Bonum Certa Men Certa

Open Source Initiative (OSI) Privacy Fiasco in Detail: More on the Complaint, Which Also Points the Finger at Stefano Mafulli and Deb Nicholson

posted by Roy Schestowitz on Apr 11, 2025,
updated Apr 11, 2025

OSI Darwin facepalm: Oh, don't tell me...

IN THE introduction and the following two parts we gave sufficient background for people who are not familiar with this fiasco. The previous two parts showed most of the complaint (as a PDF).

Today we add some more bits from the aforementioned complaint:

[complainant:] Original Complaint - truncated. Not much here. Requested a copy.

Additionally, the information can be found here, if they are not timely with my request, I will request it under:

Public Records Act (PRA) Requests:

Email: PRA@cppa.ca.gov with the Subject: ATTN: PRA Coordinator

Mail: CPPA

ATTN: PRA Coordinator

2101 Arena Blvd

Sacramento, CA 95834

Fees are determined by the number of copies and availability of the documents/records requested. CPPA will tell you the final cost. You must pay the fees before CPPA can release the documents/records.

Here's the gist of it again:

[complainant:] Captured from original complaint - truncated

What is the complaint about? Check all that apply.*

A business’s collection, use, storing or sharing of my personal information

Right to Limit the Use of My Sensitive Personal Information

[complainant:] If I recall, I selected these.

What are the name(s) of the business(es), service provider(s), contractor(s), or people that you believe violated the California Consumer Privacy Act?*

Open Source Initiative: A California corporation

Helios: Third party vendor used by the Open Source Initiative for elections.

Deb Nicholson previous Interim Director

Stefano Mafulli as well as their IT staff and those working/volunteering at OSI who may also be held accountable for this neglect of private data.

Are you a California Resident?

no

Please describe the complaint.*

The Open Source Initiative, hereafter known as OSI, used a third party vendor for elections. The 3rd party is hosting that information live with a search function still in place of 589 members for over 4 years.

Please describe any materials you have supporting the complaint.

Publicly available list:

https://vote.heliosvoting.org/helios/elections/bff2406c-ee29-11eb-8191-767e6b2f70fa/voters/list

[Editor: it's still all there!!!]

Have you already contacted the business(es), service provider(s), contractor(s), or people about the complaint?*

no

Do you wish to submit this complaint as an unsworn complaint, or a sworn complaint?*

Sworn

Contact Information: [redacted]

If known, please identify the following information for the business, service provider, contractor or person who allegedly violated the California Consumer Privacy Act

opensource.org

"The stewards are not in the house," we got told. "The OSI allege they are "stewards" of the Open Source Definition, a derivative of the Debian Free Software Guidelines."

"Perens also drafted the Debian social contract."

"The Debian Free Software Guidelines announcement by Perens."

"The Open Source Definition was a derivative of the DFSG. I reached out to Perens to clarify whether DFSG announcement means we can use the DFSG as a model for other projects - partial email to Perens requesting clarification. Just sent today but excited to hear the response: "I recently came across the Debian Free Software Guidelines announce and would like to use the document as a model for my projects as well as promote DFSG or a derivative as a model for other projects. We hope that other software projects, including other Linux distributions, will use this document as a model. We will gladly grant permission for any such use.""

"Does this statement mean we can simply use the document as a model with no further due diligence or explicit permissions?"

Beware face-saving attempts to change the subject.

Judging by what's happening in opensource.org and opensource.net this week, the OSI might be trying to urgently change the subject. As noted in the sister site, in [1] below we see Microsoft proxies doing "State of Open Source Report". Openwashing is also talked about by Microsoft's Nick Vidal [2], who is back with openwashing nonsense for "AI" - the Microsoft Ponzi scheme that OSI gets bribed to constantly prop up. Vidal has been absent from the blog for nearly 3 months. He mostly ducked the turbulent OSI times and now he complains about “open enough.” Is he even aware of what his paymaster (Microsoft) does? Why does he promote GitHub? It's proprietary.

Anyway, the OSI is a big pile of inconsistent messaging, often attacking its very own mission.

Focus on what they are attempting to distract from.

_________

  1. Key insights from the 2025 State of Open Source Report [Ed: OpenLogic is a Microsoft proxy]
    Each year, the State of Open Source Report offers a valuable pulse check on the global Open Source ecosystem—and the 2025 edition is no exception. Produced by Perforce OpenLogic, in partnership with the Eclipse Foundation and the Open Source Initiative, this report uncovers the latest trends, tensions, and transformations shaping how Open Source is adopted, managed, and scaled in organizations of all sizes.
  2. There are no “Degrees of Open”: why Openness is binary
    For Hey Hi (AI) to be truly Open Source, it must uphold the same principles that have defined Open Source software for over two decades. There is no “80% open” or “open enough.” The freedom to use, study, modify, and share isn’t negotiable. It’s either there, or it isn’t.

