<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	
	xmlns:georss="http://www.georss.org/georss"
	xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#"
	>

<channel>
	<title>trolls &#8211; kingofnovember.com</title>
	<atom:link href="https://kingofnovember.com/tag/trolls/feed/" rel="self" type="application/rss+xml" />
	<link>https://kingofnovember.com</link>
	<description>I&#039;ve had some whiskey, and I&#039;ve been thinkin&#039;.</description>
	<lastBuildDate>Sat, 27 Apr 2019 04:06:53 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.3</generator>

<image>
	<url>https://kingofnovember.com/wp-content/uploads/2018/06/cropped-jormungandr-shape-1-32x32.png</url>
	<title>trolls &#8211; kingofnovember.com</title>
	<link>https://kingofnovember.com</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">12939687</site>	<item>
		<title>Designing for Evil</title>
		<link>https://kingofnovember.com/2015/04/designing-for-evil/</link>
					<comments>https://kingofnovember.com/2015/04/designing-for-evil/#comments</comments>
		
		<dc:creator><![CDATA[jorm]]></dc:creator>
		<pubDate>Wed, 15 Apr 2015 21:00:23 +0000</pubDate>
				<category><![CDATA[Creative]]></category>
		<category><![CDATA[Media]]></category>
		<category><![CDATA[Topical]]></category>
		<category><![CDATA[Whatever]]></category>
		<category><![CDATA[better living through not being a douche]]></category>
		<category><![CDATA[design]]></category>
		<category><![CDATA[evil]]></category>
		<category><![CDATA[rants]]></category>
		<category><![CDATA[trolls]]></category>
		<guid isPermaLink="false">https://kingofnovember.com/?p=2768</guid>

					<description><![CDATA[Wherein I give you a "Defense against the Dark Arts" primer for designers.]]></description>
										<content:encoded><![CDATA[<p>I want to talk about software design. Specifically, I want to talk about how to design your products to resist the effects of <i>evil</i>.</p>
<p>I need to open this entry with a <i>trigger warning</i>.  It isn&#8217;t possible to talk about defending against harassment without being exposed to it.</p>
<p>That said, here we go.</p>
<p>I strongly believe that I have a <i>duty</i> to try to prevent harm from coming to those who choose to use the things I design.  This means that I need to think about the <i>bad</i> parts of the system, which often isn&#8217;t very pleasant.</p>
<p>I want to talk about <a href="https://en.wikipedia.org/wiki/Anita_Sarkeesian">Anita Sarkeesian</a> and the horrible things that have been happening to her over the past years but first I feel like I need to establish some street credentials.</p>
<p>Back in the year 2011, several employees of the Wikimedia Foundation were put up on the site&#8217;s yearly fundraising banners.  I was one of these people.  I was a very successful banner candidate.  I&#8217;ve <a href="https://kingofnovember.com/2011/06/a-personal-appeal-from-wikipedia-programmer-brandon-harris/">written about this experience</a> before but I wasn&#8217;t very expansive about the darker side.</p>
<p><img decoding="async" fetchpriority="high" src="https://kingofnovember.com/wp-content/uploads/2011/06/angrylookinghippiewithapoint.png" alt="" width="653" height="299" class="aligncenter size-full wp-image-2377" srcset="https://kingofnovember.com/wp-content/uploads/2011/06/angrylookinghippiewithapoint.png 653w, https://kingofnovember.com/wp-content/uploads/2011/06/angrylookinghippiewithapoint-300x137.png 300w, https://kingofnovember.com/wp-content/uploads/2011/06/angrylookinghippiewithapoint-450x206.png 450w" sizes="(max-width: 653px) 100vw, 653px" /></p>
<p>Whenever my banner went up for a test run, I could literally feel the internet turn its attention to me like the fucking <i>Eye of Sauron</i>.  Hundreds of tweets, LinkedIn views, Facebook posts. Pow, pow, pow.  Lots of it was fun and exciting.  Some of it was . . . not.</p>
<p><img decoding="async" src="https://kingofnovember.com/wp-content/uploads/2015/04/pedo.png" alt="" width="500" height="279" class="aligncenter size-full wp-image-2784" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/pedo.png 500w, https://kingofnovember.com/wp-content/uploads/2015/04/pedo-300x167.png 300w, https://kingofnovember.com/wp-content/uploads/2015/04/pedo-450x251.png 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p>It&#8217;s a bit of a bummer to be told by random strangers that you look like a pedophile. Almost especially when they don&#8217;t know anything about you.</p>
<p>Back to Anita.</p>
