CryptyXSignal-protocol primitives
Silence,by design.
Encrypted end to end. Seen by no one. Your keys never leave your device β the server only ever carries sealed noise.
How the encryption actually works.
Three primitives, working together. No custom crypto β the same building blocks the security community has audited for a decade.
Handshake without a rendezvous
Alice and Bob combine long-term, signed, and one-time prekeys to derive a shared secret. No one β including the server β ever transmits it. The relay only shuffles sealed bundles.
A fresh key for every message
Each message advances a symmetric-key ratchet and, on reply, a Diffie-Hellman ratchet. Past keys are destroyed the moment they're used β a stolen device can't unlock yesterday.
Even the sender is hidden
With sealed sender, routing metadata is encrypted too. The server forwards a blob it cannot read, addressed in a way it cannot link. It relays silence.
Every message locks with its own key β then throws it away.
Hover any message. Its encryption key has already been ratcheted forward and destroyed. Compromise a device today and yesterday's conversation stays dark. There is nothing left to steal.
Try to read it.
Below is our relay's live view of traffic. Flip the switch and step behind the server. Even with full access, there is nothing to see β just sealed noise.
Built to give away nothing.
Forward secrecy
A new key per message. Yesterday stays sealed even if today is compromised.
Post-compromise recovery
The ratchet heals. One clean message re-locks the conversation against a past intruder.
Invite-only
No open sign-ups, no phone number, no ad ID. You arrive through someone you trust.
Device verification
Confirm a contact's safety number in person or by QR. Detect a man-in-the-middle on sight.
Zero server knowledge
The relay holds sealed blobs it cannot read and cannot link. No plaintext ever transits it.
Every platform
iOS, Android, macOS, and Web β the same protocol, keys synced only across your own devices.
What we defend β and what we don't.
Honest security starts with an honest boundary. Encryption is a wall, not a spell. Here is exactly where ours stands.
Only sealed ciphertext and unlinkable routing ever reach it. No keys, no plaintext.
Transport is encrypted; contents are end-to-end sealed underneath it.
Forward secrecy destroyed those keys the moment each message was read.
Compare safety numbers in person or by QR to pin the real identity key.
E2EE can't help once someone is holding your open phone. Use a device lock.
If someone can read it, they can photograph it. Trust is still trust.
One glance defeats a man-in-the-middle.
Every pair of contacts shares a unique safety number β a fingerprint of both identity keys, shown here as a QR. Hold your two screens side by side, or read the digits aloud. If both match, no one is standing in the middle. If they don't, someone is.
compare both numbers
Wherever you are, still silent.
One identity, one protocol, four surfaces. Keys sync only across your own verified devices β never through us.
Questions, answered.
CryptyX is invite-only.
No phone number. No ad ID. Just a code from someone you already trust. Join the waitlist and we'll send one when a seat opens.
We only store your email to send your invite.