Oddbean new post about | logout
 This is to help users quickly understand how the sender's metadata privacy is protected. 
 The challenge is simply explaining how, when youconnectto acontact, you share your unique keys, but also a key update function.

Maybe "preauthorized hidden message".  Preauthorized:  you & contact can always ratchet your keys, it's the initial connection step.  Hidden:  every message looks like it's a brand new never before used sender