it a closed system, and to better benefit the community, hoarders&#8217; KB uploaded will be slowly redistributed evenly to the community over time. Similar to an income tax.  Different from an income tax, however, this has serious advantages both for the hoarder and everyone else. Rather than punishing hoarding, you&#8217;re actually encouraging activity. By requiring that people continually try to maintain a 1.0 ratio, you&#8217;re encouraging people to increase their total uploads <em>and</em> downloads, which will allow them to download larger content in the future without having to worry about changes to their ratio. Older members of the community are still valued for their past contributions in that their ratio is more or less invulnerable, but new members are still supported by a thriving community.</p>
<p>There are other benefits to this. By encouraging people to actively download, you&#8217;re also ensuring the wide distribution of less-than-popular content, which helps support the long tail of community interests.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/03/14/ratio-capital/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Blooming.</title>
		<link>http://brandon.cherem.org/blog/2008/03/11/blooming/</link>
		<comments>http://brandon.cherem.org/blog/2008/03/11/blooming/#comments</comments>
		<pubDate>Wed, 12 Mar 2008 00:06:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Personal]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=33</guid>
		<description><![CDATA[The desert&#8217;s in bloom. Things are unusually green, and it smells nice. It&#8217;s amazing how much bright colours and fragrances raise your level of conscious awareness. Or maybe that was the vanilla tea. Consciousness is no longer in the conceptual space swimming in your head, but in your surroundings. The highly saturated colours demand it.
It&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<p>The desert&#8217;s in bloom. Things are unusually green, and it smells nice. It&#8217;s amazing how much bright colours and fragrances raise your level of conscious awareness. Or maybe that was the vanilla tea. Consciousness is no longer in the conceptual space swimming in your head, but in your surroundings. The highly saturated colours demand it.</p>
<p>It&#8217;s a shame that some people have allergies, clogging up their abilities to experience the full extent of Spring. It&#8217;s like their body&#8217;s way of limiting how much they can transfer their consciousness into their surroundings. It&#8217;s a stopgap.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/03/11/blooming/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Why Care?</title>
		<link>http://brandon.cherem.org/blog/2008/03/08/why-care/</link>
		<comments>http://brandon.cherem.org/blog/2008/03/08/why-care/#comments</comments>
		<pubDate>Sun, 09 Mar 2008 00:05:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=32</guid>
		<description><![CDATA[As with any new media paradigm, user generated media and the social web have undergone quite a bit of public scrutiny. Blogging is fighting to distinguish itself as a valid source of news and discussion apart from traditional journalism, Wikipedia is fighting the age-old battle of the validity and trustworthiness of information on the Internet, [...]]]></description>
			<content:encoded><![CDATA[<p>As with any new media paradigm, user generated media and the social web have undergone quite a bit of public scrutiny. Blogging is fighting to distinguish itself as a valid source of news and discussion apart from traditional journalism, Wikipedia is fighting the age-old battle of the validity and trustworthiness of information on the Internet, and podcasts and videocasts are attempting to distinguish themselves as viable sources of entertainment and information apart from television, to name a few issues.</p>
<p>The age of widespread participatory media is continually undergoing definition and situation into society. Many of these outlets for expression and communication are only at the tip of the iceberg in terms of user base, though. Although the number is quite significant, why is it that only <a href="http://www.google.com/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.digitallearning.macfound.org%2Fatf%2Fcf%2F%257B7E45C7E0-A3E0-4B89-AC9C-E807E1B0AE4E%257D%2FJENKINS_WHITE_PAPER.PDF&amp;ei=AznTR_XsAoKUoASJnpjcBQ&amp;usg=AFQjCNFIkObOp5TawNj0J4ZmqsQFouXcPw&amp;sig2=rqUkx8MybekHMXphp1XLeg">one third of teens using the Internet are actively sharing content</a>? What are the teens who are producing content but not sharing it doing with their work? What about adults? These numbers may be enough to make social web companies see financial success, but in terms of bringing about a new age of media production and consumption, there is still a long way to go.</p>
<p>Almost <a href="http://www.facebook.com/press/info.php?timeline">every single milestone</a> in Facebook&#8217;s expansion of its userbase has been the result of an outcry amongst its users. Within Facebook, several user groups were organised to protest the decision of expanding its services to high school students. Similarly, but to an even greater extent, Facebook&#8217;s decision to allow anyone to create an account, regardless of affiliation, still remains a hot issue. Facebook&#8217;s business model had two other large milestones in 2007. In May, Facebook released its API that allows third-party developers to access personal details of users and create applications embedded within the Facebook site. In November, Facebook introduced a new targeted advertising model that includes Beacon, a system that shares purchases made by users at participating third party sites with their friends. Initially, Beacon was an opt-out service, requiring a confusing, explicit opt-out process for every service.</p>
