Signal's Server repo hasn't been updated since April 2020
github.com
github.com
Since the Signal platform does collect metadata, even though it’s very less compared to what other platforms collect, anyone who trusts Signal must assume that any metadata collected by Signal could possibly be available to people whom it shouldn’t ideally be available to. Is that really bad? Can’t say, unless you look at your threat model, what’s important to you and the mitigation factors to consider.
https://community.signalusers.org/t/where-is-new-signal-serv...
Also let’s not forget that Signal was founded 6 years ago so they’ve already had some time to work on their backend code already (and in a sector that isn’t exactly lacking of research papers and prior art for solutions).
I'm aware they're looking at backup features and such, wondering if they'd be part of the server, or a different system.
I'd expect some improvements to performance and such, esp. as they grow, so good catch on the 10 month wait, but it's an orange flag rather than red flag to me.