Protection model
Message, file, reaction and location content is protected on the client. For capable devices, version 3 combines X25519 with ML-KEM-1024 in hybrid PQXDH session establishment and then continues protection through Double Ratchet.
A per-device-pair guard prevents silent fallback after version 3 has been used. Devices that are not yet capable remain on a documented, versioned compatibility path. The Signal-inspired architecture is independently implemented; neither Signal compatibility nor equivalence with an audited standard protocol is claimed.
Detailed protocol mappings, test vectors and implementation evidence are made available only within an expressly agreed confidential review or audit scope. Controlled disclosure is not a substitute for independent assurance.
The internal state re-run on 9 September 2026 covers 308 mapped counter-tests and 19 real-browser runs with 189 checks. This demonstrates verification breadth, not defect-free operation or independent assurance.
- Private object storage and short-lived download paths
- Upload validation for size, media type and checksum
- No independent cryptographic audit claimed
Endpoint boundary
Cryptography does not protect an unlocked, compromised or monitored endpoint. Device loss, session revocation and organisational approvals remain part of the security model.
Review the claim independently.
Review the Evidence Center, documentation and operational status together.
