@skalman @Nagaram expanding a bit. one of my core focuses is a full security audit and analyzing ways to attack/down chatmail relays. i've never been able to break an encryption unless i held the key to the account (which is derived on-device). so the threat vector here is simply "i steal bob's phone while he's sleeping at the cafe, now i can read his messages".
jae@mastodon.bsd.cafe
Posts
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation -
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@skalman @Nagaram that's correct. as relay operator (i host 5) all i can see on the filesystem is the email accounts, however even if i wanted to i cannot decrypt persisted messages (which only persist until the device picks them up when online next or if it's multi-device we use an imap like functionality to ensure all devices are able to get their messages synced)
in the end, this whole post turned into a weird thing because i whipped up a "ai slop" image on my own gpu cluster. i realize some may not like that, but our codebase is built by human beings, using human engineering.
sad for people to look at an image and paint an entire inaccurate picture on something they didn't take 10 minutes to look at. but hey i'm not here to convince anyone. it's just a project that's important to me and a lot of fun people in the community.
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@Zergling_man not trying to convince anyone. its just a cool project which has some benefits over discord for certain use cases. people are smart enough to decide for themselves. just trying to give options
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@themannofcool you're right. should have stuck with the classics. fvck my life
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@Zergling_man couldn't get anyone to use it. although i did build xmpp deltachat bridge last week.
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@Fokeu stolen anime art detected
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@xaetacore matrix is the one pf the reasons i adopted deltachat and eventually started contributing
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validation@feld forgot to add tolerances.md to ensure proper grading
-
discord: - preparing for age verification- centralized- no e2ee- monitored platform- surveillance-ridden- forced phone number validationdiscord:
- preparing for age verification
- centralized
- no e2ee
- monitored platform
- surveillance-ridden
- forced phone number validationdeltachat/chatmail:
- no logs
- e2ee
- decentralized
- federated
- relay-swapping
- multi-relay (become unstoppable!)
- no tracking
- relay operators see nothing
- no surveillancethe #deltachat and #chatmail teams are hard at work improving our ecosystem, client ui/ux, and building community!
download: https://delta.chat/en/download
run your own relay: https://github.com/chatmail/relay
bot ecosystem: https://deltachat-bot.github.io/public-bots/#/home
support forum: https://support.delta.chat/ -
😓 "email is dead"@adbenitez email is immortal