ok look the "DMs are not secure" stuff is missing the point of DMs -- yes, they arent secure, but they are ~private to not-admins
like, privacy-from-observers and security are different things and i hate that people keep thinking people mean one when they def mean the other
'im not really ok with the entirety of ppl following/federated seeing this' is different from 'i need my messages secure forever'
like the problem is not that DMs arent secure, the problem is that, and idk if this has changed recently, but if you DM someone not on a masto instance, it just shows up as a normal post to them, which they can boost/etc unknowingly. and yeah theres a warning, but like
it took forever to get people to impliment DMs in general in the first place because of this
idk DMs are a mess and a big part of it is just that misunderstanding btwn privacy and security being different user expectations i guess