<p>One might ask: who&#8217;s in charge of these decisions at Facebook? Why is it that every major change in Facebook is met with such tremendous backlash? In the case of Beacon, Zuckerberg himself had to issue a <a href="http://blog.facebook.com/blog.php?post=7584397130">public apology</a>. One guess might be that this behaviour is one of the natural growing pains of developing new modes of media distribution and communication. Another hypothesis, which I&#8217;ve attempted to confirm in my previous posts, is that there are fundamental design flaws of the current state of the social web that are preventing major, rapid innovation.</p>
<p>Privacy is one of many issues that is holding the social web back and preventing it from realising its true potential. At one extreme, there are still people who don&#8217;t like having any information about themselves available on the Internet. We need to cater to larger audiences.</p>
<p>It&#8217;s all about letting users reduce and alter the large space of what they think the product is doing. When you don&#8217;t give users immediate, clear feedback that tells them what you&#8217;re doing and when you don&#8217;t allow users to choose how they want their information distributed, you&#8217;re going to be met with an enormous, resilient possibility space that is going to not only scare users away, but frustrate them to no end.</p>
<p>Privacy is important. <em>Communicating privacy</em> is important. This isn&#8217;t an issue that we need to just let someone else figure out for us, and even if it were, we aren&#8217;t giving anyone the tools to do so. If we don&#8217;t allow people to choose how they want to be seen on the web, we&#8217;re never going to be able to have any kind of dialog about privacy.</p>
<p>And that&#8217;s the end of my rant.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/03/08/why-care/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Templates.</title>
		<link>http://brandon.cherem.org/blog/2008/02/26/templates/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/26/templates/#comments</comments>
		<pubDate>Wed, 27 Feb 2008 06:19:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=28</guid>
		<description><![CDATA[Contact Templates.
As an example of the danger of large possibility spaces in content use by social web tools, I mentioned that Facebook has several different points of privacy configuration across multiple, predefined user groups. There exist several ways that these possibility spaces can be reduced. One method is through user-generated privacy templates.
As mentioned with respect [...]]]></description>
			<content:encoded><![CDATA[<p>Contact Templates.</p>
<p>As an example of the danger of large possibility spaces in content use by social web tools, I mentioned that Facebook has several different points of privacy configuration across multiple, predefined user groups. There exist several ways that these possibility spaces can be reduced. One method is through user-generated privacy templates.</p>
<p>As mentioned with respect to proximity and locality, there are some social web services that allow users to define custom user groups to whom certain settings apply. For example, in LiveJournal, a user is able to create groups from a list of all his or her friends and use these as the target of limited-access posts. In Pownce, the same is possible for defining recipients of microblog entries. In this way, users can specify, for example, that they wish certain information to be visible to their coworkers, certain information to be visible to their immediate family, and so forth. There is no need for people to explicitly define their relationships with their friends in terms that the system can understand (as in Facebook), but they are able to use these templates in the future. Templates get past the necessity of requiring explicit user consent for every action taken, as consent to publish to certain users in implicit in their previous definition of the user group, which is presumably given some unique identifier that the user can remember, e.g. &#8220;coworkers&#8221; or &#8220;family.&#8221;</p>
<p>Facebook recently added contact templates, but so far they see pretty limited use across the site. As opposed to privacy, they seem to be used to simplify tasks such as inviting friends to events.</p>
<p>The only downside to these contact templates is that they have to be constantly maintained. When a user has many publishing groups with heavy overlap, this can become problematic. However, the benefit gained from avoiding the uncertainty associated with the all-or-none decisions of predefined, high-level user groups such as those in Facebook far outweighs this. If these templates are introduced into the tool properly, they don&#8217;t need to be cumbersome for the user. Facebook already provides a great implementation of this maintenance through allowing users to specify relationship types when they add a new friend. Unfortunately, these relationship types are predefined (rather arbitrarily) and not integrated into the functionality of the system in any significant way. The list of relationship types may as well be removed now that the Facebook has added custom user groups. About the only place they see use is in the timeline view that shows when you met certain people, which I&#8217;m not sure anyone actually uses.</p>
<p>Behavioural Templates.</p>
