this post was submitted on 01 Feb 2025
1876 points (98.3% liked)

Fediverse

29551 readers
1797 users here now

A community to talk about the Fediverse and all it's related services using ActivityPub (Mastodon, Lemmy, KBin, etc).

If you wanted to get help with moderating your own community then head over to [email protected]!

Rules

Learn more at these websites: Join The Fediverse Wiki, Fediverse.info, Wikipedia Page, The Federation Info (Stats), FediDB (Stats), Sub Rehab (Reddit Migration), Search Lemmy

founded 2 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 6 points 1 day ago (1 children)
[–] [email protected] 4 points 1 day ago (2 children)

I was told that unless you self host, matrix is less secure because it leaks more metadata. Something to consider

[–] [email protected] 4 points 1 day ago (1 children)

Leaks more metadata? What does that mean?

[–] WhyJiffie 3 points 1 day ago

sender, recipient, chatroom, what kind of event you sent (message, emoji, reaction, vote), if you responded to a message, room privilege changes, etc

but it's a question how big of a problem is that. they want to tackle it in the future, but that's far away for now I think

[–] [email protected] 0 points 1 day ago (1 children)

Damm, didn't know that, good to know

[–] breadcat 3 points 1 day ago (1 children)

it's not even true information, the new tech stack is zero trust

[–] [email protected] 1 points 1 day ago (2 children)
[–] breadcat 2 points 1 day ago (1 children)

the new cryptographic protocol protects metadata, like signal. the servers know nothing about any encrypted chats

[–] [email protected] 1 points 9 hours ago (1 children)

So the guy above the guy avobe me was wrong?

[–] breadcat 2 points 4 hours ago

sorta, the old clients still have bad cryptography and the new client isn't fully featured yet

[–] [email protected] 2 points 1 day ago (1 children)

Zero trust means there’s no trust assumed on the protocol - I.e. it distrusts all actors and the protocol takes steps to work in that trustless environment. I don’t know how that applies specifically to matrix.

[–] [email protected] 1 points 9 hours ago (1 children)

So the guy above the guy avobe me was supposedly wrong?

[–] [email protected] 2 points 2 hours ago

Like I said, I don’t know the inner workings of Matrix. But according to the second guy that isn’t you, Matrix has a new tech stack that is zero trust. Now, there are many ways in which that can be true and I don’t know if what Matrix has right now can indeed be considered dissident-level privacy.

It’s good enough for my threat level (I basically just use it for software support). If I were planning to overthrow a regime, I’d likely go with SimpleX or some other privacy-first messengers.