tox was accused of having a poor crypto implementation / playing silly buggers with libsodium. I've tried it on android, works ok but most apps at the time seemed older. not sure where tox stands re community liveliness but its certainly a good start on p2p messaging, my claims notwitshtanding.
>tox was accused of having a poor crypto implementation
The actual flaw: If _your_ *private* key is stolen, your friends can be impersonated to you.
Hardly worth the infamy.
There's a bug open on this, the solution is known, the opportunity for a fix, and when it will be made live, will be the next time a protocol break ("flag day") is necessary for other reasons.
tox was accused of having a poor crypto implementation / playing silly buggers with libsodium. I've tried it on android, works ok but most apps at the time seemed older. not sure where tox stands re community liveliness but its certainly a good start on p2p messaging, my claims notwitshtanding.