this post was submitted on 10 Aug 2024
127 points (97.0% liked)
Solarpunk technology
2385 readers
2 users here now
Technology for a Solar-Punk future.
Airships and hydroponic farms...
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I agree with you but I think that signal was built as to not trust the server either way.
That's what they like you to think yes. But it is only the message content and not the various forms of metadata that is protected by their encryption scheme.
It's also the metadata. Profile and contact discovery is also private. I don't think they have anything except your IP.
Seal sender is a nice idea, but since you can easily run timing attacks on centralised infrastructure it is pointless for Signal, or rather you have to trust them that their infrastructure is not compromised.
They also store device ids for push notifications via Google/Apple.