#locaverdi — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #locaverdi, aggregated by home.social.
-
De bedrijfssoftware draait perfect. Maar houdt iemand het in de gaten?
Veel bedrijven gaan ervan uit dat het moeilijkste deel achter de rug is zodra een app is geïmplementeerd. Een VPS, misschien een container op een NAS in de backoffice, en alles loopt op rolletjes. Totdat dat niet meer zo is.
Het werk van een moderne systeembeheerder bestaat niet uit het aan laten staan van een server. Het gaat erom dat je om 3 uur ’s nachts – nog voordat je klanten het merken – weet dat er iets mis is. En dat je het meestal oplost voordat iemand het doorheeft.
Dat betekent: continu prestatiebewaking, zodat een volle schijf een klusje op dinsdagmiddag is en geen noodsituatie op zondag. Logs van elk systeem die naar één plek stromen, want het antwoord staat altijd in de logs, als je het kunt vinden. Correlatie tussen die logs, want een mislukte aanmelding, een vreemde uitgaande verbinding en een nieuw proces op een server zijn op zichzelf betekenisloos, maar samen duiden ze op een inbreuk die gaande is. Inbraakdetectie die het verkeer actief in de gaten houdt. Adaptieve firewalls gevoed door live dreigingsinformatie, zodat een IP-adres dat vanochtend iemand anders aanvalt, je vanmiddag niet kan bereiken. Back-ups die op herstel worden getest, want een ongeteste back-up is geen back-up. Patching die volgens een schema gebeurt, niet wanneer iemand eraan denkt.
Een “eenvoudige VPS” of een Docker-container op een NAS biedt je dat allemaal niet. Het werkt, totdat het niet meer werkt. En dat moment komt meestal tijdens de drukste week.Dit is wat wij voor onze klanten doen. Wij bouwen de software, en wij hosten en beveiligen deze op de juiste manier. Zodat zij zich kunnen richten op het laten groeien van het bedrijf in plaats van zich af te vragen of de server nog wel draait.
Bedrijfskritische software draaien op infrastructuur die niemand actief in de gaten houdt? Laten we eens praten.
-
De meeste MKB-cookie-inventarissen missen localStorage, pixels die pas afgaan na een klik, beacons bij foutmeldingen, en fingerprinting. Een CMP-scanner ziet die niet allemaal.
Daarom ziet een audit ze wel.
Schreef een gids voor MKB-bedrijven over wat ePrivacy art. 5 lid 3 echt vereist en waarom de banner alleen niet voldoende is.
https://readmodel.com/blog/article.php?slug=cookie-tracker-inventory-guide
#AVG #Privacy #readmodel #locaverdi -
Six years after Schrems II, most SMEs using mainstream SaaS have US transfers, Indian sub-processors, AI services running inference somewhere they can't name — and no documented Transfer Impact Assessment for any of it.
Schrems III is pending at the CJEU. The organisations doing TIAs now will barely notice the ruling. The ones relying on DPF certification won't.
https://readmodel.com/blog/article.php?slug=transfer-impact-assessment-guide
#GDPR #SchremsII #readmodel #locaverdi -
Six years after Schrems II, most SMEs using mainstream SaaS have US transfers, Indian sub-processors, AI services running inference somewhere they can't name — and no documented Transfer Impact Assessment for any of it.
Schrems III is pending at the CJEU. The organisations doing TIAs now will barely notice the ruling. The ones relying on DPF certification won't.
https://readmodel.com/blog/article.php?slug=transfer-impact-assessment-guide
#GDPR #SchremsII #readmodel #locaverdi -
Most SME ransomware advice is either "buy this expensive tool" or "here's a scary statistic." Both unhelpful.
The boring version: immutable backups + MFA + a tested recovery plan covers most of what matters. Controls most teams don't find exciting to implement, which is exactly why they don't.
Wrote a 10-point checklist for organisations without dedicated security teams.
https://readmodel.com/blog/article.php?slug=ransomware-resilience-checklist
#RansomwareResilience #CyberSecurity #readmodel #locaverdi -
Spent four weeks writing long compliance articles. The analytics told me what was obvious in hindsight — most people would rather watch than read.
So here's a five-minute demo of the thing I've been writing about. Creates a project, adds an AI service, maps users and access, generates a ROPA. Free tier is real.
https://youtu.be/20VtaBhrfpQ
#DataMapping #GDPR #readmodel #locaverdi -
Most organisations treat GDPR, NIS2, and the AI Act as three separate compliance projects. They're not. They're the same problem viewed from three angles — and the siloed approach is what's breaking.
The IAPP calls the integrated version "aligned governance." Most orgs are nowhere near it yet.
Wrote up why 2026 is the inflection point.
https://readmodel.com/blog/article.php?slug=digital-governance-beyond-gdpr
#DigitalGovernance #GDPR #NIS2 #readmodel #locaverdi -
Third post this week on compliance, but this one is on the clock.
The EU AI Act deadline is August 2, 2026. That's four months away. And unlike GDPR, which most SMBs at least pretend to take seriously, AI governance is currently a blank page at almost every mid-market company I talk to.
Here's the uncomfortable part: you're already a "deployer" under the Act. If your team uses ChatGPT, Copilot, Gemini, or any AI feature buried inside your CRM or HR platform, you have obligations. Not because you built the AI — because you chose to use it.
The obligations themselves are manageable. Inventory your AI services. Classify each one by risk. Document human oversight for anything that affects people. Integrate it with your existing ROPA. None of that is hard. What's hard is that almost nobody has started.
One thing to know that often gets missed: the AI literacy requirement (Article 4) already took effect in February 2025. If your staff use AI tools, they're already supposed to have training. That deadline is in the past, not the future.
I wrote a guide on what SMBs actually need to do. Four steps, mapped against the August 2026 deadline, written for people who don't have a Chief AI Officer.
https://readmodel.com/blog/article.php?slug=ai-governance-guide
#EUAIAct #AIGovernance #GDPR #readmodel #locaverdi -
Quick follow-up to my ROPA post earlier this week.
The replies and DMs converged on one question: "Okay, but where does the ROPA actually come from?" Fair. I jumped straight to the output without explaining the input.
So here's the input: a data map. The living inventory of what personal data you have, where it lives, who can touch it, and why you're keeping it. Get those four right and the ROPA writes itself. Get them wrong — or skip them entirely, which most organisations do — and you're filling in an Article 30 register from guesswork.
The thing most GDPR guidance gets wrong about data mapping: it's treated as a one-time exercise. Sit in a meeting room, list your services, tick the box, move on. Six months later a new SaaS tool got adopted, nobody updated the map, and your "compliance" is fiction.
I wrote a step-by-step guide on building a data map that actually stays current. Five steps, no jargon, aimed at SMEs without a six-figure consulting budget.
https://readmodel.com/blog/gdpr-data-mapping-guide
#GDPR #DataProtection #Privacy #readmodel #locaverdi -
Most ROPAs I see are spreadsheets. Most of those spreadsheets are wrong.
Not because the DPO is sloppy — because the format guarantees drift. A new SaaS tool gets adopted, someone forgets to email the privacy team, and three months later the "Record of Processing Activities" describes a company that no longer exists.
Then the supervisory authority asks for it.
I wrote a guide on what a ROPA actually needs to be (structured, linked, generated from your real data map — not a flat table somebody updates when they remember). It covers what Article 30 requires, why the <250-employee exemption almost never applies in practice, and what to look for when evaluating a tool.
If your ROPA lives in a spreadsheet right now, this is for you.
https://readmodel.com/blog/ropa-tool-guide
#GDPR #DataProtection #Privacy #readmodel #locaverdi -
Our latest action in retaining privacy control is to stop using LanguageTool. Yes, it's open source. But to our opinion it is not clear about which data is being send to their servers, and what they do with that. Better safe then sorry! #privacy #languagetool #locaverdi
-
Bij verduurzamen vraagt bijna iedereen wat het bespaart en wat het oplevert. Qua geld bedoelen ze dan. Maar heb je dan wel de juiste drijfveer? We willen toch een mooiere en gezondere wereld? Die druk je (nog) niet uit in geld. De wereld gaat stuk door het huidige systeem. Dan moet je verbetertrajecten niet per se willen toetsen aan datzelfde kapotte systeem. Wij helpen je je IT duurzamer, eenvoudiger en vriendelijker te maken. #locaverdi #duurzaam #it
-
Bij verduurzamen vraagt bijna iedereen wat het bespaart en wat het oplevert. Qua geld bedoelen ze dan. Maar heb je dan wel de juiste drijfveer? We willen toch een mooiere en gezondere wereld? Die druk je (nog) niet uit in geld. De wereld gaat stuk door het huidige systeem. Dan moet je verbetertrajecten niet per se willen toetsen aan datzelfde kapotte systeem. Wij helpen je je IT duurzamer, eenvoudiger en vriendelijker te maken. #locaverdi #duurzaam #it
-
Wij maken gebruik van een wachtwoordmanager. (Zou je ook moeten doen!) Hiervoor gebruikten we een open source systeem met een goede reputatie. Alleen wel servers in de USA. Daar hebben we verandering in gebracht. Simpeler is vaak beter en veiliger. Daarom gebruiken we nu KeePassXC. Dat past het best bij onze wijze van gebruik. #wachtwoordmanager #locaverdi #passwordmanager #keepassxc #keepass
-
Go Europe! Een nieuwe stap in het gebruik van meer Europese diensten. We hebben al onze LetsEncrypt SSL-certificaten (die gebruik je om veilig verbinding te maken met een website, https) vervangen door certificaten van Actalis. Dit werkt ook prima samen met certbot, en is ook gratis, maar dan wel Europees. #letsencrypt #europa #actalis #certbot #locaverdi
-
Do you have surveillance cameras? A network-attached surveillance camera can consume a sizeable amount of energy. It's not just the camera but also the NAS or NVR for storage, software for image analysis, and network equipment that's loaded continuously because of the recorded streams. Simple tip to reduce power consumption: just store the event recordings on an SD card in the camera unit. It has downsides, but it's very efficient. #energyefficient #nas #surveillance #frugalcomputing #locaverdi
-
En nu is ons initiatief https://www.moveyourdata.eu/index-nl.html ook in het Nederlands beschikbaar! Start vandaag nog om je data en diensten weg te halen bij bigtechbedrijven en verhuis deze naar open source, lokale en Europese alternatieven. Omdat je zelf de baas wilt zijn over jouw gegevens. #moveyourdata #locaverdi
-
CDNs vs. Simple Servers: What’s Right for You?
Running a website or app? Do you rely on a Content Delivery Network like Cloudflare, or do you serve clients mostly within your country/region? For many SMEs, a basic web server is all you need. No extra complexity, no downtime risks, just smooth, fast performance.
How many times have you seen a CDN fail?
#cdn #website #server #apache #nginx #locaverdi #efficientcomputing
-
Break Free from Big Tech’s Data Dominance!
We’re launching Move Your Data. A new initiative to help businesses reclaim control of their data, away from centralized platforms and US-based tech giants.
At moveyourdata.eu, you’ll find practical guides, actionable steps, and trusted alternatives to migrate your business data securely and efficiently.
Start your journey today: moveyourdata.eu
#DataFreedom #PrivacyMatters #TechResilience #locaverdi #moveyourdata
-
Today we had a tricky replacement. We ditched OpenAI/ChatGPT. Why? Because we don't want to have any business with a rogue state. The alternative we choose is Mistral AI with Ollama and Open WebUI. We run this on an Nvidia Jetson Orin Nano Super development kit. The specific model we use is ministral-3:3b. Sure, it's not up to par with the latest GPT model. But it suits us. It is a very energy-efficient solution to run AI like this. #openai #chatgpt #mistral #locaverdi #nvidia #ollama #openwebui
-
Today we had a tricky replacement. We ditched OpenAI/ChatGPT. Why? Because we don't want to have any business with a rogue state. The alternative we choose is Mistral AI with Ollama and Open WebUI. We run this on an Nvidia Jetson Orin Nano Super development kit. The specific model we use is ministral-3:3b. Sure, it's not up to par with the latest GPT model. But it suits us. It is a very energy-efficient solution to run AI like this. #openai #chatgpt #mistral #locaverdi #nvidia #ollama #openwebui
-
Next application to replace: Apple Notes. We replaced this with Joplin. We are ditching all USA-based services due to the political situation. Do you join us? #notes #locaverdi #joplin
-
A new day gives a new opportunity to ditch another US company. Today we replaced Firefox Sync with Floccus. Why? Firefox is getting a strong AI focus. And that is not what we need in a browser. Also, Firefox Sync is a US based service and therefore no longer safe and sound to use. #floccus #firefox #locaverdi
-
Today we replaced our website contact form. We moved from Jotform to Survio. Moving away from US companies to EU companies. #survio #eu #locaverdi
-
We tested the idle power consumption of the Raspberry Pi 5 with a 128GB Sandisk SD-card and #raspios, the #radxa Rock Pi-S 256MB with a 32GB Sandisk SD-card and #armbian, and the #radxa Zero 3E with a 32GB Sandisk SD-card and Armbian. All while being connected to an Ethernet power. Measurements were taken with a 0.1 Ohm current measurement shunt and a Rohde&Schwarz RTC1002 oscilloscope. Results:
RPI5 2.94W
RockPiS 0.371W
Zero3E 1.22W
#locaverdi #rockpis #rpi5 #frugal -
https://nos.nl/l/2561865 The #usa is making demands on #diversity, #equity and #inclusion to #european companies. Let me be very clear: #locaverdi will never comply to such demands. #dei