• FuglyDuck@lemmy.world
      link
      fedilink
      English
      arrow-up
      29
      arrow-down
      2
      ·
      10 months ago

      the client is open source. but the server? not so much.

      in any case, if security is the concern… they should probably switch to a government-built system that only runs on gooberment devices. Will it be shitty? absolutely. But data is owned by whoever has the hardware it sits on. if it’s not your device its not your data.

      • BastingChemina@slrpnk.net
        link
        fedilink
        English
        arrow-up
        7
        ·
        edit-2
        10 months ago

        No trust in servers Persistent security even in case of a compromised server

        From Olvid website

        They are advertising the fact that the security does not depend on the server.

        I don’t know what is worth.

        Also it’s developed by a French company, I think this is the main argument for the French government, they want to have options that does not rely on US companies.

        • FuglyDuck@lemmy.world
          link
          fedilink
          English
          arrow-up
          6
          arrow-down
          2
          ·
          10 months ago

          Without the server-side code there’s no way to validate that. (This is the reason open source is preferred.)

          It’s definitely being selected because it’s French. (And has all the buzzwords,)

    • matter@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      10 months ago

      Only the client. Though that’s probably enough to make sure messages leave your device suitably encrypted. Depending on the algos it could be quite vulnerable to hndl attacks, though, or (less likely) any undiscovered backdoors in the implementations. Of course, even for Signal one has to trust they’re using the public server code anyway, but at least we know they’re folding in a quantum-resistant algo.

    • Natanael@slrpnk.net
      link
      fedilink
      English
      arrow-up
      3
      ·
      10 months ago

      That thing has some of the most verbose documentation I’ve ever seen. Stuff that should be a paragraph takes multiple pages.