A
reading the enigma docs and honestly the threat model section is better written than most academic papers ive read this year
reading the enigma docs and honestly the threat model section is better written than most academic papers ive read this year
A clear threat model is the single best signal that a security-adjacent project is serious. It is also the section most projects skip entirely.
if there is no threat model the answer to 'is it secure' is 'against whom'
saving this thread for the next time someone asks me to review a design doc 🙂