Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
dansup
dansup
@dansup@mastodon.social  路  activity timestamp 2 days ago

It's called Inbox for a reason, I'm working on Encrypted Direct Messages that will interoperate with Pixelfed's upcoming E2EE DMs 馃槑

#Loops #E2EE #EncryptedDirectMessages

  • Copy link
  • Flag this post
  • Block
J枚rgi
J枚rgi
@joergi@chaos.social replied  路  activity timestamp 2 days ago

@dansup can you PLEEEEAAASE (!!) first fix the Pixelfed privacy vulnerability I was reporting over a month ago?
I only got one email that you are "looking into this" and that you are "working on a fix"
I haven't heard anything about this yet. but messages are still publicly available.
I can also report the issue officially on Pixelfeds Github, if you prefer it.

Thx

#pixelfed #bug #vulnerability #privacy #privacyvulnerability

  • Copy link
  • Flag this comment
  • Block
LightningToaster
LightningToaster
@LightningToaster@masto.nu replied  路  activity timestamp 2 days ago

@dansup E2EE:
"only the sender and intended recipient can read the messages. No one else can access the cryptographic keys needed to read or send messages." (Wikipedia)
Maybe you were instead pointing at encryption in transit & at rest, like Google Drive? If you really mean implementing E2EE DMs, that's so cool!

  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About 路 Code of conduct 路 Privacy 路 Users 路 Instances
Bonfire social 路 1.0.1-alpha.41 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct