Just saw someone mention e2e encrypted DMs for Mastodon.
A) Why would we even NEED them?
B) The way DMs work here make the idea extra headscratchy. It's so easy to just pull anyone in.
If you need e2e encryption for your DMs, please download Signal. Use that. Everyone has access. Maybe that's a controversial take, but unless DMs evolve here into something like an actual chat, I don't see the point.
@warkittens Just encrypt your DMs with PGP, it would do the same thing as e2e encryption would require you to maintain your own key client side (and would loose access to your DMs if you lost your key)... so just do it manually.
@warkittens How could you not have the extra step... if you had some key get automatically generated client side then it would break every time you login from a different device. The user would still need to maintain their own keys and likely would frequently loose DM history.
@warkittens You could use a pgp plugin to do it right in the browser I would think.. ive seen them but never used one.
@freemo
Hmm. Fancy. Good point.
@freemo
No I mean. Wouldn't you have to transfer your DM externally from mastodon to decrypt. I honestly haven't even thought about / dealt with PGP in like... Well over a decade.