Hi Ole, > for a discussion with upstream (removal of a default "anonymously > logging home" feature), I would like to have a reference that Debian > prefers strong privacy (no default logging, even not anonymously) over > usefullness for upstream. The only point I could find is the "Our > priorities are our users and free software" point in the Social > Contract, which is very general and interpretable. The policy seems to > be silent about this. Did I just not look careful enough?
I'm not sure about the policy but one could refer to the fact that such privacy breaches are considered Lintian errors, e.g. as defined by the 'privacy-breach-*' tags, e.g. [1]. You can get a full list by searching for 'privacy' on [2]. Cheers Sascha [1] https://lintian.debian.org/tags/privacy-breach-facebook.html [2] https://lintian.debian.org/tags-all.html