How have others gotten friends/family to make the switch? I’ve been doing a cleanup of my digital life over the last year or so and am trying to move to using more privacy friendly alternatives where possible.

example: I’d love to switch to Signal only but everyone I know only uses WhatsApp. I’ve mentioned switching to people in the past but it’s always the same response (I don’t have anything to hide)

  • kpw@kbin.social
    link
    fedilink
    arrow-up
    2
    ·
    11 months ago

    Yes, the XSF has a very high bar what a standard is and what not, so the many protocol extensions are labeled experimental. However that doesn’t mean implementations are “incomplete” or “insecure”. OMEMO has good support nowadays and the implementation in Conversations has been independently audited.

    • LWD@lemm.ee
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      11 months ago

      The Conversations Independent audit casually mentions forward secrecy was broken, and that the documentation itself was out of date… And that was at the time the audit was released. The website doesn’t mention if Conversations took these recommendations into account, either.

      And that’s just if we assume users only want to use one device at a time, and they won’t touch a desktop.

      It’s been 8 years, how regularly should I check back to see if OMEMO is accepted as a standard draft?

      • kpw@kbin.social
        link
        fedilink
        arrow-up
        2
        ·
        11 months ago

        How regularly should I check if Signal has become an interoperable internet standard?

        • LWD@lemm.ee
          link
          fedilink
          English
          arrow-up
          2
          ·
          11 months ago

          Privacy does not necessarily mean interoperability. XMPP is trapped in the past because it cannot roll out changes, including privacy enhancements that Signal has delivered

          • kpw@kbin.social
            link
            fedilink
            arrow-up
            1
            ·
            11 months ago

            Sorry but I’ve been burned by WhatsApp before. Not wasting time on moving my contacts to another walled garden again. XMPP is actively developed and has most privacy features Signal does + most providers don’t require a phone number and let you connect over Tor. Doing things properly and in an interoperable way takes more time but is absolutely worth it: https://snikket.org/blog/products-vs-protocols/

            • LWD@lemm.ee
              link
              fedilink
              English
              arrow-up
              1
              ·
              11 months ago

              Why are you listing lack of an identifier as a positive, when complaining you couldn’t move between two platforms that use the same identifier? It’s much harder to convert people to a system where the functionality and features are scatter shot.

              And I prefer a product that exists to a high minded notion of what could exist. Like I said earlier, how often should I check in to see when 2016’s end-to-end encryption is formally adopted? Or even when it enters Draft status?

              • kpw@kbin.social
                link
                fedilink
                arrow-up
                1
                ·
                11 months ago

                You can check how often you want, it’s not going to affect anyone. Please don’t check more than 5 times a second maybe.

                • LWD@lemm.ee
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  11 months ago

                  I’ll check biennially. And if I remember and still am using this account, I’ll tag you to celebrate a decade without an encryption standard, which is the future I predict

                  • kpw@kbin.social
                    link
                    fedilink
                    arrow-up
                    1
                    ·
                    11 months ago

                    You care a lot about standardization of OMEMO, yet you don’t apply the same to Signal which contributes exactly nothing to any standards body.

                  • kpw@kbin.social
                    link
                    fedilink
                    arrow-up
                    1
                    ·
                    11 months ago

                    Great. I’ll check if Signal is compatible with any internet standards too. I’ll tag you to celebrate a decade without interoperability.