this post was submitted on 07 Oct 2024
50 points (85.7% liked)
Privacy
32120 readers
24 users here now
A place to discuss privacy and freedom in the digital world.
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
Some Rules
- Posting a link to a website containing tracking isn't great, if contents of the website are behind a paywall maybe copy them into the post
- Don't promote proprietary software
- Try to keep things on topic
- If you have a question, please try searching for previous discussions, maybe it has already been answered
- Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
- Be nice :)
Related communities
much thanks to @gary_host_laptop for the logo design :)
founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
For 1:1 and small groups, XMPP is not as convenient + not as secure
but why isnt it secure? if you know that the other person is using the same version of omemo it is secure. and if you are self-hosting it, meta-data is no issue either
Actually xmpp is low on metadata compared to matrix which has to replicate a bunch of metadata everywhere. SimpleX look interesting, though by not being federated (considered by simpleX a privacy feature) whether you like their client or not. Just so you know privacyguides has explained why they don't advertise xmpp as privacy oriented, and the reason is not that it isn't, it's simply that given it's federated, they consider some clients are not as compliant or up to date, which is up to the user to select on XMPP, and also up to the user to file bugs against their preferred client or even contribute it with changes.
My stance is that XMPP and Matrix are only private if you self host and don't federate. That really cuts down on who may want to use them, but it can be great for a small community, company, or family assuming you can get everyone to buy in.
thank you for the info. that clears up some doubts I had with xmpp :)
My battery life & ability self-host on low-spec hardware is pretty convenient. When I talk to my bud on their own self-hosted, low-spec instance, the TLS+OMEMO is pretty secure since we don’t have to trust some third-party server provider with data/metadata.
Right, and completely agreed with that, but I think that SimpleX is just better in most cases (not on battery life for now), as it could be also self hosted
There is a cost aspect of self-hosting that one has to comtemplate. I haven’t looked at SimpleX hosting, but if it’s anything like Matrix on resources, it isn’t accessible or feasible even if it is possible.
I host a Simplex server, it is not that bad in terms of resources. My smp server is around 90 MB RAM and XFTP is 30 MB. Could be better, but still would run without problem on low-end hardware.
What about the storage & network costs?
I have not checked both, but seems like both are insignificant. From what I understand, the messages and files are only stored on the server until reception.
How dare you criticize some 90's protocol no one uses