We build Signal in the open, with publicly available source code for our applications and servers. To keep Signal a free global communication service without spam, we must depart from our totally-open posture and develop one piece of the server in private: a system for detecting and disrupting spam campaigns. Unlike encryption protocols, which are designed to be provably secure even if everyone knows how they work, spam detection is an ongoing chore for which there is no concrete resolution and for which transparency is a major disadvantage.

    • PandaCoderPL
      link
      fedilink
      -12 years ago

      Could you at least tell me any reasons why you wouldn’t use Session? Nobody will take you seriously if you have no arguments to back up your statement.