Have you seen this news?

#Mastodon just got funding to add end to end encryption into their software.

So, some time next year, you’ll be able to send truly private messages to the vast majority of the #Fediverse

Im so excited about this.

Because it’s an open spec, this opens the doors for every Fediverse app to join the party.

Yesterday, this project was a proof of concept. Today, Mastodon has turned it into a stampede.

#E2EE

https://blog.joinmastodon.org/2026/04/sovereign-tech-agency-funding/

Sovereign Tech Agency funding

Announcing a service agreement for new work to improve Mastodon and the broader ecosystem.

Mastodon Blog

@benpate I'm wondering what the advantage of e2ee private messages on Mastodon is when we have Signal, Matrix and other robust encrypted messaging tools that you could invite a friend to if you want to have a private conversation.

Is anyone worried about this creating moderation issues?

Generally I'm in favor of privacy and security, but I'm just not sure what the value of this feature is on Mastodon. Maybe you or others can provide your perspective on this.

@earth_walker

I don’t have all the answers, but I believe there’s a network effect at work.

Signal is fantastic. I use it for lots of things. But it’s ā€œyet anotherā€ place to go.

But the Fediverse is my primary place to talk with people (like you)

If you and I could have a truly private follow-on discussion without switching networks, it would be a win for the Fediverse.

@benpate @earth_walker

Signal also has 50 employees and money in the bank to pay the lawyers.

@jaz @earth_walker

I'm certainly not a lawyer or expert on this, and I'm sure it varies between legal jurisdictions... but I thought that US law has (some?) liability protections for "common carriers" who pass data but are unable to read it.

Your ISP isn't liable for stuff you download over a secure HTTPS/SSL connection. In theory, the same *should* apply here. But still, someone may try to test it in court.

@benpate

US law is certainly one jurisdiction, one which routinely compels the sharing of metadata of E2EE users and their conversations, and one which is trying very hard to remove a number of protections currently enjoyed by US-based service providers through legislation such as KOSA and EARN-IT.

Also, social media companies are not common carriers. That's a very different thing (like ISPs, telcos, and railroads.)

Also...

https://umap.openstreetmap.fr/en/map/fediverse-near-me_828094#3/25.799891/29.794922

@benpate

Also, even if I enjoyed all the protections in the world, I am not in the E2EE business.

I am not in the patio installation business.

I am not in the porn business.

I am not in the banana peel recycling business.

I operate a public-facing social networking service for charitable purposes, with various liabilities I have chosen to take on, and various regulatory requirements I have chosen to comply with.

E2EE is not in my mission, nor in my wheelhouse, nor in my business plan.

@jaz @benpate thanks for bringing this up, Jaz. I think one way to consider this is that people like me, Ben, Bonfire, and Mastodon can provide this technology, and communities and individuals will make decisions about how and when they use it.
@jaz @benpate In the interviews I've done with Fediverse users about bringing their personal connections, family and friends, to the Fediverse, they repeated again and again that they needed to have private messaging to do that, and this warning keeps them from doing it. If people don't connect with real-world relationships here, they aren't going to stay. This is existential.

@evan @benpate well, that warning would be more informative - but less readable - if it said "Direct messages on Mastodon, just like Twitter, Instagram, TikTok, LinkedIn and all your SMS messages, are not end-to-end encrypted. Do not share any highly-sensitive information over social media."

The gap here is people think the others /are/ private because they don't take the ethical stance of pointing this out.

Personally, I'd remove the warning.

Do People Actually Care About Data Privacy in Messaging Apps?

Consumer concerns about data privacy and security is at an all-time high. But how does it tie into messaging apps? Here's what you should know

Lime Connect