• Wispy2891@lemmy.world
    link
    fedilink
    English
    arrow-up
    32
    ·
    13 hours ago

    Why they do this:

    After the first three years, Volkswagen is charging ev customers €150/year to see the charge level on the app, remotely start the air conditioning, schedule charge and so on.

    Any tinkerer is thinking “well, if I am paying this extortion just to see the charge level on the app, then I want to exfiltrate my data in home assistant or similar, getting better stats and so on”

    So they blocked the API with Google play integrity signatures

    Now, instead of spending money on engineering ways to block uncertified devices, they could have simply introduced an official API with rate limits and stuff.

    The fact that they noticed all those “unauthorized accesses” it’s prove that people just want to pay for a lightweight API access, not a 250mb app that takes 4 minutes to remotely start the air conditioning

    After all, we’re talking for €150/year for accessing the data of a €1 iot sim card using 0.0001€ of compute time. There should be enough margin for that.

    • ranzispa@mander.xyz
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 hour ago

      Sorry if I ask, what does it mean to remotely start air conditioning?

      Do you mean you can start it while you are not in the car? What’s the purpose of such a feature?

      • QuandaleDingle@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        50 minutes ago

        It’s for when it’s hot outside, you’re leaving a store and you want it to be cool when you get to your car.

    • Evotech@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      5 hours ago

      Too bad the people in charge and developers of sensible mind are not the same people