Предефинирана поверителност

Първото чат приложение
без потребителски идентификатори

Другите приложения имат потребителски идентификатори: Signal, Matrix, Session, Briar, Jami, Cwtch и др.
SimpleX няма, дори и случайни числа.
Това драстично подобрява вашата поверителност.

Защо потребителските идентификатори са лоши за поверителността? Как работи SimpleX? Оценки на сигурността

Осъществяване на частна връзка

Видеото показва как се свързвате с приятеля си чрез неговия еднократен QR-код лично или чрез видео връзка. Можете също да се свържете, като споделите покана за връзка.

Why privacy matters

Preserving the privacy of your metadata — who you talk with — protects you from:

Advertising and price discrimination

Privacy saves you money

Manipulation of elections

Privacy gives you power

Prosecution due to innocent association

Privacy protects your freedom

Make sure your messenger can't access your data!

Why SimpleX is unique

#1

You have complete privacy

SimpleX protects the privacy of your profile, contacts and metadata, hiding it from SimpleX network servers and any observers.

Unlike any other existing messaging network, SimpleX has no identifiers assigned to the users — not even random numbers.

Learn more

#2

You are protected
from spam and abuse

Because you have no identifier or fixed address on the SimpleX network, nobody can contact you unless you share a one-time or temporary user address, as a QR code or a link.

Learn more

#3

You control your data

SimpleX stores all user data on client devices in a portable encrypted database format — it can be transferred to another device.

The end-to-end encrypted messages are held temporarily on SimpleX relay servers until received, then they are permanently deleted.

Learn more

#4

You own SimpleX network

The SimpleX network is fully decentralised and independent of any crypto-currency or any other network, other than the Internet.

You can use SimpleX with your own servers or with the servers provided by us — and still connect to any user.

Learn more

Характеристика

E2E-криптирани съобщения с markdown форматиране и редактиране

E2E-криптирани
изображения, видеоклипове и файлове

E2E-криптирани децентрализирани групи — известни само на потребителите

E2E-криптирани гласови съобщения

Изчезващи съобщения

E2E-криптиран
аудио и видео разговори

Преносима криптирана база данни mdash; Можете да преместите профила на друго устройство

Режим инкогнито —
уникален за SimpleX чат

What makes SimpleX private

Временни анонимни двойки идентификатори

SimpleX uses temporary anonymous pairwise addresses and credentials for each user contact or group member.

It allows messages to be delivered without user profile identifiers, providing better meta-data privacy than alternatives.

Tap to close

Външен носител за
обмен на ключове

Many communication networks are vulnerable to MITM attacks by servers or network providers.

За да го предотврати SimpleX, приложенията препращат еднократни ключове през външен носител, когато се споделя адрес като линк или QR код.

Tap to close

2 слоя на криптиране от край до край

Double-ratchet protocol —
OTR messaging with perfect forward secrecy and break-in recovery.

NaCL cryptobox in each queue to prevent traffic correlation between message queues if TLS is compromised.

Tap to close

Проверка на
целостта на съобщението

To guarantee integrity the messages are sequentially numbered and include the hash of the previous message.

If any message is added, removed or changed the recipient will be alerted.

Tap to close

Допълнителен слой на
криптиране на сървъра

Additional layer of server encryption for delivery to the recipient, to prevent the correlation between received and sent server traffic if TLS is compromised.

Tap to close

Смесване на съобщения
за намаляване на корелацията

SimpleX servers act as low latency mix nodes — the incoming and outgoing messages have different order.

Tap to close

Сигурен идентифициран
TLS транспорт

Only TLS 1.2/1.3 with strong algorithms is used for client-server connections.

Server fingerprint and channel binding prevent MITM and replay attacks.

Connection resumption is disabled to prevent session attacks.

Tap to close

Възможен
достъп чрез TOR

To protect your IP address you can access the servers via Tor or some other transport overlay network.

To use SimpleX via Tor please install Orbot app and enable SOCKS5 proxy (or VPN on iOS).

Tap to close

Еднопосочни
опашки за съобщенията

Each message queue passes messages in one direction, with the different send and receive addresses.

It reduces the attack vectors, compared with traditional message brokers, and available meta-data.

Tap to close

Множество слоеве
допълнение на съдържание

SimpleX uses content padding for each encryption layer to frustrate message size attacks.

It makes messages of different sizes look the same to the servers and network observers.

Tap to close

SimpleX Network

SimpleX Chat provides the best privacy by combining the advantages of P2P and federated networks.

Unlike P2P networks

All messages are sent via the servers, both providing better metadata privacy and reliable asynchronous message delivery, while avoiding many problems of P2P networks.

Unlike federated networks

SimpleX relay servers do NOT store user profiles, contacts and delivered messages, do NOT connect to each other, and there is NO servers directory.

SimpleX network

servers provide unidirectional queues to connect the users, but they have no visibility of the network connection graph — only the users do.

Обяснението на SimpleX

1. Какъв опит като потребител

Можете да създавате контакти и групи и да провеждате двупосочни разговори, както във всеки друго чат приложение.

Как може да работи с еднопосочни опашки и без идентификатори на потребителски профили?

2. Как работи

За всяка връзка използвате две отделни опашки за съобщения, за да изпращате и получавате съобщения през различни сървъри.

Сървърите предават съобщения само еднопосочно, без да имат пълната картина от разговорите или връзките на потребителя.

3. Какво виждат сървърите

Сървърите имат отделни анонимни идентификационни данни за всяка опашка и нямат информация на кои потребители принадлежат.

Потребителите могат допълнително да подобрят поверителността на метаданните, като използват Tor за достъп до сървъри, предотвратявайки корелация по IP адрес.

Comparison with other protocols

simplex logo Signal, big platforms XMPP, Matrix P2P protocols
Requires global identity No - private Да 1 Да 2 Да 3
Possibility of MITM No - secure 4 Да 5 Да Да
Dependence on DNS No - resilient Да Да Не
Single or centralized network No - decentralized Да No - federated 6 Да 7
Central component or other network-wide attack No - resilient Да Да 2 Да 8

  1. Usually based on a phone number, in some cases on usernames
  2. DNS-based addresses
  3. Public key or some other globally unique ID
  4. SimpleX релетата не могат да компрометират E2E криптирането. Проверете кода за сигурност, за да предотвратите атаката по външен носител
  5. If operator's servers are compromised. Verify security code in Signal and some other apps to mitigate it
  6. Does not protect users' metadata privacy
  7. While P2P are distributed, they are not federated — they operate as a single network
  8. P2P networks either have a central authority or the whole network can be compromised - see here

Join SimpleX

We invite you to join the conversation

Sign up to receive our updates


Get SimpleX desktop app

Blockchain

In a wide sense, blockchain means a sequence of blocks of data, where each block contains a cryptographic hash of the previous block, thus providing integrity to the whole chain. Blockchains are used in many communication and information storage systems to provide integrity and immutability of the data. For example, BluRay disks use blockchain. SimpleX messaging queues also use blockchain - each message includes the hash of the previous message, to ensure the integrity – if any message is modified it will be detected by the recipient when the next message is received. Blockchains are a subset of Merkle directed acyclic graphs.

Break-in recovery

The quality of the end-to-end encryption scheme allowing to recover security against a passive attacker who observes encrypted messages after compromising one (or both) of the parties. Also known as recovery from compromise or break-in recovery. Double-ratchet algorithm has this quality.

Centralized network

Centralized networks are provided or controlled by a single entity. The examples are Threema, Signal, WhatsApp and Telegram. The advantage of that design is that the provider can innovate faster, and has a centralized approach to security. But the disadvantage is that the provider can change or discontinue the service, and leak, sell or disclose in some other way all users' data, including who they are connected with.

Content padding

Also known as content padding, it is the process of adding data to the beginning or the end of a message prior to encryption. Padding conceals the actual message size from any eavesdroppers. SimpleX has several encryption layers, and prior to each encryption the content is padded to a fixed size.

End-to-end encryption

A communication system where only the communicating parties can read the messages. It is designed to protect message content from any potential eavesdroppers – telecom and Internet providers, malicious actors, and also the provider of the communication service.

Forward secrecy

Also known as perfect forward secrecy, it is a feature of a key agreement protocol that ensures that session keys will not be compromised even if long-term secrets used in the session key exchange are compromised. Forward secrecy protects past sessions against future compromises of session or long-term keys.

Overlay network

Nodes in the overlay network can be thought of as being connected by virtual or logical links, each of which corresponds to a path, perhaps through many physical links, in the underlying network. Tor, for example, is an overlay network on top of IP network, which in its turn is also an overlay network over some underlying physical network.