We’ve renamed Home Assistant Cloud to Home Assistant Link. Here’s why the old name never did fit, and why this one finally does.
85 comments
Changing the name to distance yourself from AWS and Google Cloud is fine, but "Link" doesn't really tell you anything about where it's hosted or that you still have to pay for it. In fact, by announcing this change with the specific goal of distancing yourself from Big Tech it kind of implies that you're no longer a paid service that happens in some remote data center.
But whatevs. Words don't actually mean anything anymore anyway.
But in this case it’s a misnomer. The Home Assistant instance is not in the cloud, but local. The core service of Nabu Casa Cloud is making it remotely accessible. So Link is actually a better name.
You’re more than welcome to host your own or use a vpn or stick it behind cloudflare.
Cloud does mean something in home automation, and that meaning is generally: you must pay a monthly subscription or the product is degraded or doesn't work at all (looking at you wink). This isn’t that.
They never did.
Well, except in France, they get really mad about that.
Hasn't it meant that for many decades now? Originating as a cloud symbol on network diagrams, but not long after used as a word when people wanted to talk about said diagrams. I certainly remember using it in the 90s, so it has meant that for at least that long. You make it sound like we've only recently come to this determination.
I remember when "cloud computing" was stuff like SETI@Home where a bunch of decentralized, distributed nodes all contributed computing power. But I think that's called the Blockchain now?
I don't know. I usually live under a rock.
"Cloud" today is typically used with a more specific meaning, to refer to services such as IaaS or PaaS, which didn't exist in the 90s.
I don't remember encountering the word "cloud" in the 90s used in the way you describe. The cloud could be a symbol for a telephone network, a packet-switched network (including the internet), a company WAN, etc. Typically you'd refer to whatever the cloud symbol was supposed to represent, it wouldn't be called "the cloud" unless I suppose you were discussing the diagram itself.
Home Assistant users are the power users of the home automation world, but even among their user base I think the number of users who would use a full set of groups and permissions controls in their home is very small.
This is a feature that would take a lot of engineering effort and only make the product more complicated for most of their users. The part of their user base that did use it would probably never be happy because they wanted something even more specific.
Their basic permissions and control structure covers most of the common use cases. Going further would be 100X more work for something that would only be used by a very small minority of users.
These days if you build it with a central policy engine, e.g. on top of Open Policy Agent with Rego as a policy language, and stick to a (actor, object, action) triple system, you can build an extensible and powerful authorization system that usually also is less polluting to the codebase as many other approaches. For HA specifically, where you have a quite low numbers of actors and objects, most of the headaches that could come with such a system in terms of scaling also fall away.
In the age of agents everywhere this is no longer true or viable.
It's going to be hard for them to do it, for historic and legacy code reasons. But it's long past being a choice and now becoming a need.
As somebody with a pretty extensive Home Assistant based home automation system AND kids, I've never once felt the need for this. I can certainly see the utility of it, but Home Assistant is already complicated enough. I'd prefer effort be spent improving the UX, simplifying the system, improving reliability and adding more (optional) integrations.
Many, going back years.
This thread is relevant. Their permissions system is just on entities, and isn't a real EBAC system.
I do think the maintainers are getting better about it. The releases over the past year have reworked a lot of things to be more intuitive for casual users while also being more flexible for power users, but there is still a lot of ground left to cover.
I think with the growing popularity, and expansion of fields of use, this is something they'll ultimately have to reckon with. I've seen quite a few posts on the the HA subreddit, where it's being used for controls in e.g. hotels or other bigger buildings, because it has a great feature set and prevents vendor lock-in. There is no harm in also catering to those people & organizations.
I don't see HA as a consumer established product, as much as Nabu Kasa would like otherwise.
Then again, this is just my guesswork. I have 0 clue the demographics of Home Assistant users
https://www.reddit.com/r/homeassistant/comments/1vxw5pu/acce...
Nabu Casa also hosts e.g. STT/TTS services for a HA to use. Again this is easy to replace with something else and entirely optional to begin with, but since I trust Nabu Casa more than, say, Google and don't have the hardware for local models I like to use them.
I've been working on a small project running mitmproxy on a lot of 'privacy-focused' baby-tracking apps and only one of the ones I've tested doesn't send back a bevy of analytics data (none of which they openly promise to anonymize)
some of the worst culprits had things like the Facebook SDK and Google Ads installed and sending data in spite of literally promising not to generate an Ad ID and three (Baby+, Nanit, and Pregnancy+) straight up had Microsoft Clarity sending data (ie basically screen recordings and full input logs)
Also, surprised with Nanit, Microsoft Clarity was found on the phone app?
With the whole LG fiasco I wouldn't be surprised if the camera itself was doing network fingerprinting and data collection.
and a really obscure and clearly vibe-designed one (that still works fine) that only fired off a single Firebase call noting an install: https://play.google.com/store/apps/details?id=com.mimiapp.mi...
one caveat is that I haven't done anything like longterm use testing - just account setup and a handful of inputs like a specific feed time and amount, etc. if these apps are firing off data with delayed intervals, I wouldn't have captured it
re Nanit, yes, it sent a request to https://r.clarity.ms/collect with a 1.1KB payload after only a few seconds of use. everything I've read about MS Clarity and MS in general around their data practices makes me extremely wary that such a popular app collects this much data
Might as well add 9000 at the end of it.
Read the full thread on Hacker News →
Related stories
- The Verge · 0 points · about 12 hours ago
- Can you forget how you feel about Meta?theverge.comThe Verge · 0 points · 11 days ago
- The Verge · 0 points · 1 day ago
- How Big Tech Runs Tech Projects and the Curious Absence of Scrum (2021)newsletter.pragmaticengineer.comHacker News · 1 points · 12 days ago
- How Big Tech Runs Tech Projects and the Curious Absence of Scrum (2021)newsletter.pragmaticengineer.comHacker News · 1 points · 12 days ago
- The smart home graveyard is getting crowdedtheverge.comThe Verge · 0 points · 6 days ago