-
@ Yuki Kishimoto
2025-03-04 22:04:00From my understanding double ratchet is better for 1:1 messaging and has strong post-compromise security since uses a different key for every message. MLS is better and scale well for groups but in case a key is compromised, all future messages could be exposed until the key refresh is performed. So, IMO, we can use both: double ratchet for 1:1 messaging and MLS for groups.