cross-posted from: https://infosec.pub/post/12406642
Body of the toot:
Absolutely unbelievable but here we are. #Slack by default using messages, files etc for building and training #LLM models, enabled by default and opting out requires a manual email from the workspace owner.
https://slack.com/intl/en-gb/trust/data-management/privacy-principles
What a time to be alive in IT. 🤦♂️
(tried it some many years ago, probably long enough that lots of the following is entirely outdated)
then: install was relatively clean, UI shit still had a lot of work required (not showstoppers, just lots of not-quite-good things as often found in oss stuff), wasn’t great to monitor/profile, client options were narrow, and lastly the standard problem of being non-goldenpath-choice meant you had to do a lot of things yourself
it was an internal-only service in a always-use-vpns-for-everything company so further attempts at SSO and integration and ACL shit weren’t investigated at the time