Whilst the reply from the CEO seems sound, their team promptly closed the path the plugin used to make self-hosted full-featured Sync & Publish work. "For Security" - ignoring the handful of other gaping security holes as less important I guess?
I could not agree more, I'm sure zsh can do everything fish can and a lot more, but getting it to that stage would take me more time than I'll spend interacting with fish for the next few months
Open Source but not actively accepting contributions is not a great place to be. Especially when you can't federate, so you are stuck using the central server which basically doesn't accept code contributions. Take a look at https://merge-chance.info/target?repo=https://github.com/sig...
Also it is somewhat interesting that this Open Source centralised Signal server, where centralisation means you can move quicker, hasn't seen a commit in 10 months.
One password that you send to the server to authenticate.
The other is a passphrase used to seed an encryption key for the data you store on the server securely in a manner the server has no access to.
Synapse is just one Server capable of providing a self-hosted Matrix server. Just like for self-hosted Web servers you have options like Nginx and Apache and more.
This is not right at all, the hack was due to an outdated Jenkins instance and could have happened regardless of what other software was running on the infrastructure.
It hasn't been bought, Status had contractually selected some features/bugs that they wanted fixed but apart from that they do not control riot.im's roadmap.