Top-level
No comments
@darius @cj Consider that with cryptography, the main source of advocacy today is "use libsodium because it has abstracted it for you, don't roll your own crypto" Do you need to understand the black box of libsodium to use it safely? Some people do, but not everyone. If you follow me, you're reading a "libsodium implementor equivalent". That can give a confused impression of what *use* is like, because I'm talking about the equivalent of crypto people saying blah blah modular arithemtic etc |
@darius @cwebber
Well, you can pick your privacy/security models:
- HTTP signatures, ensuring your JSON-LD isn't putting private fields into public payloads, ensuring delivery matches the recipients list, handling other software's visibility (followers only, unlisted), etc
- OCAP
- <something else>
Nothing says these can't be bridged; they can coexist; adopt the style you want.