RexSystem1 voteoriginally by @fluxerhost on GitHub OP1 reply
Example use case for this feature: running fluxer in a corporate setting, or for a law firm.
"Legal discovery" and evidence preservation for all messages must be preserved.
If an employee leaves or is fired, they don't get to take their messages with them.
If an employee is involved in a corporate investigation (e.g. harassment), the investigations team should be able to extract all messages sent by the user. Message immutability via expanded ACLs is a good first step to support such safety.
It is more technically complex, but also a good idea, to preserve all edit and delete history, however it is also a good feature and easy to implement to add message immutability/making the ACLs around messages more granular.
RexSystem1 voteoriginally by @fluxerhost on GitHub OP
To clarify about the potential privacy and "harm" concerns:
The concerns listed about "harm" are both theoretical and potential, not actual or clearly listed. Any administrator can use any feature in a harmful way - such is the way of any technology. How a person uses any technology is not in the realm of consideration of a technical feature such as granular ACLs.
The concerns listed about privacy are also not relevant to this feature - not only would the feature be toggle-able at the instance level, and even further, would be toggle-able at the community, and ultimately at the ACL level, as proposed here, per role or channel (like other permissions), but also, the "right to be forgotten" is covered by two features already: the community-leave-and-delete-all-messages feature, which would be unaltered by this feature, or the delete-my-account-and-all-data feature, which would also be unaltered by this specific feature request, as proposed.
I think vkyfox explained about safety and privacy concerns well as well: https://github.com/orgs/fluxerapp/discussions/3200#discussioncomment-18748231
Thread
Comment by @fluxerhost
Example use case for this feature: running fluxer in a corporate setting, or for a law firm.
"Legal discovery" and evidence preservation for all messages must be preserved. If an employee leaves or is fired, they don't get to take their messages with them. If an employee is involved in a corporate investigation (e.g. harassment), the investigations team should be able to extract all messages sent by the user. Message immutability via expanded ACLs is a good first step to support such safety. It is more technically complex, but also a good idea, to preserve all edit and delete history, however it is also a good feature and easy to implement to add message immutability/making the ACLs around messages more granular.Comment by @fluxerhost