The problem I have with this is that audits or court cases do not prove that the server is only using that same exact code at the instant you are using it… changes to software are constantly made all the time, and they could all invalidate previous audits or presumptions of privacy or security.
That’s true, there’s always going to have to be some trust, but a provider that takes the time and expense to invest in a privacy audit or defend their clients by not logging and establishing that in court certainly indicates they’re worth having that trust in.
The problem I have with this is that audits or court cases do not prove that the server is only using that same exact code at the instant you are using it… changes to software are constantly made all the time, and they could all invalidate previous audits or presumptions of privacy or security.
That’s true, there’s always going to have to be some trust, but a provider that takes the time and expense to invest in a privacy audit or defend their clients by not logging and establishing that in court certainly indicates they’re worth having that trust in.