I remember a time when visiting a website that opens a javacript dialog box asking for your name so the message “hi <name entered>” could be displayed was baulked at.

Why does signal want a phone number to register? Is there a better alternative?

  • CosmicTurtle0@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    9
    ·
    edit-2
    1 day ago

    Messages are e2e encrypted. Metadata is not encrypted.

    Edit: I feel the need to qualify this statement. Metadata about your connection may be encrypted at rest but is decryptable given that signal is released metadata to authorities with a warrant/subpoena.

    • rottingleaf@lemmy.world
      link
      fedilink
      arrow-up
      6
      arrow-down
      1
      ·
      23 hours ago

      People told you a few times to go look for yourself what Signal can give away. Its protocol descriptions are pretty understandable.

      The whole bloody reason it’s always recommended is because it’s absolutely the best thing in terms of yes, encrypting metadata. It’s state of the art, level above that bullshit you’re thinking.

      Unfortunately, that also means that hosting it takes lots of resources, which means they have to screen bots and mults somehow. Phone numbers are one way. Paid accounts are another.

      • 0101100101@programming.devOP
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        3
        ·
        20 hours ago

        Phone numbers are one way. Paid accounts are another.

        Rubbish. How would this stop bots? Bots are created to make money. What makes you think creators don’t have a phone number, or be prepared to pay to spam.

    • Jason2357@lemmy.ca
      link
      fedilink
      arrow-up
      11
      arrow-down
      2
      ·
      1 day ago

      Yes it is. Signal isnt PGP email. A lot of work went into protecting metadata.