I've always wanted this for mail-in voting. E.g. print a random secret on the voting form I receive per mail. Afterwards publish the complete vote-count on the web, with the choice and a hash of the secret. So I can check that my vote was recorded, and only once, and correctly.
I understand there might be a lot of reasons for why it could fail in practice, but it would be a start.
A scheme to be able to show coercive parties fake votes would be known to them immediately.
People not trusting the votes being counted properly or people being coerced paid to vote some way and this making it more valuable.
A plausible solution would be to significantly delay the distribution of the record. i.e. if every election was only printed out 2-4 years after the fact, it could give people confidence that the votes are being counted properly (as otherwise they would be found out eventually), but significantly reduce the incentive for the bad behavior (if one things this actually significantly incentivizes it) because it will be a long time before they can validate if what they were given is true.
You can be paid/coerced to vote for someone even if there's total secrecy. For example, you can take your cellphone in and take a picture of your filled out ballot to collect a payment.
Unless you want to start the confiscation of cellphones before voting in person, the risk of a coerced or bought vote will always exist.
[1]https://www.perfil.com/noticias/politica/elecciones-2025-de-...
And then you can go up to the election workers and tell them you have a spoiled ballot and want a new one, which they have to give you. That's one reason such schemes don't work right now.
Source: I volunteer as an election worker every year in Iowa.
I mean, compare the number of people who've flown over Barbara Streisand's property to take a picture of her house to the number of people who had a copy of said picture in their browser cache.
You can read more about this peculiar scaling factor of the internet in Bill Gates 1995 book The Road Ahead.
But even with that, it seems like the better course of action is criminalizing such coercion (which is already illegal). Anyone doing something like that on a scale large enough to matter would be caught rather quickly.
- Their vote, and everyone else's, was counted exactly once.
- The number of ballots that are counted is the same as the number of people who voted.
- Votes are anonymous.
All that is easily done with a clear ballot box, a signing registry, and public counting. Adding technology to that just makes the process more difficult to trust IMO.
As for myself, you're going to have to convice me that the software + hardware that's running on election day is exactly conformant to its published source code (the source code is available, right?)
For actually voting on representatives it would be an absolute disaster.
Of course several people wrote different position statements to vote on.
Did you expect one Debian developer to cook up half a dozen possible stances he is not even personally invested in? Are you constantly surprised that election programs of different parties are worded differently (and use different fonts)?
Choice 7 says "The proposal does not cover indirect contributions, i.e. those originating from upstream works.". It's only making requirements on Debian work specifically.
Choice 8 says "We also acknowledge that LLM usage can be hard if not impossible to detect and that Debian as a distribution cannot really impose LLM policies on other projects we package and distribute. Therefore this text is just a position statement." It doesn't impose any requirements at all on anybody, even for debian specific work: it just says "we'd prefer it if you don't use this technology".
What other projects choose on the question is interesting and might inform the choice, but what e.g. the kernel opts for doesn't control what Debian decides for itself, any more than the kernel's choice imposes any requirements on Rust or glibc or gcc.
You gotta stop seeing "virtue signaling" every time someone holds a belief different than your own.
If it passes, then they could use it, no?
Who the f*ck cares who made it? A monkey could have made it for all I care. If it does what it claims to do, and I understand how, it's all good.
No, the copyright issue is nonsense. That is handled by contract where the contributor is responsible, alternatively, by code submissions of smaller size where copyright loses its meaning, or just base your project in a jurisdiction where it is a non issue.
For 99.99% of the open source projects potential copyright violations is a complete non-issue.
> Who the f*ck cares who made it? A monkey could have made it for all I care. If it does what it claims to do, and I understand how, it's all good.
Copyright laws do care. As an example one can send a patch claiming its their own but because they had do it under their employer duty, the copyright might well be associated to their employer rather than them individually. Does the patch does what it claims to? Surely. Is that a copyright infringement? DEFINITELY SO.
The copyright rationale for the first proposition (Choice 1: Ban LLM contributions from Debian via Social Contract):
> 1. Copyright
> -------------
>
> LLM output has very unclear legal status: it may be possible to copyright on its own merits, or not; it may be affected by all of the licenses and copyrights in the training data, or not.
> Debian Policy and the DFSG require absolute clarity for licensing and copyright[1][2]. Software and other contributions written conventionally by humans with unclear copyright or license status are not allowed in Debian; LLM output should not have a special exception to this.
This rationale states if there is doubt about the copyright of the code, it not suitable for inclusion. Until I guess LLM output get a clarification regarding who is the author of its output.
This is wishful thinking for any project of Debian’s size. You not wanting to deal with it doesn’t mean that people won’t get sued.
There's so, so many reasons to understand and care about the how.