It’s a tone-deaf message coming out of the EU right now (pun not intended)
First, right-wing extremist politicians pushed a literal detention center campaign of 1940 Nazi Germany (Madagascar Plan to detain non-citizens in relocation hubs in Africa). Somehow this passed: it’s unmistakably rooted in the 1931 leaked Nazi plan, as stated in 1940, coming to be in 2026. The UN documented in Australia this mindset as a clear violation of international human rights and refugee law, and yet the EU just shouted “Deportation Camps are Great Again” from their bully pulpit.
Second, a very shadowy group of Swedish investors abruptly launched a closed-source fork of the BlueSky surveillance system that they named W (perhaps as a joke it can compromise communities who won’t get on the fascist X and Z platforms).
Anyone claiming to know W’s full ownership is guessing, while W is pushing absolute identification as a requirement for participation in society. At best we know from Svenska Dagbladet that a primary investor of W used Greta Thunberg’s name more than eleven times in promotional material for a November 2018 share issue that raised close to 10 million kronor, after putting her on a youth advisory board, with a prospectus telling investors the venture could be “extremely profitable” through viral climate content and digital ads, while channeling only 10 percent of profits to a charitable fund. Thunberg’s father said the family was never told her name would be used.
CEO, Anna Zeiter, is the persona being attached to this new centralized top-down secret investor controlled form of public communication. Zeiter’s prior role? She oversaw data protection and artificial intelligence policy during the notoriously unsafe years of eBay.
Perhaps you remember:
…eBay lobbyists found to be writing EU data protection law in copy-paste legislation scandal…
Or, then there was this announcement last year:
Levi & Korsinsky, LLP’s investigation indicates that legally protected data may have been unlawfully intercepted during visits to eBay’s website
If you haven’t heard the one about a wolf in sheep’s clothing, I’ll give you a big hint. Look for evidence like attending Stanford Law School with a Master of Law (LL.M.) in Law, Science & Technology. Or if you don’t want to scrutinize Stanford’s known unethical tech pipeline, look at her jump into a record-setting breach failure (May 21, 2014), followed by two distinct surveillance scandals on her watch as global chief, and then an active interception case.
Her handling of the privacy 2014 breach was really bad, but her next two giant scandals are truly unbelievable.
First, remember her 2019 corporate-run cyberstalking? As global CPO, she oversaw eBay’s senior director of Safety and Security and six other staff targeting Ina and David Steiner, the editors of EcommerceBytes. Why? Independent coverage frustrated eBay executives. Surveillance and terror methods were unleashed by eBay: live spiders and cockroaches, a funeral wreath, a bloody pig mask, and a book on surviving the loss of a spouse mailed to their home, their address posted online, plus physical following.
The Justice Department charged eBay with stalking, witness tampering and obstruction. eBay admitted the facts, paid a $3 million criminal penalty, the statutory maximum for six felony offenses, and accepted an independent corporate compliance monitor for three years. Seven employees and contractors were convicted; the eBay fall-guy drew 57 months. As privacy chief what punishment did she get while her own security apparatus ran covert surveillance to silence two journalists? Apparently not enough.
Second, by 2020 her command of privacy at eBay was implicated in port-scanning. Researchers found eBay’s site probing every visitor’s own machine over WebSocket, looking for remote-desktop and remote-access ports, via LexisNexis ThreatMetrix, with the script re-obfuscated on each page load and results exfiltrated to a lookalike domain, ebay-us.com. Security researcher Jeroen Opdenakker called it the default deployment without clear notice or opt-out, a serious infringement of privacy regulations, with CCPA, the Computer Fraud and Abuse Act and GDPR all cited as exposure.
Third, I know I said two, but her track record is so toxic we shouldn’t stop. There are so many examples of personal and professional disasters, let’s do one more at least. She claims to be on Flo’s Privacy and Security Advisory Board since 2022.
Developer of Popular Women’s Fertility-Tracking App Settles FTC Allegations that It Misled Consumers About the Disclosure of their Health Data
That means she joined the board of the app, perhaps from some prior relationship, behind the most notorious femtech privacy enforcement in the US, a company that paid into a landmark 2025 health-data settlement. The violations were so severe, it was the first time the FTC ordered a company to notify consumers of a privacy action, and Commissioners Chopra and Slaughter argued the conduct also violated the Health Breach Notification Rule, which the complaint left out.
So as we say in America, she has three massive strikes, and therefore she’s out. This is someone flogging identity-verified, privacy-first European speech centralized surveillance infrastructure, with a doctorate on free speech, who has been repeatedly intentionally overseeing the exact opposite of what is on the box.
Now, are you ready to sign up for her to use her mysterious “Nordic” framing about her investors to control your communications? Who wants a three-strike CEO in charge of anything to do with privacy? Please tell me, seriously.
Her company choosing to build on top of the BlueSky ATproto in fact fits the very troubled persona, with sketchy investors. She is standing up a choke-point model of total control, which is a repetition signal from every one of the above abuse findings.
Here’s the administrator manual that we should be handing out to any engineers identified as working for Zeiter:

Date: July 7, 2009
Paperback: 162 pages
ISBN-10: 1439229961
ISBN-13: 978-1439229965
In other words, something smells rotten in Denmark.
Who will the be first W-histleblower?
Already we see the fail unsafe mistakes bubbling up from under this CEO. When W scrubbed the Bluesky branding from its staging site to hide their forking plan, the login page lost its SSL certificate, so credentials typed into it would travel as plaintext. The platform whose entire pitch is verified identity and government ID upload. Cleartext.
The scrubbing was implicated in brand deception as well. A staging page still had the Bluesky login clone and a dev PDS page showing the AT Protocol logo. For a week the European press reported EU backing, until Euronews fact-checked it and a Commission spokesperson denied the EU was launching, funding or operating any platform. Supposedly no European-backed project called W exists, and yet everyone seems to see it as such, while W stays silent and issues no correction on the messaging they fed into the public.
That’s not the kind of mistake anyone with a basic clue could make. Tom Casavant doubled-down on the problem by reporting W’s Kubernetes management software used GitHub SSO without identity (lock to single org). For a company asking for state ID, they didn’t even turn on the most critical infrastructure identity themselves.
Zeiter says the ID check works like a club door, confirms human and over-18 through a third party, then deletes the data, and that she has no interest in holding ID data because it can only become a breach. Uh, no. The verification app is built by Neuro from Trust Anchor Group, and if nothing is retained, what stops one person from registering many accounts across devices, which implies some persistent identifier or hash is kept after all? Impersonation already has been demonstrated: Zeiter tagged advisor Yariv Adan, who had registered the username homersimpson, so a verified account can choose any display identity, including that of a head of state. Verified person? More like arbitrary persona.
Who is her homersimpson advisor really? He spent 17 years at Google, co-founding Google Assistant and Google Lens. He is surely why Zeiter says she will “maybe train European AI models with our data”.
I mean, should this rollout be called the EUWWWWWW? Who understands the technology, the branding, yet really wants this, other than the Palantir and Putin crowd?
I’ve written here before about the inherent “Room 641A” design mistakes of BlueSky. It’s simply put an insecure and unsafe protocol. Nothing is secret about the decisions to lower privacy. It seems likely that it was meant to be that way, because anyone doing secure protocol design since the 1970s knows how and why to avoid the centralized surveillance vulnerability using the data “migration hubs” that define BlueSky.
Speaking of which, the only thing WhatsApp really added to the Signal Protocol was a plaintext exposure Signal refused: pervasive metadata harvesting, and a reporting pipeline that ships flagged messages in the clear to a thousand-plus Meta moderators. Imagine being a spy agency and knowing you can get someone hired to read WhatsApp chats. Again, not a secret. The EU is for some reason big on people using WhatsApp, despite it being a foreign surveillance model. This has been repeatedly documented. And look at how well-heeled lobbyists were pushing misstatements/disinformation like this that do harm to public safety.

I guess, I expected better of the EU. They argue wine, cheese, beer… has to be high quality, authentic sourced integrity. And then tech is just this sloppy imitation of bad fascist code preying on hype cycles? But then again, elitist violent seizure of power was quite popular just two generations ago. Latent thirst for political garbage is manifesting.

Anyone promoting W today may as well drop in a Mussolini, Franco, Hitler, Szálasi, Mosley, Salgado… portrait to achieve the WTAF avatar. They would go with Szálasi to bridge with the EU return to a 1940 Madagascar Plan, since he led Hungary’s Arrow Cross and 1944 government that rushed to deport and murder Hungarian Jews before the Allies could liberate them.
And if you’re wondering where Sweden fits, the answer may surprise you. Aside from “neutrally” enabling Hitler with iron ore, financial help, ball bearings and troop transit, Sweden ran a state institute for racial biology (founded 1922 in Uppsala), among the first national, state-funded race-science bodies anywhere. Their forced-sterilization program started, not coincidentally, from 1934 into the 1970s. That’s how they define democracy, because their racist thinking never needed a fascist coup.



