Hacker News new | past | comments | ask | show | jobs | submit login

Why is non-PFS the default? You wrote that somewhere in the documentation.

You said something about violating expectations when you sync PFS'd chat contents, but I don't see why that's relevant unless people were promised otherwise.

There's nothing about the encryption algorithm itself that dictates how data going over it should be handled at the endpoints.

Just let users have a regular mode and an off-the-record mode where nothing is kept. Both PFS protected.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: