613
Privacy is Priceless, but Signal is Expensive
(signal.org)
This is a most excellent place for technology news and articles.
A more accurate title could be "Privacy is Priceless, but Centralization is Expensive": with the era of cheap money coming to an end, grows a lot of uncertainty regarding the future of some large internet services. Signal is no exception and this emphasises the importance of federated alternatives (XMPP, fediverse, …) for the good health of the future internet.
Decentralization is expensive too judging by some of the sentiment I've seen around running Mastodon and Lemmy/Kbin instances.
Right? People simply expect someone else to pay the bills.
And why wouldn't they? 90% of the software people use daily is free (as in beer), so of course being told that's going to change is going to cause upset. It takes a lot for people to want to pay money for something that, to those who don't value free (as in freedom) software, is no different than the costless alternative.
At some point society needs to figure out how we can subsidize the costs of data storage, remote servers, and provision of internet to people for free.
The only real way to do that is government subsidized servers, but that will fall in the same category as literally every other government service: right wing political entities try to privatize it and make it as shitty and parasitic as possible.
Self-hosting.
We just need ISPs to allow it.
You pay for these things with your data. If the government is paying for privacy-respecting storage or safe internet access, then so are you with your taxes. I'd vote for that, but I'd guess the majority of people would not.
There's nothing to figure out, if the question is how "society" does it then the answer is literally taxes.
Yup, it has a cost, but there's perhaps a one or two orders of magnitude cost difference between hosting instant messaging + calls with something like XMPP, and hosting mastodon/Lemmy/Kbin (or why I do the former but not the later, and why I'm ok to pay for the service, esp. considering that my instance's business model isn't, unlike Reddit, to re-sell influence and data).
How does does decentralization avoid the costs that Signal laid out in the blog posts?
I laid it out elsewhere in this thread, but in short, costs grow non-linearly with scale: you can run thousands of users on a RPi, but a million users requires whole datacenters. Decentralization not only helps with not requiring "whole datacenters" in the first place, they also enable maximization of resources: if you have a NAS at home, or a RPi hanging around, a router idling somewhere, or an abandoned smartphone in a drawer, you can probably host enough accounts for all the people that you've ever met in your life. And there are hundred of thousands of such underused devices everywhere, which, put together, would be sufficient to host the whole world multiple times around.
The other issue is sustainability: with this centralization comes single point of failure. It's no big deal witnessing the disappearance of one or few providers of a federated network. Accounts and data can be migrated easily. For most users, it's invisible. Now compare this to Signal running into financial issues: you are contemplating million of users losing access to their account and their data, and having to re-bootstrap their whole social graph elsewhere. This is another level of "cost", or price to pay, for centralization.
Who is maintaining all these "unused" devices that you will want working pretty consistently? Who is responsible for replacing hardware when it dies? Who is looking into it when someone stops receiving messages? What happens when the person hosting thousands of users just stops wanting to do it? Who migrates these accounts?
Frankly, your argument sounds more like wishful thinking than anything practical. You've basically described the plan as "Magically some devices in someone's basement will suddenly start running a messaging service, maintenance free, from now until the end of time".
This isn't wishful thinking, this is in defense of a model where our digital needs would be distributed at a level lower than that of the tech majors, which was commonplace before everything on the internet was so consolidated.
I'm not saying that everyone should self-host, I'm saying that federated services could be hosted at family&friends/regional/national levels, simultaneously, and deliver a resilient service at a negligible cost. Hardware, which is very much a problem for Signal & al right now, wouldn't be in a distributed model, and could be donated and repurposed easily. My example was perhaps a bit too extreme, but I think you get the gist of what I'm saying.
Decentralisation would just spread the costs over more individuals. Those individuals would have to collect contributions from their respective communities. The total amount people who would have to chip in to make the system sustainable won't change dramatically. Decentralisation isn't some magic wand that makes infrastructure and labor costs disappear into thin air.
...the costs and the risks: let's jump forward a few years into financing issues, at what point does Signal become a liability and start operating against their stated mission, if the alternative is that they cannot survive? We are witnessing enough contemporary examples of enshittification to know that it's a real possibility, and that all centralized providers, but in particular the ones not charging for service, are at risk.
Some would even argue that this has already started in the case of Signal with their crypto payments and blocking of 3rd party clients which are clearly user-hostile.
Perhaps, or perhaps not. Running costs get exponential with scale. You can host 1000 users on a shoebox computer/raspberry pi, but delivering a service for millions requires datacenter-level infrastructure and tons of engineering know-how.
Most people into self hosting or having a NAS at home can already accommodate their families, friends and more, which means millions of potential users, without the problem of trust from a single organization
E.g. SMS isn't secure, but it is free as it uses downtime in overhead cell channels.
Except it is not free. My carrier does not include them in the main plans (because they're not as commonplace anymore), and you either buy an additional package or pay per each SMS.
It's free for them
Have any suggestions for "normies" on iPhone and Android that aren't Signal?
SimpleX or any XMPP with OMEMO
+1 for simplex
Thanks!
matrix comes to mind, get element on iOS and Android (Fdroid or play store)
Thanks!
your welcome.
If those "normies" aren't turned away by the creation of an account (and if they can use Amazon, I doubt it's an issue), they can certainly use XMPP :)
Here to pick a provider:
https://providers.xmpp.net/
Here for the software:
https://xmpp.org/software/?platform=android
https://xmpp.org/software/?platform=ios
Thanks!
I surely do!
Try Session or SimpleX or Threema.
Threema is the oldest and most polished option. You do have to buy a license for a one-time fee though. It's entirely worth the play store credit I spent, but if I were to buy now, I'd use their website store so I could use the open source app instead.
@comfydecal
@u_tamtam
I cannot really root for threema here because of its centralized nature, although I do appreciate that it has a saner business model than Signal
Thanks!