From the white paper, it appears as if this system requires its users to trust the server. That's not end-to-end encryption. What do I have wrong here? Further, it looks like the email encryption provided by this system only works between users of Skiff. At that point, why use email at all? Why not use a real secure messenger? Instead of building an "encrypted email service", you could literally just build an email-f…
> That's not end-to-end encryption. What do I have wrong here? Apparently, email may not their main e2ee usecase. The CEO at Skiff wrote this on PrivacyGuides forums: Our solution for external sharing was not intended for email. It is much more powerful to share E2EE real-time collaborative docs/files with subpages, embedded E2EE files, and so much more. Curiously, in the same thread, there's is a mention of Trail of…