nostr:nprofile1qqst55g4cdaslyg72v8dd3y8ej7ekuma5vlafwy2navsscph3sr27cspzamhxue69uhkzapwdehhxarjwahhy6mn9e3k7mgpz4mhxue69uhk2er9dchxummnw3ezumrpdejq53rjxf do you use a private messaging system?

Which one?

Reply to this note

Please Login to reply.

Discussion

My favorite are NOSTR private messages.

These messages use an encryption algorithm similar to PGP that is bulletproof, meaning that many tools can replicate the encryption/decryption and was never once demonstrated as broken since about 30 years to now.

The other aspect is that many jazzy apps will say "heavy xyz bullshit and support strong privacy" but then:

1) you are using their "free" compiled binaries as clients on your phone/laptop

2) you are using their "free" servers to store your chats

3) Realistically, nobody really runs their own servers for those "clients"

People forget how easy it is for an adversary to get your IP address and then decide that your "free" client sends plain text data to their "free" servers, or if you are unlucky they even have your private key to comfortably decode texts on their side like Signal/WhatsApp are likely doing.

I'm using NOSTR messages because there are hundreds of volunteer-based relays to choose from (difficult to centralize and track your IP), there are dozens of different clients to send messages (difficult to spoof the encryption). This forces all different parts of the communication chain to stick with the protocol.

There are still flaws on this approach. For example the storage on the devices is very vulnerable (e.g. Android, iOS, OSX and Windows) will be inspecting your files on disk. Communicating to a random volunteer-supported isn't a strong guarantee of privacy.

In a few weeks you'll likely see a messenger from my side that addresses those weak spots.