Skip to content

Commit 49698d9

Browse files
committed
Post: Add reference to tutorial
1 parent c35808d commit 49698d9

File tree

2 files changed

+1
-1
lines changed

2 files changed

+1
-1
lines changed

_posts/2021-05-26-april-2021-openaudit-of-lockdown-privacy.md

+1-1
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ title: 'Introducing OpenAudit: Forget Privacy Policies, Get Privacy Proof'
1010

1111
Apps have a responsibility to protect the privacy of user data, and to secure it against external and internal threats. But apps often just make up whatever privacy claims sounds good, and place it in their marketing materials, Privacy Policy, and Apple's self-reported [Privacy Nutrition Facts](/2020/12/18/Apples-Privacy-Nutrition-Facts.html). This leads to data [hacks, leaks, and even theft](/2020/12/02/why-you-cant-trust.html).
1212

13-
OpenAudit is a standardized way of *proving* these claims, instead of just asserting them. A claim must have **references** (either specific lines of code, or relevant documentation). Auditors then perform **verifications** on each reference to ensure they adequately support the claim. To show how this works, we conducted an [OpenAudit of Lockdown Privacy](https://openaudit.com/lockdownprivacy) in April 2021. Here's a snippet:
13+
OpenAudit is a standardized way of *proving* these claims, instead of just asserting them. Here is a [simple tutorial](https://openaudit.com/tutorial) on how it works. A claim must have **references** (either specific lines of code, or relevant documentation). Auditors then perform **verifications** on each reference to ensure they adequately support the claim. More relevant to Lockdown Privacy users, we also conducted an [OpenAudit of Lockdown Privacy](https://openaudit.com/lockdownprivacy) in April 2021. Here's a snippet:
1414

1515
![Screenshot of a the same text document, but now there is a popover that has 3 citations/proof entries right beneath the text that was previously pointed to. The first proof is a Github code snippet with actual source code, second is the wikipedia entry on Advanced Encryption Standard, and third is another code snippet from Github. Under each entry are two "VERIFIED" labels with the usernames of the security auditors who verified each entry.](/assets/images/oa-2-email.png)
1616

dump.rdb

246 Bytes
Binary file not shown.

0 commit comments

Comments
 (0)