Live data from Hacker News

Signal is working on a paid option to create an account without a phone number

aboutsignal.com

31–40 of 47 posts

Re: Signal is working on a paid option to create an account without a phone number

#31
post #25
post #20

Earlier quoted context omitted.

Reproducible builds are nice, and I would love to have them for Signal. But I think I disagree with most of what you've written. Enabling "unknown sources" does not make my device less secure. The setting is also disingenuously named: It is in fact "known sources" I am installing (not "sideloading") software from. It is just not a source Google wants to know of. I also do not need to reproduce every new release from…

> Enabling "unknown sources" does not make my device less secure. The setting is also disingenuously named: It is in fact "known sources" I am installing (not "sideloading") software from. It is just not a source Google wants to know of. By disabling signature verification you open yourself up to man-in-the-middle attacks and supply chain attacks. How do you know the signal CDN account was not compromised to serve ce…

> By disabling signature verification you open yourself up to man-in-the-middle attacks and supply chain attacks.

I am no expert, but AFAIK Android does not disable signature verification when installing from "unknown" sources. It verifies the APK is signed and unmodified on every install, and enforces key continuity on updates.

Signal uses the same signing key for both the Play Store and signal.org APK, so if you at any point installed from the Play Store, the key identity is (as far as I understood) attested by Google, and every subsequent update from either source is verified against it.

I do think that Obtainium pins the key as well, so even without Play Store: If the original install through Obtainium wasn't a manipulated version, you should enjoy the same continuity.

I get the idea about a hypothetical threat actor from within Signal poisoning my specific install. But I think I'll roll with it for now.

Re: Signal is working on a paid option to create an account without a phone number

#32

If this works without proprietary software, it might actually convince me to use Signal. I already have a VoIP phone number through JMP and would be happy to use it for Signal, but I've read that registration isn't an option on the desktop client, even if I also have a phone number. I looked for a fork or alternate compatible client that allows registration but didn't find one.

My advice is not to use any service which claims to be focused on privacy if they fail to update their privacy policy after even introducing major changes that would impact it such as moving your data into the cloud.

Signal's privacy policy says "Signal is designed to never collect or store any sensitive information." but that hasn't been true for a long time now. They just refuse to update their policy; maybe that's them trying to warn people away from the service as loudly as they can.

https://web.archive.org/web/20230519120156/https://community...

Re: Signal is working on a paid option to create an account without a phone number

#33

Earlier quoted context omitted.

If it’s not anonymous then it’s only a matter of time until it’ll lose its privacy …

They have sealed sender which improves contact privacy.

Worth a read about Signal's Sealed Sender and how it doesn't preserve its properties with receive and read receipts: https://news.ycombinator.com/item?id=46022279

Re: Signal is working on a paid option to create an account without a phone number

#34
post #8

> Signal Login, one-time payment, price unknown Of course price is unknown, because it doesn’t matter, what matters is linking your real identity to signal. As I mentioned before, many times, that the main purpose of the phone requirement isn’t to fight “spam”, is to fight privacy and always have the option to expose the real person behind that account whenever needed. Most countries around the world require an ID to…

> is to fight privacy and always have the option to expose the real person behind that account whenever needed This post is FUD. Signal is about privacy. Nowhere do they mention anonymity as a goal of their messenger. They don't sacrifice contact privacy by using sealed sender (trustless) and by not keeping metadata (trust required that the server isn't malicious but proven in legal documents). It barely would help a…

That's outdated info. Currently signal collects your name, photo, phone number, and your contacts and permanently stores them in the cloud, weakly protected

See:

https://web.archive.org/web/20250117232443/https://www.vice....

https://web.archive.org/web/20230519120156/https://community...

Re: Signal is working on a paid option to create an account without a phone number

#35
post #14
post #8

> Signal Login, one-time payment, price unknown Of course price is unknown, because it doesn’t matter, what matters is linking your real identity to signal. As I mentioned before, many times, that the main purpose of the phone requirement isn’t to fight “spam”, is to fight privacy and always have the option to expose the real person behind that account whenever needed. Most countries around the world require an ID to…

This is why as a security engineer and researcher even I do not have a Signal account. My conversation with Moxie about Signal convinced me that Signal cannot be trusted as they are obsessed with centralized control and user tracking, via app store stats. Privacy assurances come from enclaves internet randos can freely manipulate as they chose not to implement full source bootstrapped remote attestation. Also relying…

>This is why as a security engineer and researcher even I do not have a Signal account.

Signal is regarded as the best mainstream messenger by many security professionals.

>they are obsessed with centralized control and user tracking, via app store stats.

Do you have any evidence they are obsessed with user tracking via all store stats? It seems reasonable to use any stats given to try to improve your app. Signal doesn't control the app stores and looking at provided stats doesn't compromise their users privacy.

"Obsessed" is a weird way to personify a company. Signal chose centralization because it's best for UX which is clear when they have 100x the users of Matrix while being more private.

>Also relying on app stores that can, with a court order

What law would legally require Apple or Google to do this? Signal doesn't rely on app stores on android as you can a signed apk download directly from them. Other apps like Element or SimpleX also are distributed on app stores.

