Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
dansup
dansup
@dansup@mastodon.social  路  activity timestamp 2 months ago

It's called Inbox for a reason, I'm working on Encrypted Direct Messages that will interoperate with Pixelfed's upcoming E2EE DMs 馃槑

#Loops #E2EE #EncryptedDirectMessages

  • Copy link
  • Flag this post
  • Block
J枚rgi
J枚rgi
@joergi@chaos.social  路  activity timestamp 2 months ago

@dansup can you PLEEEEAAASE (!!) first fix the Pixelfed privacy vulnerability I was reporting over a month ago?
I only got one email that you are "looking into this" and that you are "working on a fix"
I haven't heard anything about this yet. but messages are still publicly available.
I can also report the issue officially on Pixelfeds Github, if you prefer it.

Thx

#pixelfed #bug #vulnerability #privacy #privacyvulnerability

  • Copy link
  • Flag this comment
  • Block
LightningToaster
LightningToaster
@LightningToaster@masto.nu  路  activity timestamp 2 months ago

@dansup E2EE:
"only the sender and intended recipient can read the messages. No one else can access the cryptographic keys needed to read or send messages." (Wikipedia)
Maybe you were instead pointing at encryption in transit & at rest, like Google Drive? If you really mean implementing E2EE DMs, that's so cool!

  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About 路 Code of conduct 路 Privacy 路 Users 路 Instances
Bonfire social 路 1.0.2-alpha.32 no JS en
Federation disabled
Log in
Instance logo
  • Explore
  • About
  • Members
  • Code of Conduct