this post was submitted on 25 Oct 2023
289 points (98.0% liked)

Technology

59311 readers
4528 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] bh64@lemm.ee 7 points 1 year ago* (last edited 1 year ago) (2 children)

it is a fact. you have to be logged in to do a search or use an API key which directly associates your search query with your account.

Let's say you don't give them a real email, that's good. Maybe you're using Tor or a VPN and they don't get your IP. And somehow you manage to make your payment anonymously. That's great.

Well, Kagi is still getting all your search queries which are directly associated with one account. We don't have their server's code. We don't know how or what are they logging. They can claim whatever in their privacy policy, I don't care. A single entity is receiving all your search queries directly linked to your pseudonymous account. This gives them a vast amount of data about the person using it, even if they do not know who you are, probably very sensitive information too.

Let's make a huge assumption and assume they are not correlating your search queries and they do not use this information for anything. Well, a third party actor with access to their servers could very well make use of this vast amount of personal data, whether it is a government, their hosting provider, a malicious actor, a security breach, etc.

And that's considering the best case in which you were covering your tracks hiding your IP all the time and making anonymous payments, which, being honests, most Kagi users don't do. So yeah, Kagi is a privacy nightmare.

[–] cybersandwich@lemmy.world 1 points 1 year ago

I feel like this is a fair, even if incredibly skeptical, take on kagi. I am a kagi user and I had that exact thought when I started using it. How can you even function as a search engine if you dont capture searches at least in aggregate--so you can tune or shape your algorithms?

That said, I didn't start using them strictly for privacy. I started using them because they were giving me the best results I'd gotten from any search engine in a long time. And I didn't have to

And while I wouldn't necessarily say Kagi is the gold-standard for privacy, their business model is, at the very least, aligned with providing good search results. Google is an advertising company masquerading as a search engine. They have some incredibly perverse incentives for how they delivery results.

[–] nooj@lemmy.world 1 points 1 year ago

To say it's a privacy nightmare in the context of a Google thread is just not accurate. If they associated search queries with your account then they'd be breaking their own privacy policy and opening themselves up to lawsuits.