1601
submitted 1 year ago* (last edited 1 year ago) by Sunny@slrpnk.net to c/selfhosted@lemmy.world

Text:

I consent to Plex to: (i) sell certain personal information (hashed emails, advertising identifiers) to third-parties for advertising and marketing purposes; and (ii) store and/or access certain personal information (advertising identifiers, IP address, content being watched) on my device(s) and share that information with Plex’s advertising partners. This data is used to deliver personalised ads and content, ad and content measurement, audience insights and product development. Your consent applies to all devices on which you have Plex installed. You can withdraw your consent at any time in Account Settings or using this page.

Soure: https://www.plex.tv/vendors/ (Might have to clear cache)

Can also read about the changes here: https://www.plex.tv/about/privacy-legal/

you are viewing a single comment's thread
view the rest of the comments
[-] catloaf@lemm.ee 39 points 1 year ago

Jellyfin is a no-brainer. Publishing services on the Internet is complex.

[-] MaggiWuerze@feddit.org 10 points 1 year ago

If they adhered to somewhat modern security principles for their Backend I wouldn't mind hosting it behind a reverse proxy. But since large parts of the API is unauthorized and unprotected, I wont.

And I do not plan on supporting family and friends in setting up vpns on all of their devices

[-] Kusimulkku@lemm.ee 5 points 1 year ago

What are the worries behind it? Last time someone was worried about the security it was about knowing filenames of the stuff you host by brute forcing iirc

[-] Saik0Shinigami@lemmy.saik0.com 7 points 1 year ago* (last edited 1 year ago)

Last time someone was worried about the security it was about knowing filenames of the stuff you host by brute forcing iirc

Knowing (guessing) the file path allows them to access and stream the content. Meaning worst case scenario... Sony (the people known for putting malicious stuff on CDs) can probe your server, and prove the content is there because your server will return the movie file itself.

[-] MaggiWuerze@feddit.org 5 points 1 year ago

The issue is their approach to security. I don't trust them to properly secure their software, since they have proven to prefer client compatibility over security.

[-] Kusimulkku@lemm.ee 4 points 1 year ago

Understandable. I don't worry that much myself since I haven't heard anything bad happening yet. And with ro rights to media, potential damage at least should be pretty limited.

[-] ipkpjersi@lemmy.ml 1 points 1 year ago

And with ro rights to media, potential damage at least should be pretty limited.

Depends entirely on where you live I would think.

[-] FreedomAdvocate@lemmy.net.au 0 points 1 year ago* (last edited 1 year ago)

You’re in a post about people outraged about an opt-in anonymous data sharing option on Plex, and you’re not worried about known security issues because you haven’t heard of anything bad happening yet?

Make it make sense.

[-] Kusimulkku@lemm.ee 5 points 1 year ago

I'm not sure how a service selling my data and services having potential security issues are the same. Two different issues imo

[-] Auli@lemmy.ca 2 points 1 year ago

I don't care if they probe for my media considering I block 99% of the world. Yes blah blah they could get around it. If someone really wants to see what I have on my media server that bad, I don't think I'd be able to stop them anyway.

this post was submitted on 29 May 2025
1601 points (97.4% liked)

Selfhosted

60810 readers
641 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS