Hacker News new | ask | show | jobs
by loren_kuhn 3972 days ago
It's closed source (i'm not asking for FOSS, just being able to compile myself) and there is a business behind it. It talks about protecting my privacy. Tell me how I should believe that.
5 comments

Bittorrent Sync has the same problem, closed-sourced and only the businesses claims as to its security and 'truly private' sharing technology. Such a shame as I was really excited about Demonsaw, thought it was 'the one'.
It is... at least until something better comes along. Build your own if you want it... That is what the workshop was for.
According to the FAQ:

>Is demonsaw going to be Open Source?

>This was the question that I was most asked at Defcon. Demonsaw's foundation is built off of DemonCrypt, which is open-source and available for free on GitHub (MIT License, also developed by me). Demonsaw itself builds upon DemonCrypt's functionality and creates a graphical interface for users.

I can't find that repository though (this is the closest thing I could find: https://github.com/eijah/demonsaw).

From a security point of view, "partially open source" is no better than "closed source".
I agree, however if the lib is indeed open source (which I'm not sure of), then it should be easier to create a fully open source clone.
Sounds like the FAQ has incorrect information in it. https://github.com/search?q=demoncrypt

So, that's another black mark... :(

Someone already opened an issue: https://github.com/eijah/demonsaw/issues/2
That link was for the workshop files.
Yeah. It claims to be "secure", but then gives us no way of verifying that for ourselves. I bet they "take the privacy of our data seriously" too. Pass.
The software is free and based on your comment your looking for someone to trust. All communication and crypto is based on trust. If your waiting for someone else to make something for you... you are by default trusting them to do the security for you.
but look at their supporters, how can you not trust that!