One of the most damaging philosophies #infosec copied from IT is a belief in user inferiority. Too many security decisions are rooted in a patronizing notion that users are children and that trust and agency must be taken from them and given to infosec staff/vendors.
@dredmorbius I elaborate a bit in this post: https://puri.sm/posts/consent-matters-when-tech-takes-remote-control-without-your-permission/