Private by default.
Quantum-safe forever.
End-to-end encrypted messaging, calls and file sharing, sealed with post-quantum cryptography. No email. No phone number. Just you and your keys.
Tap a layer to see how it protects you
ML-DSA-65
Proves who sent it.
The sender signs the message metadata with an ML-DSA-65 private key derived from their passkey, so every device they own produces the same signature identity. Recipients verify the signature locally against the sender's public key. ML-DSA is lattice-based, the signature counterpart to ML-KEM.
Protects against: Authenticity that survives quantum computers: neither the relay nor anyone else can forge a message from you or alter one in transit without detection.
