• kbal@kbin.melroy.org
    link
    fedilink
    arrow-up
    47
    arrow-down
    12
    ·
    edit-2
    1 year ago

    Whittaker says that, for better or worse, a phone number remains a necessary requisite

    Worse. It is for the worse. We sure did wait a long time for this half measure, Signal.

      • kixik@lemmy.ml
        link
        fedilink
        arrow-up
        6
        ·
        1 year ago

        Jami doesn’t require a phone number, which is p2p. Xmpp (+ Omemo) doesn’t require a phone number and it’s federated… I mean, if a service is willing to rid of phone numbers, it’ll do totally without them.

      • Որբունի@jlai.lu
        link
        fedilink
        arrow-up
        3
        ·
        1 year ago

        The challenge of having your device solve a nasty PoW that takes minutes would not deter most people: a timer once is better than evil captchas, phone numbers, etc. I don’t understand why they use hCaptcha and not that.

          • Որբունի@jlai.lu
            link
            fedilink
            arrow-up
            1
            arrow-down
            1
            ·
            1 year ago

            A lot, but farming phone numbers from poor countries is also cheap and Signal sends them insanely expensive SMS. There is no perfect solution, spammers aren’t stupid. Since Signal is centralised they can enforce PoW incrementally if they get reports for spam, I still think it is way better than hCaptcha which is garbage.

      • Scolding0513@sh.itjust.works
        link
        fedilink
        arrow-up
        1
        ·
        1 year ago

        phone numbers for spam prevention are a bandaid for a mediocre solution. the mediocre aspect being that it’s totally centralized when it should at least be federated like SimpleX. SimpleX is the ultimate solution to be honest with you, it’s federated, fast, extremely private and extremely secure.

      • RandoCalrandian@kbin.social
        link
        fedilink
        arrow-up
        4
        arrow-down
        6
        ·
        1 year ago

        It’s the signal metadata that they want to keep associated with an identity

        They still can fulfill government requests for who is talking to who and how often

        • cjf@feddit.uk
          link
          fedilink
          English
          arrow-up
          7
          ·
          1 year ago

          Got proof for that last claim?

          I thought their sealed sender feature was meant to prevent exactly this scenario.