As I see it all "friends related" features must be removed/rewritten. For a very simple reason - you cant add to friends who you want. Neither you can't identify "friends" properly
Real identification must be either server-side, like most IM program does or be cryptography based (exchange keys).
Until we haven't one - all '*friend*' is useless imho.