<p>Another possibility for templates is a behaviour template. There are many cases when users simply don&#8217;t want to publish particular types of content to anyone at all. Similarly, there are cases when users don&#8217;t want to be informed about certain content published by others. These types of decisions can be simplified through behavioural templates. For example, some members of social networks may be more interested in forging business relationships than they are in keeping in touch with friends. Allowing for these differences in preferences to be stored in behavioural templates can help the user develop a conceptual model of the system that is more consonant with how it will actually behave. Of course, it&#8217;s necessary to develop notice into any system with templates&#8211;a user should always know exactly what effect the template is having on his or her communication preferences. Integrating template selection directly into the methods used to choose communication preferences is a safe way to ensure users will understand exactly what these present templates mean.</p>
<p>Then again, a theme of developing new technologies is that they will always be used in ways the developer didn&#8217;t foresee. With predefined behavioural templates, the possibilities for use cases and applications of a tool are limited. This limitation can be overcome somewhat either through close personal monitoring of trends in user activity or by learning the templates computationally (what are those aspects of users&#8217; preferences that most discriminate between different sets of users?) Any computational solution will introduce certain threats to user trust, however, as the templates will, by definition, not be reliable. Even if the template only changes user preferences when a user updates them, one still risks confusing users with changing definitions.</p>
<p>OK, so <a href="http://www.brandon.cherem.org/2008/03/08/why-care/">I&#8217;ll wrap up this disorganised rant in my next post</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/26/templates/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Access and Recourse.</title>
		<link>http://brandon.cherem.org/blog/2008/02/25/access-and-recourse/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/25/access-and-recourse/#comments</comments>
		<pubDate>Mon, 25 Feb 2008 07:12:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=27</guid>
		<description><![CDATA[If all else fails, users need recourse for unwanted use and distribution of their information. Along with this, users always need accces to their information and how it was used.
In situations of security breaches, for example, there should be some recourse someone can take that is specific to security breaches to clean up any unwanted [...]]]></description>
			<content:encoded><![CDATA[<p>If all else fails, users need recourse for unwanted use and distribution of their information. Along with this, users always need accces to their information and how it was used.</p>
<p>In situations of security breaches, for example, there should be some recourse someone can take that is specific to security breaches to clean up any unwanted damages. Low level design decisions such as keeping detailed records of changes to a user&#8217;s information (analogous to version history) can help designers and support staff build these mechanisms into a tool&#8217;s framework. Although issues of notice prevent a user from knowing whether or not his recourse is actually effectual, Facebook provides the ability to selectively remove listings from the mini-feed as recourse for mistakenly publicising actions. In some cases, recourse and notice could even be implemented in such a way as to allow user to undo unwanted communications by notifying them if the recipients of their messages have received anything and allowing users to &#8220;unsend&#8221; messages if the recipients have not (a feature common to many groupware solutions.)</p>
<p>Although access and recourse do work well as fail-safes, they should be integrated into any design regardless of whether or not they are deemed necessary by failure in any of the other principles of privacy awareness. Simply giving users the ability to correct potential misuse of their information can be key to gaining their trust and allowing them to have a richer, more comfortable experience.</p>
<p>So that&#8217;s the last principle I&#8217;ll mention. Next, I&#8217;ll talk about <a href="http://www.brandon.cherem.org/2008/02/26/templates/">templates</a>, which can be a great way of abstracting away many of the scope and practicality issues involved in the last few posts.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/25/access-and-recourse/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Anonymity and Pseudonymity.</title>
		<link>http://brandon.cherem.org/blog/2008/02/18/anonymity-and-pseudonymity/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/18/anonymity-and-pseudonymity/#comments</comments>
		<pubDate>Tue, 19 Feb 2008 00:53:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=25</guid>
		<description><![CDATA[Anonymity refers to the complete absence of any information tying collected data to its source, while pseudonymity refers to being able to retain the uniqueness of data sources without explicitly providing any information about what or whom those sources represent. With a strong implementation of one of these principles, data can be legally collected without [...]]]></description>
			<content:encoded><![CDATA[<p>Anonymity refers to the complete absence of any information tying collected data to its source, while pseudonymity refers to being able to retain the uniqueness of data sources without explicitly providing any information about what or whom those sources represent. With a strong implementation of one of these principles, data can be legally collected without requiring user consent. While the legal implications of social web design are certainly interesting, one could potentially argue that anonymity reduces much of the effectiveness and usefulness of the social web.</p>
