• nosuchanon@lemmy.world
    link
    fedilink
    English
    arrow-up
    15
    arrow-down
    1
    ·
    1 day ago

    Not your privacy keys, not your security.

    You need to encrypt your data before sending it through any app and have an easy method to share private keys with your contacts, preferably anonymously without association of phone numbers etc.

    Relying on any centralized app network will always expose you to their security backdoors. We need on device cryptography that encrypts data before it goes to WhatsApp or Signals servers.

    Even if they allow a govt agency to read encrypted streams, it will be a garbled mess.

    • Vivian (they/them)@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 day ago

      Signal is on device cryptography, that’s the whole point of E2EE. Same for WhatsApp theoretically so iirc it just leaks a shit ton of metadata.

      This is more the stage of needing off device cryptography that you then paste into the messenger because the backdoor would be on your device but before the message is encrypted and sent