Security & Privacy
Introduction
Messa AI prioritizes your privacy, ensuring that your messages, keys, and data remain entirely under your control. Through advanced encryption, robust key management, and secure server protocols, Messa delivers a new standard in secure communication.
Encryption and Data Security
Messa employs multiple layers of encryption to protect your communications:
End-to-End Encryption (E2EE):
Messages are encrypted locally on your device before being sent.
Only the intended recipient, with the correct private key, can decrypt the message.
Homeservers in the Matrix network function as encrypted relays without access to unencrypted data.
Encrypted Sync Protocol:
Messages remain encrypted, even during synchronization across devices.
Encryption keys are securely transferred to maintain privacy across your ecosystem.
AI Data Security:
AI features such as smart replies and translations process data locally.
All AI outputs are encrypted before integration into your messages, ensuring zero exposure.
Key Management
Messa empowers users with complete control over their encryption keys:
Local Storage of Keys: Encryption keys are stored directly on your device, ensuring exclusive access.
Encrypted Backups: Keys are securely encrypted for backup, and recovery requires your unique passphrase, keeping third parties out.
Key Recovery: Secure and user-controlled options allow you to regain access to encrypted data in the event of device loss.
Server Security
Messa employs the federated architecture of the Matrix protocol to maximize privacy and resilience:
Federated Homeservers:
Choose from public homeservers or host your own for full autonomy.
Homeservers act as encrypted relays, without access to unencrypted messages.
Protection for User-Hosted Servers:
Messa provides guidance on securing self-hosted servers from unauthorized access.
Even in case of server compromise, encrypted communication safeguards user data.
Resilience to Failures:
Federation eliminates single points of failure, ensuring messages are routed through alternative servers if necessary.
Why Security and Privacy Matter
Messa delivers unparalleled security through:
User-Controlled Encryption: Retain full ownership of your encryption keys, ensuring no one else can access your messages.
Zero Trust Infrastructure: Homeservers and Messa itself cannot access your unencrypted data.
AI with Privacy: Smart features process locally without exposing sensitive information.
At Messa, privacy isn’t just a feature—it’s a guarantee. Your communication is secure, decentralized, and completely under your control.