Encryption
How PinkyBond encrypts messages and calls
Everything she shares with you is encrypted on her phone and decrypted on yours. Our server forwards sealed envelopes it cannot open. We never hold the key.
Built on platform cryptography
We did not write our own crypto. On iPhone we use Apple's CryptoKit. On Android we use Google's Tink. Curve25519 key agreement, HKDF-SHA256 and AES-256-GCM on both, pinned to each other by shared test vectors, so an iPhone and an Android phone produce byte-for-byte identical ciphertext.
Key agreement
Curve25519 (X25519) ECDH
Encryption
AES-256-GCM
Key derivation
HKDF-SHA256
What we do, and what we don't
Every row is checkable. The last three are where we fall short of the best messengers, and we would rather you read that here than find it out later.
| Dimension | PinkyBond |
|---|---|
| Encryption | AES-256-GCM, end-to-end between the two phones |
| Key agreement | Curve25519 (X25519) ECDH, then HKDF-SHA256 |
| Implementation | Apple CryptoKit on iPhone, Google Tink on Android — byte-for-byte interoperable |
| Key storage | iOS Keychain / Android Keystore, hardware-backed where available |
| Pairing | QR code in person, or a 6-character code / link exchanged remotely; both public keys exchanged |
| Verification | A 6-digit code on both phones confirms no one sat in the middle |
| Account | None — no phone number, no email, no password |
| 메시지 및 통화 내용에 대한 서버 접근 | 없습니다. 저희는 키를 절대 갖지 않습니다. |
| What the relay stores | 페어링 ID, 메시지 유형, 타임스탬프, 크기, 암호문 — 전달되면 삭제되며, 최대 30일 |
| 사진, 동영상, 파일 | 최대 2 GB, 두 분의 폰만 가진 파일별 새 키로 봉인되며, 다운로드되면 삭제됩니다, 최대 30일. 아직 업데이트하지 않은 파트너의 앱에는: 페어링 키로 최대 25 MB, 30일 보관 |
| 통화 기록 | 어느 폰이 걸었는지, 언제, 음성인지 영상인지, 결과와 통화 시간 — 저희 서버가 읽을 수 있으며, 90일 보관되고, 페어링을 해제하면 삭제됩니다. 오디오나 영상은 절대 아닙니다. |
| Push notifications | Carry no text; the phone decrypts locally |
| Safety Mode | Yes — her phone sends neutral substitute data instead of her real status. Your app shows no indicator, though the flag itself is in the snapshot. |
| Forward secrecy | No — one key per pairing |
| Open source | No |
| Independent audit | Not yet |
How pairing works
No phone number. No email. No account. In the same room, she shows a QR code and you scan it. Apart, she sends you a 6-character code or a link. Either way both phones exchange public keys, derive the same secret, and show a 6-digit verification code so the two of you can confirm no one sat in the middle.
She taps “Pair with partner” in PinkyBloom
Her phone generates a Curve25519 key pair (Apple CryptoKit on iPhone, Google Tink on Android)
She shows a QR code, or sends you a 6-character code or link if you are apart
You scan or enter it in PinkyBond, and your phone generates its own key pair
Your public key travels back to her the same way; both phones now hold both public keys
Each phone runs ECDH and HKDF-SHA256 to derive the same shared secret — nothing secret crosses the network
The shared secret is stored in the iOS Keychain or the Android Keystore
A 6-digit verification code appears on both phones; if they match, no one sat in the middle
The Blind Relay
저희 서버는 봉인된 봉투를 위한 사서함입니다. 상대방 폰이 가져갈 때까지만 암호문을 보관하고 그 즉시 삭제합니다 — 그 폰이 오프라인 상태라면 최대 30일 후에. 서버는 키를 절대 갖지 않습니다. 푸시 알림에는 텍스트가 없으며, 폰이 로컬에서 복호화합니다.
PinkyBloom
Encrypts on her phone
Blind Relay
전달될 때까지 암호문을 보관, 최대 30일
Cannot decrypt
PinkyBond
Decrypts on your phone
메시지, 파일, 통화에 대해 저희 서버가 저장하는 모든 것:
pairingId
Identifier for the pairing; not a name, number or email
senderRole
Which app sent it: PinkyBloom or PinkyBond
messageType
어떤 종류의 봉투인지 — 예를 들어 채팅 메시지, 상태 스냅샷, 수신 확인, 통화 설정 — 그 안에 무엇이 있는지는 절대 아닙니다
timestamp
When it was sent
ciphertext
AES-256-GCM blob we cannot open; its length is the only thing we can measure
retention
상대방 폰이 수신하는 즉시 삭제; 오프라인 상태라면 최대 30일
relayReceipts
전달 후에는 내용 없는 기록만: 어떤 메시지였는지, 전달되었는지 만료되었는지. 발신자의 폰이 '전달되지 않음'을 표시할 수 있도록 30일간 보관
mediaObjects
사진, 음성 메모, 동영상, 최대 2 GB의 파일을, 암호화된 메시지 안에서만 전달되는 파일별 새 키로 암호문 상태로 Cloudflare R2에 저장합니다. 파트너의 폰이 다운로드하면 삭제됩니다; 최대 30일
callLog
두 폰 중 어느 쪽이 걸었는지, 언제, 음성인지 영상인지, 응답·부재중·거절 여부, 통화 시간. 저희 서버가 읽을 수 있습니다 — 꺼져 있던 폰이 부재중 전화를 알 수 있는 방법이 바로 이것입니다. 90일 보관되며, 페어링을 해제하면 삭제됩니다. 오디오나 영상은 절대 아닙니다
Calls
Voice and video are peer-to-peer WebRTC with DTLS-SRTP and fresh keys for every call. The call setup rides the encrypted relay like any message. Before media flows, your phone checks the peer's DTLS fingerprint against a key derived from the pairing secret; a failed check aborts the call.
네트워크가 직접 경로를 막으면, 릴레이가 읽을 수 없는 패킷을 전달합니다. 어떤 미디어 서버도 통화를 듣지 않으며, 어떤 통화도 녹음되지 않습니다. iPhone과 Android 간에도 작동합니다. 저희 서버가 보관하는 것은 통화 기록입니다 — 어느 폰이 걸었는지, 언제, 음성인지 영상인지, 결과와 통화 시간 — 90일간, 폰이 꺼져 있던 파트너도 부재중 전화를 보도록. 자세한 내용은 다음에서 /calls.
Safety Mode
Encryption protects her data from outsiders and from us. Safety Mode is for the case where the person on the other end is the concern. She can pause sharing at any time, and he is never notified. She can also turn on Safety Mode, which substitutes neutral data he cannot distinguish from a real update.
When Safety Mode is active, the partner sees:
Phase
“Follicular”
Mood
“Good”
Energy
3 (Moderate)
The neutral data is encrypted and sent through the normal relay, so it looks the same as a real update in transit and on his screen.
