Earlier quoted context omitted.
I know multiple people who stay on Telegram because it has stickers and Signal doesn't. It's a real thing, to the point where I've considered diving into Signal's code and implementing them on top of the existing support for sending photos. Missing feature #2: only the Android app can be paired with Signal Desktop; the iOS app is left out. What's up with that?
#2 has been implemented since September: https://whispersystems.org/blog/signal-desktop-ios/
Worried About the Privacy of Your Messages? Download Signal
241–247 of 247 posts
Re: Worried About the Privacy of Your Messages? Download Signal
#242Earlier quoted context omitted.
Geniune question. For Wire: what is missing from what code they have available? https://github.com/wireapp
Have they released the full server source yet? Last I checked they hadn't.
Re: Worried About the Privacy of Your Messages? Download Signal
#243All the privacy solutions on the market are varying degrees of bad (from a privacy/security/freedom perspective), by which I mean they're all flawed in their own ways. Signal requires Google Play Services on Android. That means it's put simply not a privacy messenger. Yes there's crypto, but it's also tied into Whisper Systems' infrastructure, there's no federation. I use Signal reluctantly, and only on IOS. Threema,…
Geniune question. For Wire: what is missing from what code they have available? https://github.com/wireapp
Re: Worried About the Privacy of Your Messages? Download Signal
#244Earlier quoted context omitted.
Last time i checked they have no revenue possibility. So I decided to skip, I am curious on this too
There's quite an interesting discussion here: https://www.reddit.com/r/privacytoolsIO/comments/57n8ee/inst... As I see it, there's some sort of trade off for all solutions for private instant messaging right now. Wire comes close to a good solution. The biggest problem for me is that the official Android client is quite buggy, UI wise...
Re: Worried About the Privacy of Your Messages? Download Signal
#245Or you could download https://wire.com/ which allows developers to build their own clients and still use their infrastructure. Also, it doesn't force you to use a phone number for registration. It supports audio/video calls. Also, if you're really privacy minded, it doesn't need Google Play Services. That way it can be used in CopperheadOS.
Do you know how Wire makes money to sustain what they are doing? Don't want to invest my time into something that will eventually sell out and do that opposite of what they stand for today.
Re: Worried About the Privacy of Your Messages? Download Signal
#246Why isn't anyone talking about Wire? https://wire.com/ The little I've used it, I found it pleasant and effective. But it almost seems like there is a campaign to ignore Wire; nearly every article written about Signal and alternatives fails to even mention Wire.
That's like saying there's a targeted campaign to ignore Skype because these articles don't mention it. You might like Wire, but it's not an app that people concerned with privacy should be using. They have done a bunch of shady things: 1. They lied about having end-to-end encryption in their app: http://www.pcworld.com/article/2855745/new-communications-ap... 2. They lied about being open source for years. 3. They l…
That was before I joined but that got fixed in 24 hours. Not sure how the incorrect claim made it live in the first place.
> 2. They lied about being open source for years.
Wire open sourced it's crypto protocol in March 2016. It never claimed to be open source before that. It further open sourced it client apps in July 2016 and will open source server some time in 2017.
> 3. They lied about being based in switzerland.
Citation needed. Wire is registered and headquartered in Switzerland with an office in Zug.
> 3. They rolled their own crypto, and experts disapprove of the choices they made.
Link?
Re: Worried About the Privacy of Your Messages? Download Signal
#247Earlier quoted context omitted.
> Can I run a client from the Git repo and still use all of their infrastructure? Yes. You can. They describe how in the very repo I linked. Your ardent unwillingness to spend the 30-45 seconds it would take to find this out before spouting unwarranted false criticism is quite strange. Do you have some personal issue with OWS? I really didn't mean to be defending OWS here - I'd much rather see Signal leveraging non-G…
>> Can I run a client from the Git repo and still use all of their infrastructure? > Yes. You can. The thing is, lucideer, the "restrictions" on the use of the source code are engineered to raise the barrier to independent use, notably by preventing or discouraging redistribution. This means that only those who are able and willing to compile Android source can run their own binaries. Everyone else has to go with the…
1. I haven't read/heard excuses based on updates/features/metrics/&c. as you mention, but their one performance excuse sounds reasonably plausible. Moxie has commented that he'd welcome a PR[0] even if it had bad performance (provided it only ran conditionally of course).
2. The tone in your Github link is a bit heavy-handed, and calling it malware is going too far, but I can understand the developer of software for which security is extremely critical advising strongly against using an outdated version that's being built and distributed by someone else. There is definitely no implication in that comment that F-Droid is malware, he's only referring to TextSecure.
3. I understand your Github link was just to provide an indication of Moxie's tone, but it is very old and the actual factual details in there are probably not very relevant today.
4. I trust the F-Droid software itself, but not necessarily the repository. The distribution of the outdated TextSecure above is as good an example as any - the idea of a 3rd-party building TextSecure and providing it through F-Droid may be all well and good in the spirit of Free Software, but it doesn't really instill trust when the actual author of the software isn't involved at all.
Finally, I'd never heard of the Gandi issues with Moxie's cert before reading that article. After reading it, I'm much more inclined to be suspicious of Gandi than of Moxie. The article is littered with red flags - that fact that their initial response seems to be to go after their customer rather than to question their business relationship with Comodo being a big one.