Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I don't think this is responsive to my comment.


I think it is? They were not trying to hide the content, but rather to ensure that nobody else could encrypt valid payloads.


The signing accomplishes that. The chacha20 encryption with part of a public key, which is what I'm discussing above, is just obfuscation.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: