• Free Palestine 🇵🇸@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    48
    ·
    1 year ago

    Signal is finally delivering the stuff we have all been waiting for. First, they implemented post quantum cryptography in the protocol in September, then we got message editing, and now we will finally get usernames. Awesome!

  • kbal@fedia.io
    link
    fedilink
    arrow-up
    34
    arrow-down
    3
    ·
    1 year ago

    The world would be a substantially better place if Signal would 1) Not require phone numbers, and 2) Allow 3rd-party clients. While they’re at it maybe they could also add a volume control to the desktop client and then not push so many damn updates.

    • brambledog@lemmy.today
      link
      fedilink
      English
      arrow-up
      11
      ·
      1 year ago

      I haven’t had a single complaint in my few months if using it.

      That being said, I have 3 people to use it with so on average have only gotten about 20 minutes per week.

      I will say that the WiFi calling on their app is far superior to the samsung’s drag down buttons.

  • NekuSoul@lemmy.nekusoul.de
    link
    fedilink
    English
    arrow-up
    21
    arrow-down
    1
    ·
    edit-2
    1 year ago

    Annoyingly, this doesn’t mean that you can register without a phone number. I hope that this is only the first step towards making that happen and not some sort of compromise of the original goal.

    I still use Signal because I think it’s still the best tool so far (that has people I know using it), but I’m always iffy about services using phone numbers as their primary identifier.

    • brambledog@lemmy.today
      link
      fedilink
      English
      arrow-up
      13
      arrow-down
      1
      ·
      1 year ago

      The people communicating with each other need a way to ensure that they are communicating with who they think they are; and for most people, they are trying to hide what they are discussing, not necessarily who they are discussing it with.

      When I first got into open source I downloaded every app I saw that could make me feel like a spy, but I quickly deleted 90% of them because I had no use cases for them. I did find an app I believe based off the signal protocol which had no names or numbers and the only way to initiate contact between two people was by scanning each others qr code, but good luck ever meeting somebody to download the app.

      It’s been hard enough convincing anybody over signal. Americans are pretty locked into SMS and everybody else seems unwilling to leave WhatsApp.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      2
      ·
      1 year ago

      I will never use Signal if it keeps asking for my phone number. I have backed out at that point every time I’ve gone to use it because I forgot about that requirement.

  • hottari@lemmy.ml
    link
    fedilink
    English
    arrow-up
    18
    arrow-down
    2
    ·
    1 year ago

    This is how Signal should have been designed in the first place.

    • nova_ad_vitum@lemmy.ca
      link
      fedilink
      English
      arrow-up
      32
      arrow-down
      1
      ·
      1 year ago

      Without phone-number based contact finding signal wouldn’t be relevant enough to matter.

      • skuzz@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        6
        arrow-down
        4
        ·
        1 year ago

        IRC, AIM, and BBM did ok without it. We humans like talking to each other. We figure it out.

        • erwan@lemmy.ml
          link
          fedilink
          English
          arrow-up
          10
          arrow-down
          1
          ·
          1 year ago

          Those were before the smartphone era.

          Humans like to talk to each other, but when an easier choice exist the slightly harder one doesn’t stand a chance.

        • Schmeckinger@feddit.de
          link
          fedilink
          English
          arrow-up
          9
          arrow-down
          1
          ·
          1 year ago

          Arent these 3 pretty irrelevant now(in the general population)? That doesn’t show a good track record.

  • Pacmanlives@lemmy.world
    link
    fedilink
    English
    arrow-up
    11
    ·
    1 year ago

    Neat! What’s your IRQ number? Damn I am old for making that comment but this day and age actually doing username or a pgp key share should not be that hard for an app this popular and how secure you want to make it. Would be amazing to do pgp encrypted messages to a secure party and then have it handled over the signal protocol

    • taanegl@beehaw.org
      link
      fedilink
      English
      arrow-up
      9
      arrow-down
      1
      ·
      1 year ago

      Pretty much. Signals servers just initiate connection between clients, who in turn negotiate parameters with each other so that messages can be encrypted and sent privately between the clients. The messages never has to touch Signals servers, unless you’ve turned on certain features. It’s what you could call a “peer-to-peer chat”.

      It’s apps for Android and iOS are available on GitHub, as well as libraries dedicated to the Signal protocol that you can use and implement in your own projects.

      So it’s transparent, private and secure. Pretty boss. Waiting for someone to correct me on this one ^^;

      • NicoCharrua@lemmy.ca
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 year ago

        I’m 99% sure that signal isn’t peer to peer. Afaik all messages go through signal’s servers, but they’re end to end encrypted so the server can’t see message contents, or who the messages are coming from.

        The only thing that’s peer to peer are calls, but you can turn on ‘Always relay calls’ from settings to relay them through Signal’s servers.

    • FutileRecipe@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      1 year ago

      If you wanna boil it that down that much, sure. It’s also run by a non-profit with publicly available source code. And it’s not just “encryption,” but end-to-end encryption (E2EE), meaning the server and company don’t know what you’re messaging.

      • giacomo@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Sure, but I mean it seems like they took the long route to end up with AIM with encryption.

        I’ve been using signal for years and love it.

    • librechad@lemm.ee
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 year ago

      I don’t use Telegram but they don’t enable encryption by default? Last time I used Telegram I needed a phone number still, so, I’d say Signal has always been on top.

      • petrescatraian@libranet.de
        link
        fedilink
        arrow-up
        2
        ·
        edit-2
        1 year ago

        @librechad

        they don’t enable encryption by default?

        Indeed, only secret chats use it, that’s it’s biggest drawback.

        Last time I used Telegram I needed a phone number still

        Yes, for registering purposes. However, you can set up your own username and give that to whoever you want instead. You can even restrict some or all people from seeing your actual number.