You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Replies are currently encrypted only to the source key. This makes reading prior replies impossible from the journalist's side, unless they are diligent and keep a record. These replies should be stored on the SecureDrop server encrypted to both the source key and the submission key.
For #3674, we need a lightweight way to indicate whether or not a reply was encrypted to the submission key or just the source key. One sensible approach would be in this ticket to add a column allow_journo_download (or even a better name) to the replies table, that we set to True going forward. This will enable us to gracefully handle #3673.
Description
Replies are currently encrypted only to the source key. This makes reading prior replies impossible from the journalist's side, unless they are diligent and keep a record. These replies should be stored on the SecureDrop server encrypted to both the source key and the submission key.
Epic: #3097
The text was updated successfully, but these errors were encountered: