@Tutanota
Checking your own code is not an audit. An audit, by definition is conducted by third-parties. Users will decide who they trust to audit the client they use with your service, whether it's yours or a third-party one. If what you're doing is transparently secure, rather than depending on #SecurityByObscurity, surely it's based on common protocols, and standard crypto not #RollYourOwn, and has clearly documented specs that third-parties can follow securely.
@resist1984
Conversation
Notices
-
Strypey (strypey@mastodon.nzoss.nz)'s status on Wednesday, 01-Apr-2020 07:51:50 EDT Strypey