Update Group Messaging wiki pages for v1.9.1 multi-layer duress + shard distribution The technical and overview pages still described the pre-Bug-73 binary real/duress member-list model (realMemberSlots/duressMemberSlots only) and didn't document the per-recipient vault shard distribution feature added in v1.9.1 (RecipientPayload's shardOperations/custodyManifest/expectedShards/ shardMetadataAttempted, the ShardPadding tiering scheme, and the fallback stripping on both send and receive).
Update Group-Messaging-Technical: blind scheme, trial-decryption, corrected slot size - GroupEnvelope: replace cleartext id:UUID with blind/blindNonce/version fields (F-18) - Recipient: remove fingerprint/fingerprintNonce; slot-finding is now trial-decryption (F-20) - AAD: update outer and per-recipient formulas to use blind instead of groupID/fingerprint - Encrypt flow: remove fingerprint steps; add blindNonce/blind generation - Decrypt flow: replace fingerprint lookup with trial-decryption; add missingGroupID and senderProof steps - Slot size: correct 64 bytes → 156 bytes (128-byte padded plaintext + AES-GCM overhead) - Forensic trace: replace stale groupID correlation bullet with blind scheme properties
Add group messaging wiki pages