I am wondering how this complies with Human Rights to privacy and uninterruptedness (?) of private communication.
What’cha thinking?
I am wondering how this complies with Human Rights to privacy and uninterruptedness (?) of private communication.
What’cha thinking?
Are you saying all an admin has to do is to navigate to a user’s profile, and they can see that user’s private messages?
I am not sure if it’s as easy as Bill is suggesting, but it would be easy enough to look at PMs via the database anyway.
I think they should be called conversations or personal or direct messages rather than private, because saying they are private leaves a user with an expectation of privacy where measures are put in place so the messages are indeed private.
Yes all an admin has to do is go to a user’s profile page and browse away at their private messages.
This should be fixed, there’s no reason it needs to be that easy for an admin to view supposedly private messages.
Not all admins have direct database access.
Seconded. Or at least a toaster that warns that private messages are not that private really and people shouldn’t post sensitive data there (with a “don’t show this again” checkbox, of course).
You shouldn’t have lots of admins or even moderators. My community of 1000 members has 1 admin (me) and 1 highly trusted moderator.
You should be using the Leader and Elder trust levels for everything else. Those people can help with pinning posts, cleaning up the forum, and making sure things are nice and tidy. This comes without any access to private user data which only I have (the same person that could simply query the database).
Agreed. PMs should only be visible to an admin if that admin is impersonating the user. Oh wait, I feel like we’ve had that discussion before, too…
https://meta.discourse.org/t/impersonation-and-reading-private-messages/8485
Then why would they want to be members there?
IMHO if you can’t trust the Admin - don’t join the site.
I agree that personal messages should not be visible to others except the Admin (NOT Moderators) on a need to know basis.
There may be times when an Admin needs to check PMs to resolve an issue.
Les modérateurs ne peuvent voir les messages privés que s’ils sont ajoutés en tant que destinataires ou si un message privé est signalé et se retrouve dans la file d’attente de révision.
Les administrateurs ont un accès complet au site, y compris aux messages privés. Cependant, il existe un paramètre spécial qui, s’il est activé, enregistre dans les journaux lorsqu’un administrateur accède aux messages privés d’autres personnes.
Pour les administrateurs qui souhaitent garantir la confidentialité absolue des messages privés, je recommande d’installer le plugin Discourse Encrypt (pour les messages privés).