3 ms·
When Signal says your data belongs in your hands, they are referencing the end to end encryption in the app, which means that any of your data that goes through
by ro_bit 6y ago
When Signal says your data belongs in your hands, they are referencing the end to end encryption in the app, which means that any of your data that goes through their servers is encrypted and can't be read by them. This can be verified by people partaking in a Signal message through the use of their safety numbers and through building the app from their published source that you can verify only ever sends your encrypted data to Signal servers. It's true that we can never be sure what's in Signal's backend but we can also prove that anything we send to their backend can't be read by them regardless of its design.
- nalekberov 6y agoYour data is not limited to your messages. Who do you talk to, how many times, when, where, your social graph, when you go online, how frequently you are online, what avatar you have etc. etc. And remember you are authorizing yourself with your number, which is for most people is valid identifying point, and can be used to trace back to individuals. While Signal claims phone numbers are hashed and never used for any real identification purposes and whatsoever, I think this is still very questionable. They could easily design the system to allow one to authorize with username from the beginning. I don't wanna go into much details, but I personally will never take anything Signal tells for granted for two main reasons, first it's centralized (it's doesn't matter if it's owned by non-profit organization), second it's operated in the USA, meaning they are bound to cooperate with intelligence agencies when they have to.