← Back to context

Comment by lolinder

1 year ago

You have to trust the platform with the metadata, but the actual E2E encryption of the messages is something you can personally verify if you cared to.

You can’t know what’s running on your client. Reproducible builds aren’t reproducible, open source was not followed (there was code in the client that was not present in the repos).

So, yes, trust is needed.