Bonum Certa Men Certa

Modern Slavery & Debian Open Source

posted by Roy Schestowitz on Mar 08, 2024

Reprinted with permission from Daniel Pocock.

When people refer to Modern Slavery or People Trafficking, these terms often elicit thoughts of female victims, physical means of constraint and physical transport from one place to another.

In fact, none of these things are necessary for Modern Slavery and People Trafficking. Even more significantly, they are the exception rather than the rule.

A 2022 report from the ILO makes the following observations:

The report goes on to note:

The report found that the main form of coercion used by employers was the deliberate withholding of wages and the threat of dismissal

This is analogous to what we see in Debian and other large free software organizations, where the threat of public humiliations, in place of dismissal, has become a common way to exercise some form of coercive control over individual volunteers.

In 2006, they used physical violence to suppress Ted Walther. In 2021, they created a defamatory referendum about Dr Richard Stallman.

The graffiti on Jacob Appelbaum's house in Berlin is an example of how the open source mafia humiliates somebody. This graffiti is a threat to every other volunteer. Who will be next?

Jacob Appelbaum, graffiti, rapist

Definitions of Modern Slavery

The ILO publishes a definition of modern slavery:

Forced labour can be understood as work that is performed involuntarily and under the menace of any penalty. It refers to situations in which persons are coerced to work through the use of violence or intimidation, or by more subtle means such as manipulated debt, retention of identity papers or threats of denunciation to immigration authorities.

yet they go on to give a broader definition:

also called “modern-slavery” to shed light on working and living conditions contrary to human dignity

Questions of human dignity are far more open to interpretation. For example, if somebody agrees to work for a salary and the employer knows they do not have funds to pay the salary then this is really analogous to forced labour. Although the employee has consented to work, a deliberate deception was used to obtain their consent.

I wrote a previous blog about the open source modern slavery in Albania and I included a definition from the US State Department:

Human trafficking can include, but does not require, movement. People may be considered trafficking victims regardless of whether they were born into a state of servitude, were exploited in their home town, were transported to the exploitative situation, previously consented to work for a trafficker, or participated in a crime as a direct result of being trafficked. At the heart of this phenomenon is the traffickers’ aim to exploit and enslave their victims and the myriad coercive and deceptive practices they use to do so.

The bait

Another ILO report goes into some specific examples of deception.

It begins with a deception or bait of some kind:

A neighbour told her about a man who was offering to pay her 1,000 Euros a month to work as a housemaid in Germany.

In Debian, FSFE and other open source organizations, the deception is different but the effect is the same:

Debian promises a philosophy to lure idealists. For white-collar workers in wealthy countries, they already have enough money to meet their survival needs so the promise of a philosophy resonates more than money.

Debian promises recognition, I take the following quote from the latest Debian law suit where they admit using the promise of recognition to lure people into working for free:

64. ... un des avantages importants de travailler pour la communauté Debian est la valeur de sa réputation dans le domaine, à la fois professionellement et dans la communauté. ...

The promise of recognition is repeated again here in the Debian wiki.

The motivations of the authors also are varied, but the coin that they get paid in is often recognition, acclaim in the peer group, or experience that can be traded in in the work place

The same thing appears in the page about Debian Membership:

Debian has several types of association and membership for those who do wish to be recognised, or have rights within the project.

For people promoting Debian, there is a template for giving a talk. It includes the comments:

you are recognized for your contributions ... Did you ever have a boss who takes credit for your work? Not in Debian.

In short, there is a big emphasis on working for recognition instead of a salary.

In the FSFE, they offered us the opportunity of a Fellowship. Here was the original promise in Linux Magazine.

From November 2009, the Free Software Foundation Europe will be offering three free Fellowships each month to open source activists.

Many people were lured by the perception of prestige associated with the title of Fellowship. People would mention their status as a Fellow of the FSFE in their biography at conferences, in their CV and in their email signatures.

Bait and switch

At some later point, the thing that was promised is simply taken away or even worse, there is a threat to take it away. The former is deception, the latter is coercion.

In the case of those prestigious FSFE Fellowships, the FSFE staff had a little meeting in their Berlin office and decided to remove Fellowships from the FSFE constitution. The Fellowships vanished overnight, much like the Silicon Valley Bank. Fellows felt pissed off.

Debian promised us a philosophy and an organization that is independent of any one company or employer. It is interesting to browse through the email records between 2005 and 2010 and look at the vast quantity of work completed by Frans Pop, the Debian Day suicide victim. Why did he do so much unpaid work from home? His emails suggest he believed in the philosophy, here is one of his last emails:

Subject: Re: Forthcoming acceptance of a Cuban DD
Date: Sat, 5 Jun 2010 01:14:20 +0200
From: Frans Pop <elendil@planet.nl>
To: Christoph Berg <myon@debian.org>, debian-private <debian-private@lists.debian.org>

On Friday 04 June 2010, Christoph Berg wrote: > In short, the DAMs intend to approve Adrian as a DD and will ask for his > account to be created over the next week.
Go for it. Let's really stick to our principles here.

Yet the philosophy has been a sham. It is like walking on quicksand. We can see that in many of the arguments about the Debian Social Contract:

Subject: We are hiding problems
Date: Thu, 17 Mar 2005 08:16:09 +0100 (CET)
From: Andreas Tille <tillea@rki.de>
To: Debian Private List <debian-private@lists.debian.org>

[snip]
or we should provide more relevant information. I will not argue that we really have to open all problems. I want to present a neutral point of view here. But the current wording of the social contract does not reflect the current situation - at least to my knowledge of English language.
Some facts we hide:
[snip]

The Debian Social Contract promises that we won't hide problems. Yet there are approximately 80,000 debian-private messages hidden from public view, minus approximately 14,000 that have already been liberated.

Then there is the promise of recognition for our work. Some people see that as optional. In 2018, the former Debian Project Leader Chris Lamb began spreading emails to directly undermine recognition for my work. This is like bouncing a cheque. Members of his gang then began publishing insults like this in public places, being the very opposite of the recognition that was promised to us:

debian, modern slavery, deception, defamation, fraud

Obedience obtained through coercion

The amateur-hour Codes of Conduct have become a go-to tool of coercion.

These Codes do not contain any specific rules. They are entirely open to interpretation. There is no evidence, no procedure and no appeal. This creates a huge imbalance of power.

I previously wrote about Laura Arjona sending threats to my last Outreachy intern.

Sadly, time is short, so we kindly request you to reply to this message as soon as possible, so the bursaries processing can be unblocked.

An even more chilling example is in the email shared by Dr Norbert Preining, one of the victims of the Debian Christmas lynchings:

We are sending this email privately, leaving its disclosure as your decision (although traces in public databases are unavoidable).

This line is a veiled threat: they promise to keep the punishment secret but there is a hint that they will tell other people and thereby humiliate Dr Preining. A threat like that is analogous to the threat of summary dismissal in exploitative workplaces.

Anybody receiving that email would immediately remember Enrico Zini writing emails to journalists to denounce Jacob Appelbaum:

Subject: On coverage of Abbelbaum being "banned" from Debian
Date: Wed, 22 Jun 2016 09:34:50 +0200
From: Enrico Zini <enrico@enricozini.org>
To: andrew.matler@itwire.com
CC: debian-private@lists.debian.org

Dear Editor in Chief of iTWire,
you may want to do something about this article by Sam Varghese on Debian revoking membership of Jacop Appelbaum: http://www.itwire.com/business-it-news/open-source/73441-appelbaum-banned-from-debian-events-after-sexual-misconduct-charges.html
While the first part is factually correct in its DPL quote, the article ends with baseless hints of Debian and Tor having fallen victims to manipulations by GCHQ psyops.
I consider that to be psycological violence[1] against the various well known people who came out to report abuse, and I wish that news coverage about this situation could rather contribute to creating a community that encourages victims of abuse to speak up.
Quoting the DPL again, "In reaching their decision, the Debian Account Managers took into account the public disclosures from members of the Tor project and others, and first-hand accounts from members of the Debian community."
We are not talking about vague rumors spread by a couple of infiltrators, we are talking about first-person accounts provided by well known and respected members of both communities, with a track record of contributions of many years.
These people who had the guts to speak up deserve credit and respect, and the article published on your site gives them none.
[1] https://en.wikipedia.org/wiki/Gaslighting
Regards,
Enrico
-- GPG key: 4096R/634F4BD1E7AD5568 2009-05-08 Enrico Zini <enrico@enricozini.org>

Consent obtained by deception

If we consent to work in exchange for recognition and if that recognition is deliberately and maliciously stolen from us then it is a worse outcome than if we were simply forced to work while being tied up in chains.

There are analogous examples for this situation too. There are a lot of men who will tell little white lies in order to get a romantic date. In one of the more extraordinary cases, an Arab man pretended to be Jewish in order to get a date with a Jewish woman and he was convicted of rape by deception.