<p>I don&#8217;t want to write about <a href="https://en.wikipedia.org/wiki/Gamergate_controversy">Gamergate</a> or the state of the art of misogyny on the internet but I need to provide some context.</p>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Anita_Sarkeesian_2013.jpg"><img decoding="async" src="https://kingofnovember.com/wp-content/uploads/2015/04/Anita_Sarkeesian_2013-150x150.jpg" alt="By Susanne Nilsson, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Anita_Sarkeesian_2013.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-3265" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Anita_Sarkeesian_2013-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Anita_Sarkeesian_2013-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Anita Sarkeesian is a feminist game critic.  She produces a <a href="https://en.wikipedia.org/wiki/Tropes_vs._Women_in_Video_Games">series of educational videos</a> about how sexism pervades the game industry.  She does not, in any way, call for censorship or banning of topics or anything like that. She really only says, &#8220;just be aware of what&#8217;s happening here and maybe try to do better.&#8221;</p>
<p>For these statements, she has been continually bombarded with harassment through every possible means available to trolls on the internet.</p>
<p>In early 2015, she posted a <a href="http://femfreq.tumblr.com/post/109319269825/one-week-of-harassment-on-twitter">blog entry</a> detailing a single week&#8217;s worth of harassment.  Scrolling through it is an inexhaustible stream of sewage and hatred.  Some of it is ironically self-aware.</p>
<p>Let&#8217;s scroll through a miniscule amount of Anita&#8217;s harassment.</p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/special_flower.jpg" alt="" width="500" height="259" class="aligncenter size-full wp-image-2769" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/special_flower.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/special_flower-300x155.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/special_flower-450x233.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1om8s51qikfve.jpg" alt="" width="500" height="182" class="aligncenter size-full wp-image-2771" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1om8s51qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1om8s51qikfve-300x109.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1om8s51qikfve-450x164.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1wT5xx1qikfve.jpg" alt="" width="500" height="260" class="aligncenter size-full wp-image-2772" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1wT5xx1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1wT5xx1qikfve-300x156.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw1wT5xx1qikfve-450x234.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw2oYudR1qikfve.jpg" alt="" width="500" height="235" class="aligncenter size-full wp-image-2773" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw2oYudR1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw2oYudR1qikfve-300x141.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw2oYudR1qikfve-450x212.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8q2XjO1qikfve.jpg" alt="" width="500" height="234" class="aligncenter size-full wp-image-2774" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8q2XjO1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8q2XjO1qikfve-300x140.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8q2XjO1qikfve-450x211.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8770qT1qikfve.jpg" alt="" width="500" height="234" class="aligncenter size-full wp-image-2775" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8770qT1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8770qT1qikfve-300x140.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitw8770qT1qikfve-450x211.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxg1lQe21qikfve.jpg" alt="" width="500" height="181" class="aligncenter size-full wp-image-2776" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxg1lQe21qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxg1lQe21qikfve-300x109.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxg1lQe21qikfve-450x163.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxi4zE6I1qikfve.jpg" alt="" width="500" height="233" class="aligncenter size-full wp-image-2777" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxi4zE6I1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxi4zE6I1qikfve-300x140.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxi4zE6I1qikfve-450x210.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxrtcJTQ1qikfve.jpg" alt="" width="500" height="259" class="aligncenter size-full wp-image-2778" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxrtcJTQ1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxrtcJTQ1qikfve-300x155.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nitxrtcJTQ1qikfve-450x233.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nityr79HzR1qikfve.jpg" alt="" width="500" height="259" class="aligncenter size-full wp-image-2779" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nityr79HzR1qikfve.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nityr79HzR1qikfve-300x155.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/tumblr_inline_nityr79HzR1qikfve-450x233.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/speical_flower_2.jpg" alt="" width="500" height="210" class="aligncenter size-full wp-image-2770" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/speical_flower_2.jpg 500w, https://kingofnovember.com/wp-content/uploads/2015/04/speical_flower_2-300x126.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/speical_flower_2-450x189.jpg 450w" sizes="(max-width: 500px) 100vw, 500px" /></p>
