cross-posted from: http://beehaw.org/post/20989376
Where Soatok goes over why checklists are meaningless when trying to figure out if something is private or just for comparisons in general.
cross-posted from: http://beehaw.org/post/20989376
Where Soatok goes over why checklists are meaningless when trying to figure out if something is private or just for comparisons in general.
I’m surprised this article doesn’t mention privacytests.org by name, but it reaches a conclusion that may as well:
Thankfully there’s a good recommendation in the very next paragraph for all things (messaging apps, browsers, etc):
Also: shots fired at XMPP throughout, as the poor protocol limps along trying desperately to catch up to the encryption baseline that was set over a decade ago by the first versions of Signal.
Why OMEMO is “bad” is indirectly answered earlier:
Similar discussions have skewered the federated Delta Chat for having an even worse version of this issue.
Please see my comment about this issue. Signal does not pass this test due to not having (working) reproducible builds.