Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

More detailed Session description #2519

Open
wants to merge 2 commits into
base: main
Choose a base branch
from

Conversation

jermanuts
Copy link
Contributor

Changes proposed in this PR:

Explain how Session open group works. Current one is vague and lacking.

  • I have disclosed any relevant conflicts of interest in my post.
  • I agree to grant Privacy Guides a perpetual, worldwide, non-exclusive, transferable, royalty-free, irrevocable license with the right to sublicense such rights through multiple tiers of sublicensees, to reproduce, modify, display, perform, relicense, and distribute my contribution as part of this project.
  • I am the sole author of this work.
  • I agree to the Community Code of Conduct.

Signed-off-by: jermanuts <109705802+jermanuts@users.noreply.github.com>
@jermanuts
Copy link
Contributor Author

jermanuts commented Apr 11, 2024

Should we recommend also disabling Link previews as mentioned here https://discuss.privacyguides.net/t/critical-flaws-in-desktop-session-messenger/16674 ?

And other problems mentioned?

Signed-off-by: jermanuts <109705802+jermanuts@users.noreply.github.com>
Copy link
Member

@dngray dngray left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Wouldn't start a sentence with "however".

@@ -202,7 +202,8 @@ Session uses the decentralized [Oxen Service Node Network](https://oxen.io) to s

</div>

Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, but are open by design.
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, they are hosted on federated servers operated by the communities themselves, and moderation policies are determined by each individual community. However, they are not as private as one-on-one chats or closed groups.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, they are hosted on federated servers operated by the communities themselves, and moderation policies are determined by each individual community. However, they are not as private as one-on-one chats or closed groups.
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members and are hosted on federated servers operated by each community, which also have their own moderation policy. The communities are not as private as 1:1 chats or closed groups.

Copy link
Member

@jonaharagon jonaharagon left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

However, they are not as private as one-on-one chats or closed groups.

can we link to a resource which explains why this is the case in more detail? or explain why ourselves

@dngray
Copy link
Member

dngray commented Apr 11, 2024

can we link to a resource which explains why this is the case in more detail? or explain why ourselves

that might be a better idea.

@jermanuts
Copy link
Contributor Author

jermanuts commented Apr 11, 2024

I got it from https://getsession.org/lightpaper/pdf. Their docs are pretty lacking tbh.

EDIT: https://docs.oxen.io/oxen-docs/products-built-on-oxen/session/guides/open-group-setup and ofc you can check the whitepaer https://arxiv.org/pdf/2002.04609.pdf

@dngray dngray added the c:software self-hosted/decentralized software and related topics label Apr 12, 2024
@@ -202,7 +202,8 @@ Session uses the decentralized [Oxen Service Node Network](https://oxen.io) to s

</div>

Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, but are open by design.
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, they are hosted on federated servers operated by the communities themselves, and moderation policies are determined by each individual community. However, they are not as private as one-on-one chats or closed groups.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm not sure the information about federated servers or moderation policies are particularly relevant, since virtually all group chats are subject to the whims of the group's admins, that's not exclusive to Session.

Instead, we could link to the hosting docs for people who are interested in the federated server aspect, and just focus on the fact that messages are stored without encryption on the server which is the most relevant thing to note for most people I think:

Suggested change
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. Open groups have no restriction on the number of members, they are hosted on federated servers operated by the communities themselves, and moderation policies are determined by each individual community. However, they are not as private as one-on-one chats or closed groups.
Session allows for E2EE in one-on-one chats or closed groups which allow for up to 100 members. It is also possible to [host](https://docs.oxen.io/oxen-docs/products-built-on-oxen/session/guides/open-group-setup) or join an open group which can host thousands of members, but messages in these open groups are **not** end-to-end encrypted between participants.

@jonaharagon jonaharagon requested a review from dngray May 22, 2024 06:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
c:software self-hosted/decentralized software and related topics
Projects
Status: Needs Changes
Development

Successfully merging this pull request may close these issues.

None yet

3 participants