<p>On the contrary, however, a decision about anonymity should be present as early as the initial conceptualisation of any social tool. Often, to reap the rewards of the web, disclosure of identity is not at all necessary. MySpace is able to perform as a successful social network without requiring users to identify who they truly are and anonymous blogging has been the boon of teenagers across the globe.</p>
<p>In fact, anonymity can often be expanded even further. In some situations, it&#8217;s not necessary to even associate information with a unique identifier for the person to whom the information belongs. Oftentimes it&#8217;s not even necessary to have a <em>social</em> design for a tool to work. Google News, for example, performs collaborative filtering to suggest news items to users based on the news read by other users who are most similar to them. Nowhere is there a necessity for a reader to identify a particular suggestion with a source with or without an anonymous identifier (in fact, the suggestion usually comes from a combination of a multitude of sources), but the user is still able to leverage the structure of the community to his or her benefit.</p>
<p>Of course, it&#8217;s oftentimes desirable to link an explicit identity with a user. In some cases, we even want to have a user disclose his or her real identity, as this can require a certain level of commitment from the user. In the case of social networks, Facebook and LinkedIn have been forerunners in this regard. Facebook benefits from attempting to require users to give their real names in that the tool maps real world networks of friends, which helps emphasise its existence as a communication medium that can augment unmediated relationships. LinkedIn, of course, bases its entire functionality off the disclosure of professional information, as it is a site made for the formation of new business relationships. With this requirement comes a great deal of responsibility, however, as a service not only has the capability of allowing a user to sully some of the relationships about which he or she most cares, but also raises questions about how information is being used by the company collecting it. After all, the reasoning for Facebook being based around real names is convincing, but could there be ulterior motives? There are certainly many conspiracy theories hovering around both Facebook and MySpace, but users have no recourse to assuage those fears in Facebook&#8217;s case.</p>
<p>Finally, it should be noted that anonymous identifiers are not always an end-all-be-all solution to having a fool-proof social web design, either. While they do provide a recourse for users who make mistakes or are confused about the operation of the service, they only do so inasmuch as the user does not define himself in terms of his new identity. In cases where anonymous identities see long-term use (such as the case of internet monikers, online forums, or gaming communities and virtual worlds), it would not be intellectually honest to assume that these relationships are any less important to a user than those which are not mediated by the social web. Even though members of these communities are not necessarily at risk of injuring their relationship with the law, employers, or their basic human needs, the social bonds created between anonymous users ought still be protected, unless the users enter into the relationships with the understanding that they will not be.</p>
<p>I&#8217;ll talk a bit about <a href="http://www.brandon.cherem.org/2008/02/25/access-and-recourse/">Access and Recourse</a> next: what do we do when these guidelines break down?</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/18/anonymity-and-pseudonymity/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Adequate Security.</title>
		<link>http://brandon.cherem.org/blog/2008/02/17/adequate-security/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/17/adequate-security/#comments</comments>
		<pubDate>Mon, 18 Feb 2008 06:23:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=24</guid>
		<description><![CDATA[Security is key in social web design. It is necessary to create a system that is impervious to intrusion. Identity theft, communication interception, exploitation of APIs, and other issues related to security are important across the full gamut of the life cycle of a social web tool. It&#8217;s not enough to simply implement the proper [...]]]></description>
			<content:encoded><![CDATA[<p>Security is key in social web design. It is necessary to create a system that is impervious to intrusion. Identity theft, communication interception, exploitation of APIs, and other issues related to security are important across the full gamut of the life cycle of a social web tool. It&#8217;s not enough to simply implement the proper encryption and handshake procedures at a low level. There will always be situations where a person is able to access information he or she is not supposed to, even by logging in as another user (angry exes, clever friends, and so on).</p>
<p>Apart from having separate passwords for every possible activity on a site, there aren&#8217;t many options that can enforce fool-proof security. Instead, it&#8217;s necessary to design a tool in such a way that these security breaches will have minimal impart or not need to occur. One way to limit the impact and occurence of security threats is to simply make users&#8217; data completely available and actions so benign as to eliminate the desire to access another&#8217;s account or personal information. Obviously, this isn&#8217;t much of an option, so another option might be the other extreme, which is to design a lack of security into the user experience.</p>
<p>In <em><a href="http://books.google.com/books?id=UzpNEpln8V4C&amp;dq=transparent+society&amp;pg=PP1&amp;ots=XYiej3dUJ-&amp;sig=6oZsW__7p9xbGbhiHcHccDgSq4M&amp;hl=en&amp;prev=http://www.google.com/search?q=transparent+society&amp;ie=utf-8&amp;oe=utf-8&amp;rls=org.mozilla:en-US:official&amp;client=firefox-a&amp;sa=X&amp;oi=print&amp;ct=title&amp;cad=one-book-with-thumbnail">The Transparent Society</a></em>, <a href="http://www.davidbrin.com/">David Brin</a> makes the bold claim that reciprocal transparency amongst individuals will create situations where both the act of maintaining privacy and the act of invading one&#8217;s privacy will be public knowledge, leveling the playing field and resulting in a more trusting society across the board. By having a social framework that enforces equal transparency, he argues, privacy can be maintained through a system of mutual trust. (I&#8217;ll talk about this a little more later in <a href="http://www.brandon.cherem.org/2008/03/08/why-care/">a general post about whether or not we should even care about privacy</a>.)</p>
<p>Similar to Brin&#8217;s idea of reciprocal transparency, we can have <em>reciprocal insecurity</em>&#8211;by allowing everyone to have access to modify and have access to everyone else&#8217;s data, and by having proper notice and a detailed history of this activity, we eliminate the problem at its source. To some extent, this is the case in wikis, such as Wikipedia. By introducing accountability into the mix, Wikipedia is able to create a collaborative online community that has a natural system of checks and balances. Of course, this system is not by any means fool-proof and is heavily influenced by the amount of activity that any given page sees, but this is an assumption that readers of Wikipedia either have or should be given. However, since Wikipedia still features user accounts for accountability, there&#8217;s still motivation to gain access to someone&#8217;s account for illegitimate purposes.</p>
<p>There&#8217;s no perfect solution to security in design, but at least we shouldn&#8217;t ever entertain or spread the idea that our systems can be completely secure. Boasting of security may be desirable for marketing purposes, but it hurts the market at large as security breaches continue to invalidate our claims.</p>
<p>Different services require different types of security, as they involve the use of different kinds of data, some of which are less personal or identifying than others. I&#8217;ll talk about this spectrum of <a href="http://www.brandon.cherem.org/2008/02/18/anonymity-and-pseudonymity/">Anonymity and Pseudonymity</a> next.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/17/adequate-security/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Proximity and Locality.</title>
		<link>http://brandon.cherem.org/blog/2008/02/16/proximity-and-locality/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/16/proximity-and-locality/#comments</comments>
		<pubDate>Sun, 17 Feb 2008 06:44:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=22</guid>
		<description><![CDATA[Proximity refers to the distance from which information can be collected, and locality refers to the areas in which this information is used. In ubiquitous computing, these topics are typically understood in terms of the physical world. For our purposes, these two concepts have virtual analogues in social web design. Proximity often affects the acceptable [...]]]></description>
			<content:encoded><![CDATA[<p>Proximity refers to the distance from which information can be collected, and locality refers to the areas in which this information is used. In ubiquitous computing, these topics are typically understood in terms of the physical world. For our purposes, these two concepts have virtual analogues in social web design. Proximity often affects the acceptable locality of information use. In the case of Beacon, for example, information collected from a third party vendor was relayed to Facebook. In terms of proximity and locality, Facebook was acquiring data from a distance far too great.</p>
<p>A key feature behind the social web (and the web in general) is that it allows for large leaps in both proximity and locality, so we wouldn&#8217;t want to assume that these two concepts should be limiting. Rather, they should be understood in terms of other privacy aware principles, and be used clues for finding deeper problems. Going back to Beacon, Facebook faced problems with surprising all their users&#8217; notions of the capabilities of the web. Proximity and locality are concepts that can be used to predict these surprises. Most importantly, the locality of the information should never be unknown, but should always be communicated through proper notice, preferably before any action is taken.</p>
<p>There are some services that implement custom locality for users, such as those that allows people to create custom friends groups (e.g. LiveJournal, Pownce). Revisiting choice, direct manipulation of locality by users is an extremely powerful way of providing them with notice of the destinations of their information.</p>
<p>Next will be &#8220;<a href="http://www.brandon.cherem.org/2008/02/17/adequate-security/">Adequate Security</a>.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/16/proximity-and-locality/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Wind generators.</title>
		<link>http://brandon.cherem.org/blog/2008/02/13/wind-generators/</link>
		<comments>http://brandon.cherem.org/blog/2008/02/13/wind-generators/#comments</comments>
		<pubDate>Wed, 13 Feb 2008 22:12:00 +0000</pubDate>
		<dc:creator>brandon</dc:creator>
		
		<category><![CDATA[Personal]]></category>

		<guid isPermaLink="false">http://www.brandon.cherem.org/blog/?p=21</guid>
		<description><![CDATA[I see analogues to corn subsidies.
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.boasas.com/?c=916">I see analogues to corn subsidies</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://brandon.cherem.org/blog/2008/02/13/wind-generators/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
