<oembed><type>rich</type><version>1.0</version><title>feld wrote</title><author_name>feld (npub1c5…fh8gn)</author_name><author_url>https://yabu.me/npub1c5tlngqj4f9f3lkxnu2swe98pem78ss6xf380ldh3rlrm595zrustfh8gn</author_url><provider_name>njump</provider_name><provider_url>https://yabu.me</provider_url><html>nostr:nprofile1qy2hwumn8ghj7un9d3shjtnddaehgu3wwp6kyqpqsatan3ugmhaq9wgs26tp4gdua5gslfaazut27f2qclgp82knxljsmmake6 &gt; Is this not how Matrix allows multiple devices to decrypt the same chat?&#xA;&#xA;Ahh, sorry! E2EE should not support multiple devices without friction, I agree. The Matrix design is not something I&#39;m comfortable with. We are definitely in agreement here. There is a mechanism to securely get the key to a device but it&#39;s way too complicated for my taste.&#xA;&#xA;&gt; Not to mention, a separate issue, if you&#39;re hosting a server, it&#39;s VERY easy to impersonate a user.&#xA;&#xA;But how without the admin having their private key? It should be very obvious when their messages are not encrypted with the same keys, or the messages should be dropped/rejected automatically.&#xA;&#xA;You should give DeltaChat a try. It&#39;s federated,  has features others don&#39;t have, and the security is solid, audited. Signal has a couple properties that makes it more resilient against an attacker with infinite resources and the ability to MITM all your traffic but the gap is closing -- perhaps this year, waiting on an RFC to leave draft status. Multi device onboarding requires both devices be on the same network because a direct connection between devices is created to transfer the key material.&#xA;&#xA;Give it a try. Instant anonymous sign ups, and idle accounts are automatically deleted after 90 days by default. Send me a message, I&#39;ll demo some features for you.&#xA;&#xA;Contact me on Delta Chat:&#xA;https://i.delta.chat/#BFE115F2AD580709F1CA482ACC8E93570310DD43&amp;a=az2g6a4rm%40chat.feld.me&amp;n=Mark&amp;i=YforNGURahV&amp;s=qXFHXwnH7uq</html></oembed>