<p>I dare you to <a href="http://femfreq.tumblr.com/post/109319269825/one-week-of-harassment-on-twitter">click over and scroll through the full list</a>. See if you can get through Monday.</p>
<p>Anita gets thousands of times more hatred than I ever did. I almost buckled under the weight of the sewage directed at me.  I can&#8217;t imagine how strong she must be to keep going.</p>
<p>I&#8217;ve not been very scientific in my investigations but it appears that only about half of these accounts have been suspended or blocked.  Not that such action matters much: these shit-goblins simply create a new anonymous account and let the good times roll again.</p>
<p>This is the face of evil.  Beelzebub with the thousand eyes and mouths.</p>
<p>It&#8217;s a true failure on Twitter&#8217;s part.  One they have acknowledged in public but (at the time of this writing) have done nothing to address.</p>
<p>When you design a product without understanding how it will be used for evil, you are designing <i>poorly</i>.</p>
<h2>On Trolls</h2>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/IMG_0723.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/IMG_0723-150x150.jpg" alt="By Brandon Harris" width="150" height="150" class="alignright size-thumbnail wp-image-2801" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/IMG_0723-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/IMG_0723-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Let&#8217;s take a moment to understand the basic mindset of internet trolls.  There are, as near as I can tell, three primary motivations that any one troll will have at a time.</p>
<p>Understanding these things will help you defend your users against them.</p>
<h3>To <i>Defeat</i> the System</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Mount_Everest_as_seen_from_Drukair2.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Mount_Everest_as_seen_from_Drukair2-150x150.jpg" alt="By shrimpo1967, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Mount_Everest_as_seen_from_Drukair2.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2802" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Mount_Everest_as_seen_from_Drukair2-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Mount_Everest_as_seen_from_Drukair2-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>These trolls want to break the system just to break it. To do it for the <a href="https://en.wikipedia.org/wiki/LOL#Variations_on_the_theme">lulz</a> or the thrill of doing it. The desire to defeat systems (hacking or cracking them) is a deep part of hacker psyche. They aren&#8217;t necessarily motivated by evil but they often will open the door for <i>others</i> who <i>are</i>.</p>
<p>These people will find holes in your systems. They do it <i>just</i> to find them.  But once they&#8217;ve found them, they nearly always <i>share</i> these holes with others.</p>
<h3>To <i>Subvert</i> the System</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Wolf_sheeps_clothing_barlow.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Wolf_sheeps_clothing_barlow-150x150.jpg" alt="public domain, https://commons.wikimedia.org/wiki/File:Wolf_sheeps_clothing_barlow.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2803" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Wolf_sheeps_clothing_barlow-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Wolf_sheeps_clothing_barlow-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Trolls who <i>subvert</i> a system intend to use it against the <i>spirit</i> of the system.  This is often for laughs but sometimes it has very, very dark results.</p>
<p>In 2008, <a href="https://en.wikipedia.org/wiki/Christopher_Poole">Christopher Poole</a> was elected as the most influential person of 2008 by Time Magazine, beating out Barack Obama, because users of <a href="https://en.wikipedia.org/wiki/4chan">4chan</a> figured out how to game the voting software.  This year&#8217;s <a href="https://en.wikipedia.org/wiki/Hugo_Award">Hugo Awards</a> have been hijacked because someone figured out how to bend the rules to their favor. No big deal, right? No one is getting hurt, right?</p>
<p>Some horrible people use <a href="https://www.secret.ly/">Secret</a> to disseminate revenge and child porn. Secret&#8217;s not a great way to do bulk distribution of child porn, though.  Embedding zip archives of this stuff into <a href="https://en.wikipedia.org/wiki/Scalable_Vector_Graphics">svg</a> files and uploading them to a site like Flickr or the Wikimedia Commons may be, however.  Maybe as large attachments in un-sent emails on any one of a thousand free-to-use web mailers.</p>
