Remix.run Logo
▲ First Steps of the PLC Organization – Independent Public Ledger of Credentials(blog.plcred.org)
28 points by embedding-shape 2 hours ago | 14 comments
▲ACCount39 an hour ago | parent | next [-]

This might be one of the closest things I've seen to actually being able to own your account - instead of having it not just owned by a second party in every way that matters, but also beholden to a third party via an e-mail or a phone number you can't possibly own in any meaningful way.

That's pretty important in a world where the likes of Google can and will just reject your attempt to log in with a valid password on the grounds of "we don't like you", and force you to "confirm" yourself using a phone number that's defunct since 2009.

The issue is, as often is the case, adoption.

▲ForHackernews an hour ago | parent | next [-]

How does this compare to Persona? https://en.wikipedia.org/wiki/Mozilla_Persona

▲verdverm an hour ago | parent | prev [-]

did:web is closer to owning your own identity, this is a central database controlled by an organization

The PLC makes it easy for Bluesky to be a custodian and onboard new users

▲FiloSottile an hour ago | parent | next [-]

Sort of.

I like to insist that the PLC Directory collects and distributes updates to highlight how it's different from a database. The latest state of the account is signed by the key that created it, or by a key that succeeded it. The directory can't inject any values, it's just a low-complexity solution for data availability: the "how do I learn about updates" part.

It could decide to hide/reject updates, but then it could just as well be forked and replaced if it did that. If downstream applications decide to get their account updates somewhere else, that's the directory now, without any loss of continuity for the accounts.

You don't get that from a simple database.

One could argue domain registrations, and so did:web, are more of a database controlled by a (large, international) organization than PLC. Plenty of tradeoffs of course.

▲someonebaggy 8 minutes ago | parent | next [-]

Data flow: all the internet's creators ----> Jack Dorsey ----> all the internet's consumers

We're all watching the first step of enshittification and thinking "this is fine"

▲verdverm an hour ago | parent | prev [-]

one of the other feature of PLC compared to did:web is that it presents the identity history, but this is also problematic for some people (dead naming and right to be forgotten)

I believe there is work around did web for an extension that would enable verifiable history

▲ACCount39 27 minutes ago | parent | prev [-]

Doesn't did:web suffer from the same flaw as e-mail on your own domain - not being able to actually own a domain?

▲birdsongs 2 hours ago | parent | prev | next [-]

Just curious, how is this different from something like a PGP key server?

▲cmjs 5 minutes ago | parent | next [-]

A PGP key server hosts PGP keys; the PLC directory hosts DID documents.

▲copperx an hour ago | parent | prev [-]

The same difference between Dropbox vs an FTP account.

▲ForHackernews 2 hours ago | parent | prev [-]

Better than the eyeball-scanning ghouls.

▲tehnoslow an hour ago | parent | next [-]

I have to agree

▲verdverm an hour ago | parent | prev [-]

atproto is currently permissionless world readable, that seems worse to most people (I asked low 100s) than being in a siloed platform with some amount of control over who can see their content

oh, maybe you mean Sam Altman's World with their eye scanning for identity, that is quite dystopian

▲ForHackernews an hour ago | parent [-]

Yes I was referring to Altman's "WorldCoin" eyeball-scanning scheme.