Least Authority

@leastauthority.bsky.social

We're committed to building & supporting the development of technology solutions that advance digital security and preserve privacy as a human right.

The MiCA transition period has ended. For crypto-asset service providers, compliance is no longer about preparing for regulation. It's about operating within it by maintaining effective security controls, managing risk, and adapting as systems evolve. leastauthority.com/blog/strengt...

Strengthening Crypto Security via MiCA Compliance

We can help Crypto-Assets Service Providers safely navigate the new MiCA regulation compliance environment and improve security.

leastauthority.com

Not all security testing approaches answer the same questions. Security audits, managed crowdsourced testing, and bug bounty programs each play a valuable role, but they are not interchangeable. Our recent blog examines where each is most effective. leastauthority.com/blog/securit...

Security Audits, Managed Crowdsourced Security, and Bug Bounty Programs: Complementary, Not Interchangeable

A well-planned security strategy requires understanding how audit approaches differ and where each is most effective.

leastauthority.com

How do we build infrastructure that is open, resilient, and privacy-preserving? Join Least Authority CEO Liz Steininger and fellow panelists at the Neo-cypherpunk Summit (June 14) as they explore self-hosted, peer-to-peer, and decentralized technologies across the stack. talx.dod.ngo/neocypherpun...

Building the Stack: Self-Hosted, Mesh and Decentralized Infrastructure in Practice Neocypherpunk Summit

Uniting technical and cultural perspectives on stewarding p2p, self-hosted, and decentralized technologies, from a diverse panel of builders with expertise spanning "the stack". From the networked l...

talx.dod.ngo

So happy to see how many people want to celebrate freedom in Berlin. Neo-Cypherpunk Summit will be host thousand of people, 80 speakers, communal partners, anti-surveillance merch, pro-privacy board game, books, music & so much more. s26ber.web3privacy.info

Bild

"Without privacy there is no democracy." We're looking forward to the Neo-cypherpunk Summit in Berlin on June 14, where researchers, builders, and advocates will gather to discuss the future of privacy and digital rights. More on our talk soon: s26ber.web3privacy.info

Neocypherpunk Summit #1

14 Jun 2026 - 2025 was an exceptional year: 10000 people, 130 speakers from Eva Galperin (EFF) to Roger Dingledine (Tor) speaking. We decided to make a sequel and strengthen Cypherpunk activism, cultu...

s26ber.web3privacy.info

Consent must be freely given, informed, and unambiguous under GDPR. But when systems are designed without real choice, consent becomes a patch for a deeper problem. We should be building systems that deserve consent. leastauthority.com/blog/buildin...

Building Systems That Deserve Consent - Least Authority

Consent must be freely given, specific, informed, and unambiguous, reflecting a clear expression of the data subject’s wishes.

leastauthority.com

We believe that people have a fundamental right to privacy and that the use of secure solutions enables people to more freely use the Internet and other connected technologies. Privacy by design is not just a principle, it’s a responsibility. www.un.org/en/observanc...

Human Rights Day | United Nations

Human Rights Day commemorates the day on which, in 1948, the United Nations General Assembly adopted the Universal Declaration of Human Rights.

un.org

We recently discovered an unauthorized, modified version of one of our audit reports shared online via a deceptive URL. While we quickly resolved the issue, it served as a reminder of the importance of authenticity and provenance in security reporting. leastauthority.com/blog/lessons...

Lessons Learned from a Typosquatted Audit Report - Least Authority

We identified and addressed a typosquatting issue promptly, but the incident reinforced why authenticity and provenance matter deeply in security reporting.

leastauthority.com