>ship anyone an extra special fork of signal with compromised encryption, and they will never know.

This is wrong. "Anyone" can clearly not do this or it would have happened to a single app in history, and yet it has not. It would be trivially detected through reverse engineering and would only ever happen in an insane targeted attack which is not in the threat model of 99.9⁹% of people. It wouldn't be the easiest attack and authorities would use something like Pegasus instead.

>But F-Droid with independent control and reproducible builds? Unacceptable to Signal. Their stance is use proprietary partner platforms with their centralized servers so you can be tracked and backdoored at any time or GTFO.

FDroid has had terrible security practices in the past. Not sure their current status but it's not recommended by GrapheneOS.

Proprietary software is not less secure by default and can be analyzed.

>Centralized comms that force you to identify yourself and use proprietary software are an enemy of a free society.

Signal can be used without any proprietary software on GrapheneOS and by downloading Signal from their website. iOS and Android are proprietary anyway so your aren't avoiding it on those OSes.

>I do not understand the true goals of Signal, but their actions are inconsistent with their stated ones.

Their goal is more privacy for everyone, which they are clearly quite good at achieving with their skyrocketing user counts.

>This is not even getting started on their Mobilecoin premine scam that was a blatant conflict of interest and a wildly blatant violation of their non-profit charter given Moxies financial ties to Mobilecoin.

This was bad but I respect the intentions. They should have worked on Monero instead. It doesn't compromise their apps privacy, though.

Re: Signal is working on a paid option to create an account without a phone number

#37
I don’t understand the FUD and negativity I see about Signal on platforms like this. I’m not gonna argue that they are perfect but of all organizations involved in secure messaging I trust them the most. Their CEO appears sincere in her conviction for privacy and I see no reason to not trust them, at least to the extent you can trust any third party. And yet people seem to nitpick certain aspects of what they build with a level of criticality that is seemingly never applied to the alternatives. It seems like suspicious criticism.

But it’s a smart technique eh? Signal is not literally perfect across every dimension. Might as well use the totally insecure alternative that governments have backdoored amirite?

Re: Signal is working on a paid option to create an account without a phone number

#38

Earlier quoted context omitted.

> is to fight privacy and always have the option to expose the real person behind that account whenever needed This post is FUD. Signal is about privacy. Nowhere do they mention anonymity as a goal of their messenger. They don't sacrifice contact privacy by using sealed sender (trustless) and by not keeping metadata (trust required that the server isn't malicious but proven in legal documents). It barely would help a…

That's outdated info. Currently signal collects your name, photo, phone number, and your contacts and permanently stores them in the cloud, weakly protected See: https://web.archive.org/web/20250117232443/https://www.vice.... https://web.archive.org/web/20230519120156/https://community...

It's an optional feature.

Mathew Green has continued to use and recommend it.

If you have the threat model to worry about Intel SGX being cracked, you will also know to use a long passphrase.

You could also use a GrapheneOS phone with a weak pin, it makes it easier to access the data. You can use a long passphrase if you want to protect your data. It doesn't make GrapheneOS bad. Other apps can see that data themselves.

It's not outdated, it's from March 2026.

Re: Signal is working on a paid option to create an account without a phone number

#39
post #9

> The ability to register for Signal without a phone number is a frequently requested feature. I wonder if Signal missed the forest for the trees with a paid registration. I imagine privacy is the primary reason for registering without phone number and yet they ask one to register by giving them money which 99% of the case involves means of payment tied even tighter to one's identity than a phone number.

I would bet that the overwhelming majority of folks trying to use Signal without a phone number are on devices that aren't phones and where the user doesn't want to use their phone. For instance:

- Folks running businesses without a business phone number

- People who want to give their kids the ability to text them, but their kids only have an iPad

- People who want to give texting capabilities to bots without having their own phone number involved

Re: Signal is working on a paid option to create an account without a phone number

#40
post #14
post #8

> Signal Login, one-time payment, price unknown Of course price is unknown, because it doesn’t matter, what matters is linking your real identity to signal. As I mentioned before, many times, that the main purpose of the phone requirement isn’t to fight “spam”, is to fight privacy and always have the option to expose the real person behind that account whenever needed. Most countries around the world require an ID to…

This is why as a security engineer and researcher even I do not have a Signal account. My conversation with Moxie about Signal convinced me that Signal cannot be trusted as they are obsessed with centralized control and user tracking, via app store stats. Privacy assurances come from enclaves internet randos can freely manipulate as they chose not to implement full source bootstrapped remote attestation. Also relying…

I just want to point out that this comment is almost certainly a false flag “privacy conscious” personality who is attempting to discredit Signal to push people away from reasonable and usable private options towards a nihilist approach to privacy. If the usable solutions aren’t “truly” private you might as well stop caring and just use the more convenient alternatives which freely share all their data with governments.

Either that or they’ve been manipulated into believing this, which is actually more powerful in the long term. Either way, people should ignore these types of takes.

Post reply on HN