GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:01:49 JST SimpleX Chat SimpleX Chat

    https://www.securemessagingapps.com is the great comparison of messaging apps, but there are several incorrect statements about SimpleX Chat.

    Commenting in the thread below!

    In conversation about a year ago from mastodon.social permalink
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:55 JST SimpleX Chat SimpleX Chat
      in reply to

      6. Is the design well documented? Somewhat

      The design documentation was reviewed in preparation for design security audit - report is about to be published.

      In conversation about a year ago permalink
      this.ven repeated this.
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:55 JST SimpleX Chat SimpleX Chat
      in reply to

      Thanks to our users who highlighted these inaccuracies to us!

      In conversation about a year ago permalink
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:56 JST SimpleX Chat SimpleX Chat
      in reply to

      4. Directory service could be modified to enable a MITM attack? Yes

      This is incorrect, as there is no user directory service, and MITM by relays is not possible by design, even without optional security code verification (that exists to mitigate MITM by the channel you used to pass one-time invitation link, e.g. email).

      In conversation about a year ago permalink
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:56 JST SimpleX Chat SimpleX Chat
      in reply to

      5. Does the company log timestamps/IP addresses? Yes

      This is incorrect, we never logged IP addresses and access timestamps of the users.

      Further, the private message routing that is now enabled by default for all users prevents such logging by any 3rd party servers with modified code:

      https://simplex.chat/blog/20240604-simplex-chat-v5.8-private-message-routing-chat-themes.html

      In conversation about a year ago permalink
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:57 JST SimpleX Chat SimpleX Chat
      in reply to

      2. Company jurisdiction: UK

      We disagree that there are any jurisdictions that are particularly good for privacy. Also, this might be important for centralised services, like Threema, where the users can't host servers, and much less important for decentralized network, such as SimpleX, where there are hundreds (if not thousands) of servers that we don't control.

      In conversation about a year ago permalink
    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:57 JST SimpleX Chat SimpleX Chat
      in reply to

      3. Cryptographic primitives: Curve25519 / XSalsa20 256 / Poly1305 (downgraded for the absence of PQ encryption).

      We added PQ encryption in March this year: https://simplex.chat/blog/20240314-simplex-chat-v5-6-quantum-resistance-signal-double-ratchet-algorithm.html

      This is done in the same way as Apple describes as PQ3 here: https://security.apple.com/blog/imessage-pq3/

      In conversation about a year ago permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: security.apple.com
        Blog - iMessage with PQ3: The new state of the art in quantum-secure messaging at scale - Apple Security Research
        We are introducing PQ3, a groundbreaking cryptographic protocol for iMessage that advances the state of the art of end-to-end secure messaging. With compromise-resilient encryption and extensive defenses against even highly sophisticated quantum attacks, PQ3 provides protocol protections that surpass those in all other widely deployed messaging apps.

    • Embed this notice
      SimpleX Chat (simplex@mastodon.social)'s status on Sunday, 25-Aug-2024 01:06:58 JST SimpleX Chat SimpleX Chat
      in reply to

      1. Main reasons why the app isn't recommended: Provide a transparency report

      It is available online and updated at least quarterly, or if anything changes: https://simplex.chat/transparency/

      In conversation about a year ago permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: simplex.chat
        Transparency Reports

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.