Why is Simplex considered the best messenger app?
Skysurfer:
To me that alone is a major reason to consider SimpleX a major risk.
Nah. No tech company deserves your trust. It doesn’t matter who’s running the show, because (nation state) hackers are going to breach the vendor side at some point anyway, so you assume the worst from the vendor, always. SimpleX, like every app out there, is exactly as secure as the the client let’s it be:
Content privacy
Is SimpleX E2EE by default for all chats? Yes.
Is the client open source so you can check? Yes.
Can you build the binary reproducibly? At least GitHub points to yes.
Metadata privacy
Is it peer-to-peer so there’s no server with access to metadata? No
Does it anonymize connections to server with Tor by default so server can’t tell who the users are by their IP? No, so it can infer who’s talking to who.
Does it feature traffic masking to hide when, how much and what type of communication takes place? No.
Do we have court evidence to show they have nothing collected about their users? AFAIK no.
So SimpleX is content-private by design, and not metadata-private at all.
Use it under that threat model and it’s fine. Need metadata protection? Look into more secure alternatives like Cwtch, Briar, and Quiet.
Discussion in the ATmosphere