cross-posted from: https://lemmy.today/post/29758710

Google is not entitled to my personal banking information or any other PII! WTF if I go to a store and want to buy I will.

  • QuazarOmega@lemy.lol
    link
    fedilink
    arrow-up
    21
    arrow-down
    1
    ·
    5 months ago

    I’m all for not giving more data points where it’s not needed, but is this as bad it seems? All biometric data remains stored on the device, it isn’t sent to Google, or any app for that matter, that’s how the API works

    • MasterBlaster@lemmy.world
      link
      fedilink
      arrow-up
      8
      arrow-down
      9
      ·
      5 months ago

      Exactly. Just like they never tracked and stored our movements when we turned iff location history.

      The class action suit they lost on that was fake news /s

      • N0x0n@lemmy.ml
        link
        fedilink
        arrow-up
        3
        arrow-down
        1
        ·
        edit-2
        5 months ago

        Yeah… People are like this… It’s All fake news until it isn’t anymore and than everyone is Pikachu Faced…

        After all they have done and still doing… I can ASSURE and GUARANTEE you with 100% certitude that they would NEVER do that… They are not that kind of evil. /s

        Sigh 😮‍💨😮‍💨

        • 3abas@lemm.ee
          link
          fedilink
          arrow-up
          2
          ·
          5 months ago

          There’s a difference between saying “the secure enclave holds the biometric data securely and locally in a verifiable way with no mechanism to retrieve the actual data” and “trust them, don’t worry about it”

      • QuazarOmega@lemy.lol
        link
        fedilink
        arrow-up
        1
        arrow-down
        1
        ·
        5 months ago

        That’s different, it’s technically possible not to comply with that statement because the location data is sent and stored, it takes just not deleting it to violate that, it just evaluates to a pinky promise that has to be verified by inspecting their systems.
        This, on the other hand, is a technically verifiable claim, the code is open and it all runs locally on the same machine, the TEE will give the green light and that’s how apps will accept your biometric verification, the only thing that might be suspicious is with the implementation of the TEE, I don’t know if every manufacturer keeps the data it gets on the device or secretly communicates outside, this unknown is also a good reason to use a Google Pixel device if you care about that

        Google Pixel phones use a TEE OS called Trusty which is open source, unlike many other phones.

        From the Privacy Guides Mobile phones page