惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
N
Netflix TechBlog - Medium
P
Proofpoint News Feed
D
Docker
J
Java Code Geeks
L
LangChain Blog
Microsoft Security Blog
Microsoft Security Blog
The GitHub Blog
The GitHub Blog
I
InfoQ
Stack Overflow Blog
Stack Overflow Blog
云风的 BLOG
云风的 BLOG
Engineering at Meta
Engineering at Meta
MongoDB | Blog
MongoDB | Blog
月光博客
月光博客
T
Tailwind CSS Blog
M
MIT News - Artificial intelligence
Blog — PlanetScale
Blog — PlanetScale
Google DeepMind News
Google DeepMind News
腾讯CDC
罗磊的独立博客
U
Unit 42
爱范儿
爱范儿
Vercel News
Vercel News
MyScale Blog
MyScale Blog

Signal Blog

Label yourself Put a pin in it Signal Polls: Yes, no, maybe (yes!) Signal Protocol and Post-Quantum Ratchets Introducing Signal Secure Backups By Default, Signal Doesn't Recall A Synchronized Start for Linked Devices Improving Private Signal Calls: Call Links & More Proxy Please: Help People Connect to Signal Keep your phone number private with Signal usernames Trend report: Use Signal Privacy is Priceless, but Signal is Expensive New Features Roll Call: Fall 2023 Quantum Resistance and the Signal Protocol Standing firm against threats to private and safe communication Signal is for everyone, and everyone is different Story Time Removing SMS support from Signal Android (soon) Help people in Iran reconnect to Signal – a request to our community A Message from Signal's New President Technology Deep Dive: Building a Faster ORAM Layer for Enclaves Signal Your Support You Can Change Your Number New year, new CEO How to build large-scale end-to-end encrypted group video calls Become a Signal Sustainer Improving first impressions on Signal Embrace ephemerality with default disappearing messages The Instagram ads Facebook won't show you Exploiting vulnerabilities in Cellebrite UFED and Physical Analyzer from an app's perspective
Safety number updates
2017-06-16 · via Signal Blog

The latest Signal beta includes some changes to the way safety numbers work. Back in November, we introduced experimental support for “advisory” safety number changes, with the objective of collecting feedback in order to eventually make this the default experience.

We’ve taken the feedback we’ve received over the past six months and incorporated it into a set of changes that we’re releasing into beta today.

Advisory safety number changes

Up until now, when a contact’s safety number changed, Signal has required a manual approval process before being able to send or receive any further messages with that user. This happens every time a contact reinstalls Signal or gets a new phone, and we’ve gotten a lot of feedback from users who would like to know when this occurs, but not necessarily be blocked by it.

In thinking about safety number changes, it’s easiest to discuss the process of sending and receiving messages separately.

Receiving

On the receiving side, all the feedback we received suggested that this is the place where reducing friction makes the most sense. Instead of hiding the message behind a manual approval process, we always display it immediately along with a safety number change warning.

Old vs new:

Screenshot of receiving advisory safety number

There was some concern that the safety number change warning could scroll off the screen if several new messages had come in since the conversation was last opened, so we introduced the unread message separator seen above. Opening a conversation will always scroll to the top of it, making it less likely that a safety number change warning goes unnoticed.

Sending

The sending side is where we received the most feedback, and where we believe that we need to take the most care. A purely “advisory” process is not as straightforward as the case of receiving a message, since many users don’t want to be surprised by a safety number change after they’ve already hit send. A lighter-weight process has to reduce friction without introducing the uncertainty that any sent message could be automatically encrypted to a different key with no warning.

To help make this possible, we’ve introduced some changes that more proactively display safety number change warnings as they occur, before sending a message.

Screenshot of a proactive safety number change warning

Proactively displaying safety number change warnings allows us to strike a balance. If a user hasn’t had the opportunity to see a safety number change warning, the process of sending a message still requires manual approval. For instance, if the warning doesn’t appear until after you hit “send,” or if the warning only appears briefly before hitting “send,” the message will not be delivered unless you explicitly approve it. However, if you have had the opportunity to see the warning and make a decision, sending a message will not require manual approval.

Verified

For users who want even more certainty, we’ve introduced the ability to explicitly mark a safety number as “verified.”

Screenshot of marking a safety number as verified

If a verified safety number changes, sending a new message to that contact always requires manual approval.

Screenshot of manual approval process after verified safety numbers change

In beta now

These changes are available for testing in the beta channels of the Android and iOS apps today. Give them a shot, help us kick the tires, and let us know what you think.