Hacker News new | ask | show | jobs
by gsich 2193 days ago
Mozilla can't verify that the providers behave. Apart from the obvious NXDOMAIN answers (not many providers will do so).

Also it is questionable why a free service would be better then a paid one. If one assumes that the ISP is evil, DNS providers are not suddenly less evil.

1 comments

As with its Trust Store Mozilla operates in public. If you believe that providers aren't behaving you can and should present evidence to the community.

Mozilla isn't suggesting you choose services based on how cheap they are, but on whether they implement these policies.

NextDNS, who are on Mozilla's list, offer a paid service if you want advertising filters or porn filtering or whatever but if you're damn sure you "get what you pay for" then pay them their subscription fee and don't switch on any filters.

>Mozilla isn't suggesting you choose services based on how cheap they are, but on whether they implement these policies.

Mozilla doesn't know if they do. They can't verify it. So if Mozilla says "Cloudflare and Nextdns adhere to our policies" it's not verifiable by me and neither by them. I don't see a "trust but verify"-implementation. This is my gripe with this behaviour.