What we see in Debian today are employees of Google and Ubuntu who use their @debian.org email addresses to hide who they work for and pretend to be volunteers. In fact, this is also illegal in much of the EU where companies are obliged to identify themselves in email signatures.

Subject: Are the RMs being paid?
Date: Wed, 11 Oct 2006 16:05:25 +0200
From: Christoph Berg <myon@debian.org>
To: debian-private <debian-private@lists.debian.org>

Hi,
before I vote on the let's-or-not-recall-the-DPL GRs, could someone give me an update on whether dunc-tanc or anyone else remotely Debian-related is actually paying the RMs? (both/neither/whom?)
It probably won't influence my votes, but I'd like to know if I'm voting on some what-if scenario or not.
Christoph
PS: Sorry if that information was already posted somewhere else, there's just too much traffic on lists. -- cb@df7cb.de | http://www.df7cb.de/

Other Recent Techrights' Posts

European Authorities, Already Bribed and Infiltrated by Microsoft, Won't Help You Find BigBlueButton, Jami, Ring, and Jitsi
Because they're paid by Microsoft and are Microsoft 'addicts' themselves
Moving From Content Management Systems (CMSs) to Static Site Generators (SSGs) Saves You Time, Makes You a Lot More Productive
try to reduce the cost (financial and computational) of running your site
Leak: European Patent Office (EPO) is Now Attacking Amicale Clubs
corruption has become the norm and scientists are robbed of any dignity
Oracle Fraud (or Defrauding Shareholders)
"the obvious [lie] is that watts are (wasted) electricity [and] and FLOPS are computing capacity"
Explaining (in Length and Depth) the Damage Matthew Garrett Did to Linux and to GNU/Linux Users
no matter how many threats we receive
 
