Session 3 - Security
Oskar, 2018-10-10
We don't compromise on security when building features. We use state-of-the-art technologies, and research new security methods and technologies to make strong security guarantees.
practice of preventing unauthorized access, use, disclosure, disruption, modification, inspection, recording or destruction of information. (Wikipedia)
As a user, I don't want anyone but the person I'm talking to to see my conversations.
Forward secrecy: If my private key gets compromised another person can't read my historical conversations.
As a user, I don't want someone to know who I am talking to except the person I'm talking to.
As a user, I don't want anyone but recipient to know that I transferred money to them.
How do we ensure a secure user experience while being user friendly?
How do we ensure we provide utility for people and aren't paralyzed by extreme threat models?
E.g. lack of private tx !=> only focus on chat.
How can we work iteratively on security and communicate clearly what guarantees we make and can't make right now?
Up to you.
Idea Generator 1: List pairings and think about positive and negative interactions.
Idea Generator 2: Think like adversary - how can Status be attacked?