Should we assume SN can read these messages if they're so inclined?
Definitely yes. This system was never intended for DMs.
For me, this system is just another example how people assume that things are secure just by expectation since DM systems usually use E2EE since a while.
But as mentioned, this was never meant to be used for DMs. I think @WeAreAllSatoshi just wanted us to support more LNURL features.
Correct. I was aiming for more complete spec compliance
reply
Thanks for the info. I still think it's a useful tool to have available on SN. It's a way to direct message fellow stackers on individual stuff without annoying everyone. It's just good to have a low expectation of privacy.
reply
I still think it's a useful tool to have available on SN. It's a way to direct message fellow stackers on individual stuff without annoying everyone.
I agree, I use it myself.
It's just good to have a low expectation of privacy.
Exactly. The only problem I have with it is that people (as this post shows) may have a false sense of privacy while using it.
reply
Has it always been limited to wallets having less than 250k sats?
reply
No, the first limit for deposits was 1M sats iirc. It was decreased from 500k to 250k 2 days ago.
However, keep in mind that this doesn't mean your wallet can only hold 250k sats now. You can still have more by getting zapped, you just can't deposit more than that. We call this a soft limit. We're doing this because we are not and we do not want to be a wallet provider because of legal exposure.
reply
Aha! So I'm not crazy. I knew I was messaging people before who I can't message now. Good to know. I will adjust my wallet balance more often.
reply
deleted by author
reply
Right after the edit period expired I realized I should rethink that response
reply
Btw, forgot to mention: Great post @siggy47!
Since people started to use LUD-12 for DMs, I've been wondering if people just know that someone like Snowden should probably not use this to plan his next steps, or if they simply assume that as secure as any other DM system.
Finally someone asked for clarification, lol
reply
Thanks for clarification. It is hard to verify code of everything, no time for it, and the easy thing is to trust that everything is safe and private. And many people don't have any other choice since they don't know to read code. But we shouldn't assume something is good if there is no link to some information about how it works at least.
reply