Signal's open sourced server code hasn't been updated for over a year. Should we be concerned?
github.comEncryption happens client side, not server side, so that should alleviate some concerns however it's still worthy of discussion.
Signal is the only private messaging app that I've tried that hasn't sucked, or wasn't a privacy concern in itself.
BlackWinnerYoshi wrote
Well, while open source does not mean it's secure, this is still a weird thing to do.
I would simply recommend to stop using Signal and start using XMPP with OMEMO encryption, since this is the gold standard of instant messengers, at least for me. You should especially stop using Signal because it requires your phone number, which immediately disqualifies it for a private messenger.