Thank you, I’ve always highlighted most of these points here in HN and I get heavily downvoted and attacked being “paranoid”, how is it paranoid if you don’t even have a way to confirm the physical servers are secure from memory injection attacks/boot attacks/etc.? How would you verify after the audit, something was changed? Phone numbers are inherently have broken security by protocol design (and I personally have a lot of personal work on attacking GSM protocol, and I know how easy it’s for 3 letters agencies with enough funding and access to exploit it), why I don’t have an option to choose? Why it was shilled so hard that time when WhatsApp went dark? There’s a LOT of sketchy things, there’s noway I would trust it, never will.