duong on Nostr: They are encrypted, but not totally private. "This standard does not go anywhere near ...
They are encrypted, but not totally private.
"This standard does not go anywhere near what is considered the
state-of-the-art in encrypted communication between peers, and it leaks
metadata in the events, therefore it must not be used for anything you
really need to keep secret, and only with relays that use AUTH to restrict who can fetch your kind:4 events."
https://github.com/nostr-protocol/nips/blob/master/04.md#security-warning
"This standard does not go anywhere near what is considered the
state-of-the-art in encrypted communication between peers, and it leaks
metadata in the events, therefore it must not be used for anything you
really need to keep secret, and only with relays that use AUTH to restrict who can fetch your kind:4 events."
https://github.com/nostr-protocol/nips/blob/master/04.md#security-warning