<h3>To <i>Weaponize</i> the System</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Goat-with-gun.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Goat-with-gun-150x150.jpg" alt="Unknown origin" width="150" height="150" class="alignright size-thumbnail wp-image-2804" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Goat-with-gun-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Goat-with-gun-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>This is when your system or design is being used against you or another person in a hostile, damaging manner. This nearly always happens because of &#8220;Not Thinking It Through&#8221;.</p>
<p>This may not always happen directly in your product, mind. Data leakage may lead to someone being <a href="https://en.wikipedia.org/wiki/Doxing">doxxed</a> on another site, which may then lead to a swatting.  Or worse.</p>
<p>Consider the proud young parent posting photos of their child at play to Facebook with open privacy settings. Are there things in that photo where a predator could identify the location?</p>
<h2>Mitigation Strategies</h2>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Contención.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Contención-150x150.jpg" alt="By Huitzil, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Contenci%C3%B3n.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2805" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Contención-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Contención-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>How can you prevent your product or design or system from being abused? How can you deal with it?</p>
<p>Well, there&#8217;s no silver bullet on this. There are a series of strategies you can employ, though.  Many will not apply.  You will probably need to use multiple ones, each at differing degrees of strength or opacity.</p>
<p>Some of these strategies suck, but I&#8217;ll include them for completeness&#8217; sake.</p>
<h3>Ignore Everything</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/See_No_Evil_Hear_No_Evil_Speak_No_Evil.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/See_No_Evil_Hear_No_Evil_Speak_No_Evil-150x150.jpg" alt="By John Snape, cc-by-sa-3.0, https://commons.wikimedia.org/wiki/File:See_No_Evil,_Hear_No_Evil,_Speak_No_Evil.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2786" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/See_No_Evil_Hear_No_Evil_Speak_No_Evil-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/See_No_Evil_Hear_No_Evil_Speak_No_Evil-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Just do jack and shit about it.</p>
<p>This is the worst strategy.  You can do it &#8211; and some companies appear to remain successful while doing so.  This is the way that car companies handle recalls: only deal when there&#8217;s sufficient blood on the pavement to affect the bottom line.</p>
<p>I personally find this to be odious and unethical.</p>
<h3>Shut it Down</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Ivy_Mike_-_mushroom_cloud.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Ivy_Mike_-_mushroom_cloud-150x150.jpg" alt="By US Dept. of Energy, public domain" width="150" height="150" class="alignright size-thumbnail wp-image-2789" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Ivy_Mike_-_mushroom_cloud-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Ivy_Mike_-_mushroom_cloud-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Just prevent anyone from doing it at all. This typically means shutting down your application entirely. It&#8217;s often a last-resort solution.</p>
<p><a href="https://en.wikipedia.org/wiki/PostSecret">PostSecret</a> had a short-lived application that allowed users to post their own photos and captions.  It was pulled when people starting posting porn and gore because there were no features to limit this and there was insufficient moderation to work at scale.</p>
<p>This is not a good mitigation strategy because everyone loses.</p>
<h3>Troll Personas</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/troll.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/troll-150x150.jpg" alt="By John Bauer, public domain" width="150" height="150" class="alignright size-thumbnail wp-image-2798" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/troll-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/troll-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>This is a strategy for understanding your weakness. Many design teams create personas for the users they <i>want</i> to service.  The customers they <i>want</i> to have.  Good personas are often an excellent tool for helping to understand the business needs of your product or market.  These personas are almost universally nice, however, and always assume good faith on the part of the persona.</p>
