matrix-spec-proposals
matrix-spec-proposals copied to clipboard
MSC3917: Cryptographically Constrained Room Membership
Is anyone actively working on an implementation of this?
We are planning on working on it, but are not currently doing so yet.
We might want to consider having clients sign m.room.tombstone events to ensure users that created the event are verified room members . Since this MSC will require a new room version, a malicious homeserver could downgrade the room version to a previous version without cryptographic room membership verification by injecting a fake m.room.tombstone event in the room.