Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Encrypted metadata #25

Open
evanp opened this issue Jun 15, 2024 · 2 comments
Open

Encrypted metadata #25

evanp opened this issue Jun 15, 2024 · 2 comments
Labels
user story For user stories

Comments

@evanp
Copy link
Collaborator

evanp commented Jun 15, 2024

"As an ActivityPub user, I want metadata of my DMs to be encrypted also, so that no one can tell who I was messaging, when, or what the relationship between messages is."

@evanp evanp added the user story For user stories label Jun 15, 2024
@evanp
Copy link
Collaborator Author

evanp commented Jun 15, 2024

I'd like to explicitly exclude this user story, at least for things like addressing, timestamps, or inReplyTo. Routing, in particular, gets really hard if servers don't know the identities of addressees.

@bumblefudge
Copy link

bumblefudge commented Jun 19, 2024

well, it depends what the client hands to the server. if, as you describe in the models document, client is encrypting the message and handing an encrypted payload and routing info to the server, a single group chat message might be decomposed into multiple individual messages, in which case the group message metadata could be encrypted, and only individual messages and their [partial] metadata handed to servers, no? kind of a "least privilege" kind of metadata leakage 😅

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
user story For user stories
Projects
None yet
Development

No branches or pull requests

2 participants