Other Recent Techrights' Posts

Gemini Links 20/05/2025: LLM Scraper Bots in Gopher and "Starmer and the Somewheres"
Links for the day
Skype Fell Off a Cliff (Microsoft Killed It), All Microsoft Has Left Now is Slop and Spaghetti Code
"This isn’t about AI. This is a puppet show to drive stock prices up and down."
Slopfarms (Machine-Generated Fake News Sites Authored by Bots With Slop Images) Spread GNU FUD
This isn't about Linux (GNU doesn't run just on Linux)
United States Federal Government's Digital Analytics Program (DAP): GNU/Linux Users Represent Close to 6% of Visitors This Year
How far has GNU/Linux gotten? Very far!
The "LLM Ouroboros of Shit" is Complemented by Even Worse Phenomena Caused by Microsoft's Contribution of SPAM and Pollution
Microsoft became a world leader in promotion of LLM slop
The LLM Ouroboros Phenomenon
Fact #1: over time slop gets worse (training set is like some blurry JPEG). Fact #2: People's "smell" for slop improves over time, as they 'train' on slop and can detect it based on prior encounters. Put 1 and 2 together.
How We Defeated DDoS Attacks
One of the best things one can do is migrate to an SSG
Microsofters Issuing Threats to Microsoft Critics Who Blog About Microsoft
So far we see that their "legal strategy" revolves around trying to discredit people like Theodore Ts'o
 
Openwashing of Windows, Back Doors, Persistent Surveillance, Keyloggers, Screen Loggers, DRM and So On
WSL is not "Linux", it's Windows
New 'Interview' With - or Talk Coverage of - Richard Stallman in the European Union
automated English translation
IBM Mass Redundancies Likely This Coming Thursday
We're not in a position to judge if that's true or false
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, May 19, 2025
IRC logs for Monday, May 19, 2025
Microsoft a Top Sponsor at Red Hat Summit (IBM Selling Proprietary Spyware and Back Doors in a "Red" Trench Coat)
They both work for Microsoft
The Official SUSE Blog Uses LLM Slop to Compose Fake Articles Promoting Microsoft and Azure
even a little slop spoils the broth
Links 19/05/2025: Charges of Blackmailing Over Son Heung-min, Chad Opposition Leader Detained
Links for the day
Gemini Links 19/05/2025: Ableism, Silicon Monkeys, and More
Links for the day
Links 19/05/2025: Political Catchup and CISA Advisories
Links for the day
TheLayoff.com Has Begun Deleting Trolls/AstroTurfers Infesting the IBM Section to Discourage On-Topic Discussion About Culls and Maladministration (Bad Strategy)
Moderators have realised there's a problem
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, May 18, 2025
IRC logs for Sunday, May 18, 2025
Gemini Links 18/05/2025: Five Years on Gemini and Atom Feeds over Gopher
Links for the day
Links 18/05/2025: F.D.A. More Sceptical of COVID-19 Vaccines, UK Charges 3 Iranian Nationals In Alleged Attack Plot Against Journalists
Links for the day
Gemini Links 18/05/2025: "Finally Upgraded" and "Rebooting"
Links for the day
There Are Days or Occasions Where gemini:// Requests Almost Exceed http(s):// and Gemini Protocol Isn't Even 6 Yet
Gemini Protocol turns 6 one month from now
Abundance of Good Code, "Just Like Air."
Richard Stallman's seminal manifesto and foundational (practical) work on GNU gave us a very solid system that facilitates productive work without concerns over spyware
Messages in TheLayoff.com Drowned Out by LLM Slop (Comments Focused on Replying to Bot-Generated Provocation)
apparently shaking hands with nazis isn't as bad as calling your git repository's main branch "master"
The Importance of Full Disclosure and Transparency Online
there will be full transparency, as always
Slopwatch: Slopfarms and Serial Sloppers Still at It
Apparently Google is too understaffed to figure that out
Links 18/05/2025: Decreased Prospects of Science Careers, Disappearance of Journalists
Links for the day
Microsofters Have a Long History Trying to Take Down Techrights by Sending Threats to Webhosts
picking on women
Links 18/05/2025: Science, Censorship and European Commission Taking on Monopoly Abuse by Microsoft
Links for the day
Gemini Links 18/05/2025: Šibenik and SFJAZZ Historical Archive
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, May 17, 2025
IRC logs for Saturday, May 17, 2025