Some day I want to see more systems with a decentralized architecture, where cloud servers, if used at all, only help facilitate a secure VPN connection between the user's device (e.g. a phone) and the user's home network.
Some day I want to see more systems with a decentralized architecture, where cloud servers, if used at all, only help facilitate a secure VPN connection between the user's device (e.g. a phone) and the user's home network.
It does look like you're addressing the right problems with "Signpost" and "Irminsule". Am currently reading your slides.
To put it into perspective, NoScript is the 4th most popular add-on to firefox.
https://addons.mozilla.org/en-US/firefox/extensions/?sort=us...
Software like what you are developing needs to be designed with a strong security mindset from the beginning. It is a truism in the industry that security tacked on after the fact never works very well. I was extrapolating from the security naivete of your website design to the likely naivete of your software design.
Regarding your final para, please be assured that the folks working on the software are 'best-in-class' and do have a strong security mindset as well as a deep background in internet systems. The software is the output of research work being done in the University of Cambridge and I made the site to try and showcase the work and provide more context around it. The front-end of the site may be lacking but that shouldn't reflect on the software we're making (though I do understand why people extrapolate).