Damus
SimplifiedPrivacy.com profile picture
SimplifiedPrivacy.com
@SimplifiedPrivacy.com Podcast
Protonmail is vibe coded

They are dumb enough to put the cursor rules files on Github. Quote:

"You are an Senior SWE at Proton and make sure you do not send any information that is potentially secure in nature. You specialize in building highly-scalable and maintainable Frontend Systems."

The irony of telling AI not to leak sensitive info, when the fact that you've publicly told it, is the leak itself.

And look at the first part with "an senior SWE". They can't even write grammatically correct AI rules. And that's who you trust to encrypt your life secrets?

Proton Source:
https://github.com/ProtonMail/WebClients/tree/main/.cursor/rules

Shout-out the Blogger who discovered it:
https://pivot-to-ai.com/2025/08/02/protons-lumo-ai-chatbot-not-end-to-end-encrypted-not-open-source/
92❤️2😂5👍3👀2
trajan · 40w
I'm really sick of all that AIslop software
Currency of Distrust · 40w
The ones that make me laugh are the “security” rules. Like, I get that adding that to the context makes it more likely to not generate vulnerable code, but as a security person, I absolutely cringe at the fact that these are not real security controls. You’re just begging the bot to do it ri...
Purple Smoke · 40w
So what should we do? It's not like I can go back to gmail.