this post was submitted on 29 Oct 2025
234 points (98.0% liked)

Buy European

7402 readers
721 users here now

Overview:

The community to discuss buying European goods and services.


Matrix Chat of this community


Rules:

  • Be kind to each other, and argue in good faith. No direct insults nor disrespectful and condescending comments.

  • Do not use this community to promote Nationalism/Euronationalism. This community is for discussing European products/services and news related to that. For other topics the following might be of interest:

  • Include a disclaimer at the bottom of the post if you're affiliated with the recommendation.

  • No russian suggestions.

Feddit.uk's instance rules apply:

  • No racism, sexism, homophobia, transphobia or xenophobia.
  • No incitement of violence or promotion of violent ideologies.
  • No harassment, dogpiling or doxxing of other users.
  • Do not share intentionally false or misleading information.
  • Do not spam or abuse network features.
  • Alt accounts are permitted, but all accounts must list each other in their bios.
  • No generative AI content.

Useful Websites

Benefits of Buying Local:

local investment, job creation, innovation, increased competition, more redundancy.

European Instances

Lemmy:

Friendica:

Matrix:


Related Communities:

Buy Local:

Continents:

European:

Buying and Selling:

Boycott:

Countries:

Companies:

Stop Publisher Kill Switch in Games Practice:


Banner credits: BYTEAlliance


founded 9 months ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] emergencycall@fedia.io 57 points 2 days ago (1 children)

A penetration test is not an audit and does not provide any such assurance that logs are not retained. The goal of a penetration test is to penetrate via vulnerabilities and misconfigurations, not validate public logging claims about a service

[โ€“] Vicinus@piefed.zip 36 points 2 days ago (2 children)

The audit covered every public-facing component of Mullvadโ€™s online presence, including the website, the Tor-only Onion service, the rsync setup, and the internal content management system (CMS). Each of these elements was examined for common attack vectors, misconfigurations, or any signs of hidden data collection.

I believe checking the "internal content management system (CMS)" is what they are using to say there were no logs.

They linked a more detailed report in the article, but I didn't look at it. It may contain something different than my takeaway from the article.

[โ€“] Weslee@lemmy.world 7 points 1 day ago

The content management interface for the Mullvad VPN web application is a Django ap- plication that allows content administrators to manage the blog, help guides and similar articles.

Doesn't look like the CMS is anything to do with the VPN service itself.

[โ€“] emergencycall@fedia.io 2 points 1 day ago

Your belief is wrong. That is not what a penetration test does. They are looking at it from the outside.