Skip to content

Commit 3d95c82

Browse files
authored
Update README.md
1 parent b8d515d commit 3d95c82

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

README.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -11,17 +11,17 @@
1111
## 🔒 Security Model & Features
1212
- **Security**: Essentially unbreakable composite encryption scheme.
1313
- **Perfect-Forward-Secrecy**: Keys are rotated after use.
14-
- **Plausible Deniability**: messages are not cryptographically tied to you, providing more deniability than [Off‑The‑Record messaging](https://en.wikipedia.org/wiki/Off-the-record_messaging) !
15-
- **Mandatory SMP**: We enforce [Socialist millionaire problem](https://en.wikipedia.org/wiki/Socialist_millionaire_problem) before any chat. **MiTM attacks are impossible**.
14+
- **Plausible Deniability**: messages are not cryptographically tied to you
15+
- **Mandatory SMP**: We *enforce* [Socialist millionaire problem](https://en.wikipedia.org/wiki/Socialist_millionaire_problem) before any chat to prevent **MiTM attacks**.
1616
- **Minimal Attack Surface**:
17-
- Tkinter UI only, no embedded browsers or HTML
17+
- Tkinter UI only, no embedded browsers nor HTML
1818
- Minimal Python dependecies
1919
- All untrusted inputs truncated to safe lengths to prevent buffer‑overflow in liboqs or Tk
20-
- **Traffic obfuscation**: Network adversaries (ISP, etc) cannot easily censorship Coldwire, because we utilize HTTP(s).
20+
- **Traffic obfuscation**: Network adversaries (ISP, etc) cannot easily censorship nor detect Coldwire usage, because we have built-in protocol obfsucation support.
2121
- **Metadata‑Free**: Random 16‑digit session IDs, no server contacts, no logs, no server‑side metadata, enforced passwordless authentication.
2222

2323
## ⚠️ Disclaimer
24-
While Coldwire enforces paranoid‑level security features, the [protocol](https://github.com/Freedom-Club-Sec/Coldwire/blob/main/PROTOCOL.md), and codebase are under active development.
24+
While Coldwire enforces paranoid‑level security features, the [protocol](https://github.com/Freedom-Club-Sec/Coldwire/blob/main/PROTOCOL.md), and codebase are under active development.
2525

2626
**Do not** use for production‑grade secrecy until an formal audit is complete.
2727

0 commit comments

Comments
 (0)