iCloud already protects sensitive categories of data (like Passwords, Health data, Messages in iCloud, etc) with end-to-end encryption by default.
Except that there is a footnote in Apple's security document where they confirm that Messages in iCloud is not end-to-end encrypted if you don't enable ADP and have iCloud Backup enabled (which is probably most users):
Standard data protection: When iCloud Backup is enabled, the keys to your backups are secured in Apple data centers. If you use both iCloud Backup and Messages in iCloud, your backup includes a copy of the Messages in iCloud encryption key to help you recover your data.
https://support.apple.com/en-us/102651
So, there is always a backup of Messages in iCloud accessible to Apple and thus (US?) law enforcement, unless you enable ADP and the people you communicate with also use ADP.
WhatsApp is similar by the way. Unless you enable E2E backups, they end up in iCloud/Google Drive backups and are only encrypted at rest. Of the major messengers, I think only Signal completely opts out of iCloud backups and have their own real E2E-encrypted backups.
Even most technical people I talk to do not know this and don't have ADP enabled.
There are a lot of weak defaults like that.
Apple has moved more things into the bucket of "we do not have the keys for this" over time, but pretending that this isn't a tradeoff for the common customer is disingenuous. That's why ADP exists, so that those who want to make a different tradeoff can do so.
Commenters on HN tend to be technically savvy and tend to want the defaults to be tailored to a technically savvy customer base. That's fine, but that's not a real representation of all of the smartphone users out there, and in this case Apple is directly offering the choice that they usually get knocked for taking away.
That's not how to use "pearl clutch". And the UK doesn't do that, and it isn't very free or open, except in the deranged mind of Kier Starmer[0]. Classic liberalism in the UK has long given way to regulation of speech, proud conformity, state dependency, and all the other things that are hallmarks of people who treat the state as a surrogate parent.
[0] https://uk.news.yahoo.com/starmer-defends-uk-commitment-free...
Apple is, from a purely practical standpoint, more a Chinese operation than an American one.
Additionally, the humans who make all of the iPhones and iPads are Chinese people, subject to Chinese law. Apple has to do exactly what the CCP wants, at least for now. They are desperately trying to ramp up phone production in India, but there is huge expertise at Foxconn that isn’t in India as yet.
Any other invasive privacy/encryption interventions from the government only affects their users, not their money, so they cave without issues.
They obvioualy never ever resisted anything except its a good PR stunt.
We are quickly heading to a world where governments want us to KYC everything, and we saw with the Revolut breach what happens when very, very bad people gain access to our private data.
Even though they have zero presence in a country.
The UK is a minor footnote. They can afford to lose it if push came to shove, but for now they're willing to make conciliatory gestures.
Not quite.
The request to confirm age is there, but actually completing it isn't mandatory (though granted, it does leave an 'alert' thingy on your phone settings saying you haven't finished setting it up).
I'm generally okay with "how old are you?" without KYC and changeable later. It just allows apps and websites to display age-appropriate content.
It's a foot in the door. Once this question exists, the next logical one is "prove it".