[guardian-dev] From the blog...update on ChatSecure v12

Natanael natanael.l at gmail.com
Fri Sep 20 18:39:08 EDT 2013


And grouping of contacts. It's badly needed together with the ability to
hide some contacts you rarely/never chat with.

Also, thumbnail resolution sucks over here on my +400 ppi phone screen.
Nothing you can fix, but it still impacts the users' experience of the app,
so you might want to allow for some kind of customization of thumbnails
(replacing them with user supplied images?), or even for setting
high-resolution app-generated Identicons (images generated from hashes of
user-unique data like IP address, or why not of their public keys?).

There's this app called Yubinotes that can use a Yubikey Neo (NFC enabled)
for two-factor auth to decrypt notes. You might want to take a look at if
it's something you can add support for to protect the app data. It has a
description for how the decryption works as well.
https://play.google.com/store/apps/details?id=com.connectutb.yubinotes
Den 21 sep 2013 00:16 skrev "Dominik Schürmann" <
dominik at dominikschuermann.de>:

> I'd like to give some feedback:
> - On first use after entering a password the button does not work for
> setting it, but the "Finish" button in the soft-keyboard worked
> - In settings, "Chat Encryption" has no default selection
> - In account settings: Rename Gibberbot to Chatsecure in xmpp resource
> - Once it crashed, I already sent the crash report
> - Are there any ways to rename contacts?
>
> Regards
> Dominik
>
> On 20.09.2013 23:24, Nathan of Guardian wrote:
> >
> > An update posted here:
> >
> https://guardianproject.info/2013/09/20/gibberbots-chatsecure-makeover-almost-done/
> >
> > In a previous post with the mouthful of a title ?Modernizing
> > Expectations for the Nouveau Secure Mobile Messaging Movement?, I
> > spoke about all of the necessary security features a modern mobile
> > messaging app should have. These include encrypted local storage,
> > end-to-end verifiable encryption over the network, certificate pinning
> > for server connections and a variety of other features. I am VERY
> > happy to report that the latest v12 beta release of the project
> > formerly known as Gibberbot, now called ChatSecure, has all of the
> > features described in that post implemented. From a feature
> > perspective, it is the most security mobile messaging app ever. We
> > also hope that in reality, in practice, it also is, as we have spent a
> > great deal of effort on security code audits, penetration testing, and
> > responding to the outcomes of those effort, to further harden our app.
> >
> > NOW, moving on to a more lighthearted, but equally important topic ?
> > MAKEOVERS! Well, in truth, it is countless hours of study trying to
> > understand how we could make our app not only secure, but also
> > beautiful, efficient and fun. On top of that, countless more hours
> > actually implementing it, debugging it across Android operating
> > systems from 2.3 to 4.3, and making sure it works as well on a Nexus 7
> > tablet as it does a bargain basement ZTE device.
> >
> > Much of this effort was spent on features like themeing,
> > emoji/emoticon support, swipe navigation and improved color schemes
> > for various states of encryption. This may seem frivolous to some,
> > especially while they are ?real? problems out there like backdoored
> > basebands and weakened random number generators. However, while we
> > continue to do all we can to ensure our apps are fortresses, we also
> > must make sure they are comfortable fortresses, as we hope and expect
> > our users to spend many hours a day inside of them. If you eyes will
> > be staring at something for that long, don?t you want smooth fonts,
> > and cohesive color schemes? If you are going to be navigating between
> > chats and buddies a hundred times a day, wouldn?t you expect us to
> > make that as seamless an move as possible? Yes, yes, and so we did!
> >
> > In the end, we designed our software around people who have little
> > patience or spare time, and every right to be that way ? activists,
> > human rights defenders, journalists ? people on the front lines in
> > conflict zones and change in their society around the world. Usability
> > for them means they have more time to be in the real world, while
> > still having our apps maximize the precious time they have to
> > communicate digitally, and of course, ensure that the walls of our
> > digital fortress around them are as high and hard as can be.
> >
> > You can get your hands on this fully functional beta right here on
> > HockeyApp:
> > https://rink.hockeyapp.net/apps/2fa3b9252319e47367f1f125bb3adcd1/ or
> > directly from our site ? ChatSecure APK and signature ASC.
> > WARNING: The current beta does not supporting importing your existing
> > account configurations, and you will need to setup the accounts again.
> >
> > _______________________________________________
> > Guardian-dev mailing list
> >
> > Post: Guardian-dev at lists.mayfirst.org
> > List info: https://lists.mayfirst.org/mailman/listinfo/guardian-dev
> >
> > To Unsubscribe
> >         Send email to:  Guardian-dev-unsubscribe at lists.mayfirst.org
> >         Or visit:
> https://lists.mayfirst.org/mailman/options/guardian-dev/dominik%40dominikschuermann.de
> >
> > You are subscribed as: dominik at dominikschuermann.de
>
>
> _______________________________________________
> Guardian-dev mailing list
>
> Post: Guardian-dev at lists.mayfirst.org
> List info: https://lists.mayfirst.org/mailman/listinfo/guardian-dev
>
> To Unsubscribe
>         Send email to:  Guardian-dev-unsubscribe at lists.mayfirst.org
>         Or visit:
> https://lists.mayfirst.org/mailman/options/guardian-dev/natanael.l%40gmail.com
>
> You are subscribed as: natanael.l at gmail.com
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.mayfirst.org/pipermail/guardian-dev/attachments/20130921/f5c395b9/attachment-0001.html>


More information about the Guardian-dev mailing list