<p>I say to you thus:  you must <i>always</i> make at least one &#8220;troll&#8221; persona.  You <i>must</i> learn to think like your enemy.  Think about their motivations and how they will subvert your product to aid them.</p>
<h3>Limit Feature Strength</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Lyskurv_med_istapper_4319866663.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Lyskurv_med_istapper_4319866663-150x150.jpg" alt="By Charlotte S H Jensen, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Lyskurv_med_istapper_(4319866663).jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2790" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Lyskurv_med_istapper_4319866663-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Lyskurv_med_istapper_4319866663-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>This is reducing or intentionally crippling your product in order to protect your users.</p>
<p>Years ago I worked on a site that was intended as a social and games site for children.  They wanted to have a chat system. Obviously, we wanted to make sure that foul language wasn&#8217;t a part of it.</p>
<p>It would be easy to write a series of regular expressions so that the chat catches and censors Carlin&#8217;s magic seven and all variations. It&#8217;s not so easy to catch &#8220;Hello, little girl, what time do you get out of school?&#8221; or &#8220;I am going to put you in a wood chipper.&#8221;</p>
<p>This is why Nintendo&#8217;s chat systems only allow you to pick from canned statements.</p>
<h3>Banning Wrongdoers</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-150x150.jpg" alt="By AlexanderY, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:PrisonCat.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2791" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-300x298.jpg 300w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-1024x1017.jpg 1024w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-110x110.jpg 110w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-1360x1350.jpg 1360w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-800x794.jpg 800w, https://kingofnovember.com/wp-content/uploads/2015/04/PrisonCat-450x447.jpg 450w" sizes="(max-width: 150px) 100vw, 150px" /></a>Very simple.  Have a very strong code-of-conduct and brook exactly zero violations.  You must be merciless.  You must not allow for rules-lawyering. Identify bad-actors and get rid of them.</p>
<p>Wikipedia has some editors who are simply horrible, toxic individuals.  The way they conduct themselves and talk to new users drives new users away forever. They are allowed to remain because there is always some bullshit reason why the latest round of bad behavior is &#8220;okay&#8221;.</p>
<p>This is the type of behavior that creates gender gaps.</p>
<h3>Educate Users</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Green_board_-_Flickr_-_deeps.adhi_.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Green_board_-_Flickr_-_deeps.adhi_-150x150.jpg" alt="By Deepak Adhikari, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Green_board_-_Flickr_-_deeps.adhi.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2792" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Green_board_-_Flickr_-_deeps.adhi_-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Green_board_-_Flickr_-_deeps.adhi_-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>You can educate users as to the bad things that could potentially happen and things to prevent risk.</p>
<p>The biggest problem here is that no one wants to read a bunch of snooze-fest documentation. I didn&#8217;t join Facebook to have to take a class about it.  Sometimes you can put up interstitial dialogs (like an end-user license agreement) but are you ever really <i>sure</i> that the user understands this?</p>
<p>Does the proud parent <i>really</i> understand that the photo of their daughter&#8217;s recital they just uploaded is geo-tagged? Did they think about the fact that they took it at the school?  Do they <i>really</i> understand what &#8220;Friends of friends can see this&#8221; means?</p>
<h3>Deny Anonymity</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/FsA14_-_Freiheit_statt_Angst_047_14898423850_2.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/FsA14_-_Freiheit_statt_Angst_047_14898423850_2-150x150.jpg" alt="By Markus Winkler, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:-FsA14_-_Freiheit_statt_Angst_047_(14898423850)_(2).jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2793" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/FsA14_-_Freiheit_statt_Angst_047_14898423850_2-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/FsA14_-_Freiheit_statt_Angst_047_14898423850_2-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Simply prevent people from posting or using the service completely anonymously. Allowing <a href="https://en.wikipedia.org/wiki/Pseudonymity">pseudonymity</a> is fine and even great (and recommended).  Just make sure that there is a way to tie any activity back to a specific user.</p>
<p>Purely anonymous culture is fairly toxic so you don&#8217;t want that anywhere near you.  There&#8217;s a reason moot stepped down from running 4chan.  But you don&#8217;t want to force &#8220;real names&#8221;, either, because that will probably open you up to other scenarios (like dead-naming <a href="https://en.wikipedia.org/wiki/Transsexual">transexual</a> people).</p>
<h3>Access Control Systems</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Keys_on_Keyboard.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Keys_on_Keyboard-150x150.jpg" alt="By Intel Free Press, cc-by-sa-2.0, https://commons.wikimedia.org/wiki/File:Keys_on_Keyboard.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2795" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Keys_on_Keyboard-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Keys_on_Keyboard-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>Give users controls over who can contact them and how.  This nearly always requires both white and black lists to work along side a default setting.</p>
<p><a href="http://www.livejournal.com/">Livejournal</a> does this very well: my private posts are only readable by those I&#8217;ve set as &#8220;friends&#8221;, and I can even write elaborate rules about posting only to groups, or to specific people.</p>
<p>Facebook has this kind of fine control, too, but it falls apart very quickly. There are too many options and degrees of visibility and the lack of any serious group support makes managing access difficulty.</p>
<p>It should be terribly easy to add someone to a block list.  Press-and-hold on a tweet and I can block it in one tap.  Blocking someone on Secret, however, requires me to first read the offending secret (which usually contains a photo of gore or revenge porn), <i>report</i> it, and <i>then</i> I can block the user.</p>
<h3>Shadow Reputation Systems</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/Cornava.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/Cornava-150x150.jpg" alt="By Cornava, cc-by-sa-3.0, https://commons.wikimedia.org/wiki/File:Cornava.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2796" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/Cornava-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/Cornava-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>This is a great method but it requires a lot of research and technology.  You&#8217;ll need to instrument everything in your product and identify several patterns of behavior used by your bad actors.</p>
<p>When your system sees someone engaging in these behaviors, you silently and secretly drop them off into the bucket.  This is called <i>shadow-banning</i> or <i>hell-banning</i>.</p>
<p>For example, say your product is one that allows your users to rent out extra rooms in their apartments for short-term stays. If a new user joins your site and then their first several actions are to browse <i>exclusively female</i> profiles, you might be able to determine that they really aren&#8217;t there for the rooms but instead to creep on women. The system could then silently prevent messages they sent from arriving at their targets and they themselves may never appear in searches.</p>
<p>In order for shadow-bans to work, you cannot allow anonymous access to your site.  You must sit behind a log-in wall.  The reason is that if the banned user can see that their comments are not being seen, that they are invisible, they will know that they&#8217;ve been shadow-banned.</p>
<h3>Ask Questions</h3>
<p><a href="https://kingofnovember.com/wp-content/uploads/2015/04/WyattPuppySept2010.jpg"><img decoding="async" loading="lazy" src="https://kingofnovember.com/wp-content/uploads/2015/04/WyattPuppySept2010-150x150.jpg" alt="By Danml283, public domain, https://commons.wikimedia.org/wiki/File:WyattPuppySept2010.jpg" width="150" height="150" class="alignright size-thumbnail wp-image-2797" srcset="https://kingofnovember.com/wp-content/uploads/2015/04/WyattPuppySept2010-150x150.jpg 150w, https://kingofnovember.com/wp-content/uploads/2015/04/WyattPuppySept2010-110x110.jpg 110w" sizes="(max-width: 150px) 100vw, 150px" /></a>When all is said and done, when you&#8217;ve set your ideas to paper, you have to sit down and ask yourself a very specific question:</p>
<p>How could this feature be exploited to harm someone?</p>
<p>Now, replace the word &#8220;could&#8221; with the word &#8220;will.&#8221;</p>
<p>How <i>will</i> this feature be exploited to harm someone?</p>
<p>You <i>have</i> to ask that question. You have to be unflinching about the answers, too.</p>
<p>Because if you <i>don&#8217;t</i>, someone else will.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://kingofnovember.com/2015/04/designing-for-evil/feed/</wfw:commentRss>
			<slash:comments>30</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">2768</post-id>	</item>
	</channel>
</rss>
