Live data from Hacker News

Signal Foundation

signal.org

101–110 of 298 posts

Re: Signal Foundation

#101
post #64

Earlier quoted context omitted.

Keybase is not really a social network. It feels much more like a sort PKI with a Slack client on top of it. The focus seems very much on Teams. However they could go into more of a social network direction, the features are basically there.

is it for profit?

Nothing is monetized yet as far as I can see. I like Keybase more though, it doesn't force me to have a phone (what the hell, Signal's Linux desktop client requires that at least).

Re: Signal Foundation

#102
post #83
post #42

Earlier quoted context omitted.

Signal Protocol is one of the best documented cryptographic message protocols on the planet, and is accompanied by multiple GPL'd implementations. https://signal.org/docs/

And Moxie disallows people from building third-party clients for the server where 99% of Signal users are on, and without that, group chats aren’t useful.

Since when? You by default use the main servers when you install Noise or signal-cli, despite how Moxie may dislike this fracturing of the Signal client ecosystem.

Re: Signal Foundation

#103
post #8

This is freakin' awesome: A non-profit foundation with $50 million in the bank dedicated to providing usable encryption to the general public, with no other agenda other than the public good. Go read the blog post by Moxie and Brian Acton (who is joining Signal). Very exciting!

When you sum it up like that it sounds like a blatant op run by a clandestine agency...

Sigh, trust is hard after the crypto wars.

Re: Signal Foundation

#104
post #89

Earlier quoted context omitted.

A null vision. Moxie is against federation, and he's against interoperable clients. https://signal.org/blog/the-ecosystem-is-moving/ https://github.com/LibreSignal/LibreSignal/issues/37

I don't think he's against federation, it just doesn't make sense to federate an experiment. Once you've got something really really really solid, then it does make sense. They've been able to iterate their protocol really fast thanks to it not being an RFC or something.

If you're suggesting that Signal will eventually federate, there's nothing in those two links to support that interpretation. In fact, to the contrary:

> Early on, I thought we’d federate Signal once its velocity had subsided. Now I realize that things will probably never slow down, and if anything the velocity of the entire landscape seems to be steadily increasing.

> You're free to use our source code for whatever you would like under the terms of the license, but you're not entitled to use our name or the service that we run. If you think running servers is difficult and expensive (you're right), ask yourself why you feel entitled for us to run them for your product.

Re: Signal Foundation

#105
post #79

Since you are in the US how do you keep the US government from interfering with your mission because Signal uses strong encryption? How do you address the EARs (Export Administration Regulations) and ITARs (International Traffic in Arms Regulations)? These regulations look like a tar pit to me.

Chrome, Firefox and IE ship with very strong encryption (128 bit AES) just fine for many years now. That cat is out of the bag.

Or they secretly allow it because they know something we don't.

Re: Signal Foundation

#106
post #91

Earlier quoted context omitted.

I hope they eventually develop a federated , privacy oriented messaging protocol, once the rapid technological evolution settles down. I know Moxie's position on federated protocols [1], but I think we must eventually agree that an open environment with a multitude of providers and implementations is the only way to provide long term privacy - any single provider is vulnerable. It would also be a very useful tool in…

> I hope they eventually develop a federated, privacy oriented messaging protocol, once the rapid technological evolution settles down. Like matrix[1]? That uses signals encryption. [1] https://matrix.org/

You mean, Matrix does not pose arbitrary limitations to clients that want to use end-to-end encryption. Clients that do not yet feature it by default, and that give huge warnings when you try to enable it. Clients that have problems with complex navigation when trying to verify fingerprints. Matrix is not the future, because at some point you're going to need to defeat metadata, and decentralized platforms can't do that. The future is in apps like Ricochet and Briar.

Re: Signal Foundation

#107
post #81
post #71

This is very very good news. As a heavy Signal user, from where I sit I personally see the following clear needs: -Better group support. Right now, to do a group in Signal you have to name the group, which makes it kind of a pain to create ad hoc quick groups. I'm forever naming them "John Sue Bill" or "Jane Roger Amanda". iMessage, by contrast, just automatically makes a group without a name. You get a thread for th…

Signal has no per-group notification settings Yes it has, at least on Android. Within a group, press the three-dots-menu on top and choose mute notifications. You can choose for how long they shall be muted, similarly to other apps. Adding to your list: - Working backups for text and media.

I'm pretty well stuck on my current phone without a working backup for texts and media, unless I'm okay with losing my memories. Essentially, there is no way for you to take any media with you in a reasonable fashion when changing phones with Signal.

Re: Signal Foundation

#108
I'm hoping they can use some of this cash to make a better desktop client:

1. That can be minimized to the system tray.

2. That can be used when behind an http proxy server.

3. Doesn't require a phone to use.

4. Doesn't take 200MB ram to run.

Re: Signal Foundation

#109
post #76

Earlier quoted context omitted.

I hope they eventually develop a federated , privacy oriented messaging protocol, once the rapid technological evolution settles down. I know Moxie's position on federated protocols [1], but I think we must eventually agree that an open environment with a multitude of providers and implementations is the only way to provide long term privacy - any single provider is vulnerable. It would also be a very useful tool in…

Users don’t want federation. See also: Adoption failure of Google Talk XMPP, massive adoption of Facebook Messenger and Whatsapp, and AIM before it. I wish it were different, too.

Xmpp was pretty popular. Fb messenger and Google talk never allowed federation, but they did for a while allow access by xmpp clients.

Apparently WhatsApp still use xmpp, but afaik also never supported federation.

Aim didn't allow federation.

So I'm not sure what you're trying to say?

You could claim the rotting corpse of duckduckgo's xmpp service is evidence that users don't want federation - but I thinks more just an example of a mis-managed service.

[ed: the other two obvious examples of users do seem to want federation is the rise of irc despite many architectural flaws, and the continued popularity of email.]

Post reply on HN