What is Nostr?
DireMunchkin
npub1mxr…kyq5
2024-09-07 10:03:20
in reply to nevent1q…jru6

DireMunchkin on Nostr: The actual E2EE conversations are secure: The encryption is Open Source and well ...

The actual E2EE conversations are secure: The encryption is Open Source and well audited, and the apps have reproducible builds on all platforms were that's possible. If anybody claims Signal can read your messages that's BS IMO.

That said, Signal have copped some criticism that they still need a phone number for sign up. IIRC they said want Signal to be a drop in replacement for WhatsApp and to have easy onboarding via SMS. But the paranoid take would be that it's also a easy metadata id for everyone on the app, so you can see who is talking to who, even if you don't know what they're saying.

Personally I'm fine with the tradeoff for being easy to use and normie friendly though. Like, if you are personally targeted by a alphabet agency it's probably not safe for you to use a phone at all regardless of what app you're using.

If you're really concerned about this you can switch to SimpleX, but personally I feel like that's overkill in most people's threat model. Just don't go to Telegram instead, they cast a lot of FUD on Signal's security even though they're worse in every way.
Author Public Key
npub1mxrt3fyvaay4plrz7lwzurf80jjs2atmt2nn7z2ekgr9necl0jkqekkyq5