this post was submitted on 27 Jan 2022
15 points (94.1% liked)

Privacy

31265 readers
560 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 

What is better for privacy? Signal or Telegram? I know XMPP is better then both of them.

you are viewing a single comment's thread
view the rest of the comments
[–] X_Cli@lemmy.ml 10 points 2 years ago (1 children)

I would not use either of them.

Currently, a better solution, for me, is Element/Matrix, because the crypto is mostly OK and there is federation. And it is quite featureful.

[–] Korba@lemmy.ml 4 points 2 years ago (2 children)

what about the metadata leaking ?

[–] the_tech_beast@lemmy.ml 4 points 2 years ago

Yes. Element is known to leak metadata.

[–] X_Cli@lemmy.ml 2 points 2 years ago (1 children)

That's a problem. But federation at least helps by giving you the choice of who will see these metadata leaks.

[–] Fisch@lemmy.ml 7 points 2 years ago (1 children)

Not if you're in a group chat with someone from that instance

[–] dessalines@lemmy.ml 1 points 2 years ago (1 children)

The most that instance gets is a user name. With signal, or telegram, they get your real identity via your phone #.

[–] kevincox@lemmy.ml 9 points 2 years ago (2 children)

That's unfortunately not true. Lots of data in matrix is currently unencrypted. Message content is but state events (like the room topic), reactions, stickers (if your client supports them) are not.

This is slowly improving (the proposal for encrypted state events is going to be a significant improvement) but unfortunately strong privacy doesn't seem like a strong priority of the spec owners.

If it was up to me I would block every new proposal until it had a strong privacy proposal, but instead their plan is to implement everything insecurely first. Then they will try to get people to propose private versions of the specs and try to drive adoption of those. Not a great plan for something that advertises itself as "an open network for secure, decentralized communication" if you ask me.

[–] poVoq@lemmy.ml 9 points 2 years ago

While true, it is also true that Matrix never claimed to be especially private. What ever your definition of "secure" and "decentralized" it is not the same as "privacy".

Matrix is mostly about censorship resilience and distributed networks.

[–] X_Cli@lemmy.ml 2 points 2 years ago* (last edited 2 years ago) (1 children)

Thank you. I did not know that the state events were not encrypted. That's very unfortunate. I think I still prefer Element/Matrix over Signal, but slightly less than before your message 👍

[–] kevincox@lemmy.ml 2 points 2 years ago

Yeah, that is what bugs me most about this. They are adding new features and all the clients say "Your conversation is encrypted" but a lot of information isn't. I also prefer Matrix but I do wish that they would put a higher value or privacy when evolving the spec.