Linux Mint 9/11: "4th One Today..." (in Reddit)
Remember that not everyone having an issue reports it to social control media like Reddit
Nepal Will Fall Without a Single Shot Fired, Thanks to Social Control Media
Or very few shots (by the authorities)
European Corruption in the European Patent Office (EPO) Targets Culture
"In reality, the project includes a new “legal instrument” shifting administrative burden and liability on EPO staff while creating new uncertainty and externalising Amicale activities."
UEFI Secure Boot Failing, as Expected for Nearly 15 Years Already (Techrights Said This Since 2012)
in the media
Debian 9/11
people report this issue
Gemini and Web Links 13/09/2025: MElon's Slop Grift and "Autonomous Trains"
Links for the day
Pursuing Peace Through Violence
You cannot "see" a person's mind, until the mouth opens
Can We Please Stop Celebrating Shooters?
"An important point to hammer on is that CoCs were never intended for uniform or symmetric application"
Geminispace is Growing Faster in 2025 Than It Did in 2024
What matters is that corporations haven't ruined it and LLM slop is extremely rare
Links 13/09/2025: China Punishes for 'Negative' Posts, US Police Unable to Find Shooter
Links for the day
Who's the Mystery Financier of SLAPP Against Techrights and Is That a Millionaire/Billionaire?
Whose idea was it to fund meritless lawsuits against my wife and I?
Slopwatch: Slow Slop Day
This distracts from or may take traffic away from the original articles, actually written by actual people
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 12, 2025
IRC logs for Friday, September 12, 2025
CoC Gone Wrong: Celebrating Murder OK, Complaining About the Celebration Gets You Banned
Hopefully the NixOS Foundation will have a word with (maybe replace) the moderator/s
Gemini Links 12/09/2025: Familiarity and Secondary Dominants
Links for the day
Links 12/09/2025: "Bad Reviews" as Extortion Weapon, "Free Speech At Risk in America’s Schools" According to ACLU
Links for the day
Only One Speaker Does Not Do Sharecropping for MElon (in X.com)
The man who puts principles before PR/optics
The Mind of the 'Hulk Hogan of UEFI'
in a nutshell
A Day After "UEFI 9/11": UEFI Secure Boot Bypass
In the news today (right now), as published in the past few hours
Links 12/09/2025: Slop Code as Liability, Microsoft Outlook Down for Many
Links for the day
It's Still Not to Late to Turn Off "Secure Boot"
If people reboot their PC or server today, and it relies on "Secure Boot" on Sept. 12 or later, then depending on the firmware there may be trouble ahead
Links 12/09/2025: Shira Perlmutter is Back, “Software Per Se” Patent Rejections in In re McFadden
Links for the day
Slopwatch: Linux Plagiarism, Slopfarms Still Infesting Google News, Many Images Are Fake
Google is promoting plagiarism
"This Morning Might Turn Out to be an Interesting One for System Admins Who Haven't Updated Their Devices' Secure Boot Certificate" (If They Reboot)
Who asked for this anyway?
Gemini Links 12/09/2025: Metric System, Dumping Windows, and Software Architecture is Dead
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, September 11, 2025
IRC logs for Thursday, September 11, 2025
Microsoft Admits the Workers Have Lost Trust (Endless Layoffs, 12-13 Rounds of Layoffs This Year), So Now It's Trotting out Its Peter Bright-Like Media Prop Jordan Novet
What they don't want people to pay attention to right now
Links 11/09/2025: Windows TCO and Russian Drones Invading Poland (EU/NATO)
Links for the day
Gemini Links 11/09/2025: xkcd, misfin, and Alhena 5.3.2
Links for the day
Repetition of Last Summer (Microsoft Breaking Dual-Boot Systems)
UEFI 9/11 is about to kick in
UEFI 'Secure Boot' Boiling Frogs (Cannot Turn Off 'Secure Boot')
"MSI laptop is locked on Secure Boot and doesn't allow me to turn it off"
UEFI 9/11 Aftermath - Part IV: The 'Hulk Hogan of UEFI' and His 'Hideout' Holiday (Retreat From Reality)
Let's keep an eye on what matters
UEFI 9/11 Aftermath - Part III: Mr. 'Secure Boot' (Shim) and His Fake 'Holiday' (Sending My Wife and I Threatening E-mails on 9/11)
despite being on holiday, according to him, he finds time to instruct lawyers to contact my wife
UEFI 9/11 Aftermath - Part II: "The SecureBoot Thing Got Out of Hand."
The next few weeks might be... interesting
UEFI 9/11 Aftermath - Part I: "I Believe This Affects Thousands of Devices... Because Multiple Devices I Checked, Whether Client or Server [...] Affected."
Most people aren't even aware that this is happening or about to happen
The UEFI 9/11 - Part X - An Outline of the Series About Microsoft Sabotaging GNU/Linux (With Ramifications to Unfold Online in Coming Weeks as People Reboot)
Today is UEFI 9/11 (9/11/2025)
Ron Wyden: Microsoft Should be Held Accountable for Security Breaches (He Has Said This for Years Already, It Never Happens)
Negative media coverage isn't a fine and it does nothing to compensate Microsoft's billions of victims
Culture of silence: Ubisoft harassment convictions, Mozilla, Sylvestre Ledru & Debian make no comment
Reprinted with permission from Daniel Pocock
Disable 'Secure Boot' (If It Lets You)
it doesn't put you in control
Links 11/09/2025: "Hey Hi" Ponzi Schemes at Oracle (Unpaid Contracts) and Cindy Cohn is Leaving the EFF
Links for the day
Longtime Red Hat Staff: Maybe Just Disable 'Secure Boot'
A refreshing take from Adam Williamson
Gemini Links 11/09/2025: Playdate Console, Dichotomy between the Real and the Digital
Links for the day
A Dozen Observations About "UEFI 9/11" Deflections
What we are expected to see, tentatively
The Microsoft AstroTurfing and Microsoft-Led Blame-Shifting Tactics Are Ahead of Us
Of course it has nothing to do with security, it's about control, i.e. them controlling everything
Celebrating Assassination is Bad Because It Legitimises Assassination of the People You Like, Too
Condoning or even celebrating political assassinations is bad optics (and taste)
The World's Richest Ponzi Scheme (Faking Value Using Net Waste)
The higher they go the harder they fall
We Could Dual-Boot Back in the 1990s, Why Has This Become So Difficult?
And prone to breakage
Being Conditioned to Accept Unreliable Computer Systems That Fail With Black Screen of Death (BSoD)
Welcome to 2025
Slopwatch: Google News is Still Promoting Many Fake Articles About "Linux", in Effect Rewarding Misinformation and Plagiarism
things continue to deteriorate
New Series: The Coup Against GNU/Linux Has Begun
today, this year in particular, we shall also focus on Secure Boot, which is sold based on a lie and tortures many computer user
New Paper on "BYOVD, but in firmware. Signed UEFI shells, vulnerable modules offer new paths for Secure Boot bypasses."
One might say digital "security theatre"
Links 11/09/2025: Oracle Layoffs, Drunk Pilots in Japan Airlines, US-Korea Tensions Grow
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 10, 2025
IRC logs for Wednesday, September 10, 2025