you are viewing a single comment's thread
view the rest of the comments
[–] 1 point 1 month ago (3 children)

How do you trust that it isn't sending identifiable info to them too? Is the software open source and auditable? Is it legally enforced that every hardware uses the open source software?

I assume that it would need some kind of asymmetric encryption signature on the boolean too, and make it change all the time like OTP? Otherwise I'd think it could be intercepted and forged, right?

And how would the reader work? Everyone needs to buy a reader to beep their ID to when they want to watch porn?

  • source
  • parent
  • hideshow 3 child comments
  • [–] 2 points 1 month ago (2 children)

    And how do you verify the source of the "yes/no" signal is a valid ID card? How do you know it's used by the person linked to it?

    Either the yes/no is trivially faked (so you might as well skip the formality), or the user secretly does get ID'd.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 1 month ago*

    The data live on your eID, which is basically a Yubikey except you can't save whatever you want on it.

    Original page, since I don't want to paste the full translation: https://meid.minv.sk/?page=frequent-questions%2F#howItWorks


    Some countries in the EU like Slovakia also allow you to use passkeys that basically act as supplement to using physical ID card, so that you can use something better like Yubikeys or save it to your password manager.

  • source
  • parent