Dead Comment
Most of the arguments presented in TFA are about openness, which can still be achieved with standard binary formats and a schema. Hence the problem left to solve is accessibility.
I’m thinking something like parquet, protobuf or sqllite. Despite their popularities, still aren’t trivial for anyone to edit.
Google uses it a lot for data dumps for tests or config that can be put into source control.
> The instance was used to store contact information and related notes for small and medium businesses. Analysis revealed that data was retrieved by the threat actor during a small window of time before the access was cut off. The data retrieved by the threat actor was confined to basic and largely publicly available business information, such as business names and contact details.
Eg: https://turbotax.intuit.com/personal-taxes/online/free-editi...
If there was also a free flow available, why would the government need to build an alternative?
Also, care to elaborate why you think the spec is complicated and hard to implement?
Pix and OpenFinance are extremely chatty APIs with a ton of rules. Being a merchant using the ecosystem is not that bad, but trying to be a participant in the network is complicated.
Then, just last week, the US presidency launched an investigation considering Pix an unfair trade practice against the US.
Actions like that may show the current direction of the US government is aligned on preserving status quo. But still, I wonder how impactful a public digital infrastructure for the dollar would be.
The chargeback system (MED) is only so-so right now, but expected to get better.
There is a lot to like about Pix, but the spec is extremely complicated and hard to implement.
Especially something that needed to be renewed every 90 or is it 40 days now. How about issuing 100 years certificates as a default?
https://cloud.google.com/certificate-manager/docs/public-ca-... (EDIT: Google is their own CA, with https://pki.goog/ )
The browsers and security people have been pushing towards shorter certs, not longer ones. Knowing how to rotate a cert every year, if not shorter, helps when your certificate or any of your parent certs are compromised and require an emergency rotation.