I understand that it may be problematic sometimes but this was very smooth. I didn’t even say anything.

A: what’s your number for the whatsapp group Me: I don’t have whatsapp because of facebook. B: ok, we have to use signal then A: ok

And that was it. Life can be very easy sometimes

You are viewing a single thread.
View all comments View context
119 points

Let’s say I work in an IT area (but not infosec)

permalink
report
parent
reply
-18 points

Should have used Matrix

permalink
report
parent
reply
63 points

No, Matrix isn’t the best in terms of privacy. It is a metadata disaster and most other platform are a lot more performant.

Matrix’s E2EE does not, however, encrypt everything. The following information is not encrypted: Message senders, Session/device IDs, Message timestamps, Room members (join/leave/invite events), Message edit events, Message reactions, Read receipts, Nicknames, Profile pictures

Matrix is developed by a for profit entity, a group of venture capitalists and having a spec doesn’t mean everything. The way Matrix is designed is to force into jumping through hoops and kind of draw all attention to Matrix itself instead of the end result.

XMPP is the true and the OG federated and truly open solution that is very extensible. XMPP is tested, reliable, secure and above all a truly open standard and decentralized it just lacks some investment in better mobile clients.

What most fail to see is that XMPP is the only solution that treats messaging and video like email: just provide an address and the servers and clients will cooperate with each other in order to maintain a conversation. Everything else is just an attempt at yet another vendor lock-in.

People need to get this through their heads, XMPP is the only solution for their problems.

permalink
report
parent
reply
31 points

People need to get this through their heads, XMPP is the only solution for their problems.

On the contrary, you need to understand that your own needs and priorities do not match everyone else’s, and that XMPP is not a good fit for every use case.

(Your rant was amusing, though. I hadn’t seen one like that in a couple weeks.)

permalink
report
parent
reply
21 points
*

XMPP isn’t any better in terms of metadata. OMEMO is an afterthought that slaps on to XMPP. Many metadata are still attached to the message. The threat model only protects the content and doesn’t guard aginst metadata and traffic analysis. Even OMEMO extension is still in experimental status. Not to mention, users still need to signup an account using their email.

Honestly, I think SimpleX is better in everyway. No account required, minimal metadata (at least from the technical whitepaper and other sources I read), fully open source (AGPLv3), an ok mobile and desktop client, and audited. The register friction is almost non existance. You just need to install, set a name, and off you go. The only worry I have with them is they took VC funds.

ADD: XMPP is still better for company internal communication, especially when compliances require conversation archiving.

permalink
report
parent
reply
2 points

Omemo sucks

permalink
report
parent
reply
-2 points

XMPP is great but it’s dead.

permalink
report
parent
reply
11 points

For a team of 20 people matrix is way overkill imo

permalink
report
parent
reply
7 points

XMPP on the other hand…

permalink
report
parent
reply
2 points

I once setup a entire matrix server for my school club that comprised of 4 people because one of our members couldn’t use discord lol

permalink
report
parent
reply
0 points
Deleted by creator
permalink
report
parent
reply
0 points

There would be room for expansion. What about an IRC then?

permalink
report
parent
reply
6 points

I’m going to join OP’s company next and say I can’t use signal because phone companies. Then they’ll upgrade to Wire or Matrix

permalink
report
parent
reply
0 points

Not great

permalink
report
parent
reply

Privacy

!privacy@lemmy.ml

Create post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

much thanks to @gary_host_laptop for the logo design :)

Community stats

  • 5.3K

    Monthly active users

  • 1.8K

    Posts

  • 27K

    Comments