publications
skiff-apps
Our great sponsors
publications | skiff-apps | |
---|---|---|
51 | 28 | |
1,318 | 575 | |
2.6% | 10.3% | |
8.7 | 8.0 | |
10 days ago | 19 days ago | |
Python | TypeScript | |
Creative Commons Attribution Share Alike 4.0 | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
publications
-
Skiff: Various Privacy Failures
Disagree, their reputation is tied to their audit quality.
But I'm pretty sure in this case the scope was bad. Like they coukd have had audits on "Do I use OpenSSL well?" and then misrepresent that all their privacy claims were audited.
Now it seems like Skiff conveniently didn't allow Trail of Bits to publish their reports, they are usually here: https://github.com/trailofbits/publications/tree/master/revi...
Disclaimer, I have used Trail of Bits service in the past (and 2 other auditors for an security campaign on a blockchain, cryptography + networking product).
- The Lisk v4.0 security audit 🔐
-
PyPI has completed its first security audit
Link to the report: https://github.com/trailofbits/publications/blob/master/revi...
They seem to not have analysed client-side of PIP itself, but I suppose there isn't anything you could say that isn't already obvious to everyone.
- SimpleX Chat security assessment by Trail of Bits [pdf]
-
Thoughts on Skiff? What do you like? What would you want to see improve?
Audits are mentioned on the Trail of Bits website https://github.com/trailofbits/publications and the Skiff one https://skiff.com/transparency. Skiff has been externally audited 4 times.
-
SimpleX Chat: private and secure messenger without any user IDs (not even random)
Here's the URL https://github.com/trailofbits/publications/blob/master/reviews/SimpleXChat.pdf It was in the article I have already linked.
-
Solidity digest fortnightly / 17-30 apr 2023
MYSO Finance Security Assesment by Trail of Bits
-
Audit Firms Ranking
Trail of Bits
-
Transparency at Skiff
Hi! I'm Skiff's CEO. We've had 3 security audits, including 2 from Trail of Bits - one of the best security auditing firms in the world https://github.com/trailofbits/publications. Skiff Mail is also open-source: https://github.com/skiff-org/skiff-mail as is our whitepaper https://skiff.com/whitepaper We've also been in the news quite a bit: https://www.theverge.com/2022/5/17/23075804/skiff-mail-email-privacy, https://www.wsj.com/articles/encryption-bans-what-is-this-russia-hacking-online-privacy-security-data-signal-whatsapp-emails-protection-11675436242 (I wrote this with our team!), https://techcrunch.com/2023/01/30/russia-skiff-block/, and more, even though we're only a year old. We collect no personally identifying information - not even IP addresses used - no backup emails, phones, etc. - no advertising, and we end-to-end encrypt BOTH email subject + body and don't have any metadata (time sent/received an exception). What can we do to share more of this with more people? We're a younger company but it's so important this is made public.
-
Skiff Apps
Hi! I'm Skiff's CEO. We've had 3 security audits, including 2 from Trail of Bits - likely the best security auditing firm in the world https://github.com/trailofbits/publications. Skiff Mail is also open-source: https://github.com/skiff-org/skiff-mail as is our whitepaper https://skiff.com/whitepaper
skiff-apps
- Skiff Is Joining Notion
- Client email custom
-
Why Skiff Mail isn't ready for primetime - my experience
Github: The Skiff CEO appears to be coding most of this and doesn't really have much of an idea when things go wrong. An example of this is a recent issue with the favicon supporting dynamic updates to show unread emails (https://github.com/skiff-org/skiff-apps/pull/156) replies such as "So we need to somehow remove these?" doesn't fill me with confidence in the code behind Skiff and why a lot of issues never get fixed and is just hacked together and hope for the best.
-
How to Escape Google
Skiff
-
Using aliases across multiple users
Hello, I want to assign custom domain addresses to e.g. family members. Shall the family member create already a skiff.com account, and then I assign a custom domain address to him?
- Is Workspace and O365 the only real options today?
-
I'm getting a certificate error whenever I try to connect
Hi! I've very recently learnt of Skiff from Epic Murphy's new video on private email services. I wanted to try out the service, however, I get certificate error on any browser I try, both on my desktop and on my phone, whenever I go to skiff.com or any of the subdomains of the website. On my desktop, I've tried the website on Librewolf (Firefox fork), vanilla Firefox and Ungoogled Chromium. On my Android phone, I've tried the website on vanilla Brave. My desktop OS is Arch Linux and my phone OS is Android 13. I will attach some screenshots of the error from my desktop.
-
Skiff – Privacy-first end-to-end encrypted email
[2] https://github.com/skiff-org/skiff-apps/issues/94
-
Best process to migrate away from Google Workspaces
skiff.com can use your custom domain for free, and if you are max 5 people you can all have an address in the custom domain. That takes care of emails. And Skiff also has Calendar, Drive and Pages, but they are all a bit lacking when you're used to Google Drive stuff.
What are some alternatives?
slither - Static Analyzer for Solidity and Vyper
skiff-public-website
manticore - Symbolic execution tool
tweetnacl-js - Port of TweetNaCl cryptographic library to JavaScript
echidna - Ethereum smart contract fuzzer
Mailcow - mailcow: dockerized - 🐮 + 🐋 = 💕
verified-smart-contra
immich - High performance self-hosted photo and video management solution.
codeql - CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
website
security - Materials related to security: docs, checklists, processes, etc...
excalidraw - Virtual whiteboard for sketching hand-drawn like diagrams