I don't trust Signal

This title could be clearer and more informative.Try out Clickbait Shieldfor free (5 uses left this month).

A critical analysis of Signal's security and trustworthiness, arguing that despite its reputation, Signal makes self-serving design decisions that undermine genuine security. Key concerns include: long-standing dependency on Google Play Services (a 'rootkit'), refusal to distribute via F-Droid despite weak justifications, an insecure direct APK download mechanism, centralized server architecture requiring users to trust Signal's operators, no federation support, and hostile treatment of forks via trademark enforcement. The author argues these decisions serve Signal's founder Moxie's interests in maintaining control rather than maximizing user security, and that truly secure systems should not require trusting the service provider.

10m read timeFrom drewdevault.com
Post cover image
Table of contents
Google PlayF-DroidThe APK direct downloadWhy is Signal like this?Trust, federation, and peer-to-peer chat

Sort: