• So a few of you have wondered about this, so let's go there.

    To ignore the OSA by making it not applicable as much as possible, and essentially to replicate the setup of sites that do piracy and dodgy stuff.

    You will need:

    1. A domain name in a neutral country, Switzerland is good... and some backup domain names, Sweden is also good. Avoid the US and UK domain names including .com .net etc.
    2. Move the servers to another country, Sweden, Germany and Denmark are pretty good.
    3. Place the load balancer for the servers in another country again, still Sweden, Germany or Denmark, but don't make it the same as where the servers are.
    4. Configure the forum to hide everything by default... just lock it down.
    5. Configure the forum to have a manual review of new accounts... if they don't meet a threshold don't give them access.
    6. Set up crowdfunding in a way that is deniable when linked to the forum... it does stuff, maybe it's a cycle club ;)
    7. Replace email authentication with a TOTP or passkey only.
    8. Disable email notifications.

    In this World... the only thing that can be a risk to the forum are the members itself... in this World, move the moderation of existing members to be near zero tolerance. If someone even half flounces... kick them immediately and lock them out, if someone takes up time of the moderators... kick them and lock them out. The biggest risk is the members themselves.

    All of the above is very, very trivial to do... and would be a maze for any authority to shut down. Every time "they" (authorities) go through the expensive and time consuming process of getting legal access to a domain name, or shutting down a load balancer... it takes moments and very low cost to set up a new one. This is extra nice because we actually think we're low risk... we don't even have illegal content... and we moderate pretty damn well... so this is a very high bar for enforcement, for what is a very low risk target... this route makes it disproportionately hard to shut down something of disproportionately low risk. It's even harder for any authority as they won't be able to see what's going on, they rely on snitches.

  • Still needs someone to run the tech, I can't as I've been doing it, and the point and purpose is to make who is running it be near impossible to determine.

About

Avatar for hippy @hippy started