seeing this thing spread again
yes, server admins with database access, the technical knowledge, and inclination to do so can look at DMs sent to and from people on the instances they host. they don't appear in an interface anywhere unless reported.
the server admin is not always the same person as your instance admin. here on plural.cafe we self host the instance on a virtual server from linode, but there are plenty of instances out there hosted by masto.host, fedi.monster, or other hosting providers.
the cops can subpoena your server admin for access to your DMs as well, don't send anything that could be used as evidence against you in a court of law.
this is a stronger guarantee than you get from corporate social media, which readily and regularly talk to the cops and as far as i'm aware all expose DMs to moderators in their admin interface.
this is a weaker guarantee than end-to-end encrypted messaging (or at least, most of them).
know your threat model.
reshared this












Queen of Argyll
in reply to Robo • • •Robo
in reply to Queen of Argyll • • •Elena ``of Valhalla''
Unknown parent • •@Zel 🐧 @Robo proprio la befana fascista dovevi citare? :D
però concordo pienamente con quello che dici.