Skip to main content


Unidentified governments are surveilling smartphone users via their apps' push notifications, a U.S. senator warned : https://www.reuters.com/technology/cybersecurity/governments-spying-apple-google-users-through-push-notifications-us-senator-2023-12-06/

That's why it's important to offer your users alternatives.

#PushNotifications

This entry was edited (5 months ago)

IzzyOnDroid ✅ reshared this.

in reply to UnifiedPush

In addition, we strongly advise developers to encrypt their push notifications, recommending #WebPush or to adopt a sync-on-push strategy (which is what Signal does). Follow RFC8291, forget about the old draft protocol abandoned 7 years ago!
This entry was edited (5 months ago)
in reply to UnifiedPush

Shouldn't the protocol mandate encrypting notifications or even disallow any payload in the notification, instead forcing it to be nothing but a wake-up ping?