security
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| security [2026/03/26 06:12] – admin | security [2026/03/30 02:34] (current) – admin | ||
|---|---|---|---|
| Line 13: | Line 13: | ||
| * Matrix | * Matrix | ||
| - | | + | * Configuration Steps: |
| - | *.Metadata | + | |
| - | * Homeserver owners can join encrypted chats and impersonate users by adding their own device key to the target users account. | + | * Enable End To End Encryption (E2EE) for sensitive rooms. |
| - | * A stolen domain for homeserver can gain rights as any user that has joined the room from the homeserver, This is due to Matrix stores permissions as user@homeserverDomain.com for rooms. | + | * Security And Privacy Notes: |
| - | * Fluffychat client is recommended, | + | * While messages are encrypted in E2EE rooms, privacy leaks are possible. Metadata |
| + | * Homeserver owners can join encrypted chats technically. They would have to impersonate users by adding their own device key to the targeted user account. | ||
| + | * A stolen domain for homeserver can gain rights as any user that has joined the room from the homeserver, This is due to Matrix stores permissions as user@homeserverDomain.com for rooms. | ||
| + | * Fluffychat client is recommended, | ||
| + | * Users joining E2EE encrypted rooms can not see past messages. This is being worked on currently (https:// | ||
security.1774505578.txt.gz · Last modified: 2026/03/26 06:12 by admin
