Replying to @⁨walden@wetshav.ing⁩

Is that really what’s going on? I always thought the barcode just contained the ID number and your information. Can probably be validated that the format is correct very easily, but you can use the correct format with incorrect data easily.

I assumed the scan was still offline validation. Because if the database isn’t networkable from their store, I imagine they aren’t causing any issues in the sales process. So you would only need to precompile and print a valid barcode with correct-looking data.

Replying to @⁨testaccount789@sh.itjust.works⁩

Yeah, it could be digitally signed for offline verification. But I’m doubtful there’s enough standardization going on that corporations are integrating signature verification right there in the POS system. They’d need the public keys from the government, presumably. That doesn’t sound too difficult but also, setting up a process to get that info for all 50 states would probably be a mess. Do the states even sign the info to start — that’s another question.

I think the infrastructure can be deployed. Though, I get the impression it would take more coordination than we actually see here in the wild.

Replying to @⁨rants_unnecessarily@piefed.social⁩

The stated justification is that it somehow catches forgeries that altered the front of an ID but didn’t make the barcode information match. That might have been justifiable in like 1980 or something, but it’s reaaaaaaally not hard to generate the correct barcode these days if you’re forging an ID.

The real reason is to track and sell more data about you.