Download, or use it right in your browser: All In
Every protection is on by default. Nothing to dig for in settings.
Messages are encrypted on your device. Our servers only relay ciphertext and never see what you say.
Connections use a hybrid X25519 + ML-KEM-1024 key exchange and ML-DSA-87 signatures, ready for the quantum era.
Private messages can self-destruct after they are read, with screenshot blocking and screenshot alerts.
Sensitive actions such as transfers and password changes need a signature from your trusted device. New devices and web sign-ins are one slide away on your phone.
No extra app needed. Scan a QR code to add two-step verification for other sites and services.
Everyday services in one place, and you can turn your own web pages into mini apps.
Your signing keys never leave your device and are stored in the secure chip where supported. Passwords are hashed on your device before they are sent. Every design decision assumes the worst: even if our servers were breached, your messages would stay unreadable.