• 5 Posts
  • 18 Comments
Joined 2 months ago
cake
Cake day: August 15th, 2025

help-circle

  • Signal is a much better recommendation when leaving Telegram. And the OMEMO implementation concerns are something I need to consider. That unprofessional response from one of the devs is not a good look at all.

    Though as a comment pointed out, control of servers is like the one main checkbox that I really need filled.

    On the point about clients not being OMEMO by default or enforced. This isn’t the biggest issue for me. I’m not doing crimes, but I still wouldn’t want my saucy messages to be read by server admins or third parties. Whenever I message somebody, I confirm that they are the proper recipient and are using OMEMO. And the clients I found myself comfortable with all support PGP key use instead. (That would be Cheogram & Gajim if anyone was interested.)

    This was a great read though, at least to me. It gave me some thoughts to consider.

    I’m gonna look into what kind of threats these improper dependency versions and such might pose. Hopefully by now most of these issues have been resolved.

    The biggest thing is getting people into the loop of “secure apps” before they really need it.