Cryptographic Core

End-to-End Encryption. No Backdoors.

Every 1-on-1 message, voice call, and video chat is encrypted directly on your device. Decryption keys never touch our servers, and messages are erased the moment they are delivered.

The Truth About Secure Messaging

If an app promises security but keeps backups on a commercial cloud server, forces you to link a traceable phone number, or maintains master keys, your private conversations remain at risk.

UTurn takes a zero-compromise approach. Your cryptographic keys are generated and stored exclusively on your physical phone, refresh continuously as you chat, and delete old states so past communications cannot be decrypted.

  • Device-Level Isolation: Messages and call streams are encrypted before leaving your device. Our relays handle only unreadable ciphertext.
  • Forward Secrecy: Because encryption keys rotate with each message, compromising an isolated transmission reveals nothing about previous or future conversations.

The Life of a Message

From the moment you start a conversation to delivery on your contact's screen, your data is protected by continuous, client-side encryption locks.

How Your Privacy is Protected

A step-by-step breakdown of the safeguards protecting 1-on-1 communication.

1. Creating Your Security Keys

When you set up UTurn, your phone generates unique cryptographic key pairs locally. Your account identity is tied to an email address and random UTurn ID—never your phone number or SIM card.

2. The Private Introduction

When messaging someone for the first time, devices perform a mutual cryptographic handshake. Our servers coordinate the initial exchange without holding the keys required to decode it.

3. Continuous Key Rotation

Every message sent or received advances the conversation's encryption state. A single-use key encrypts each individual message, ensuring the channel is continuously updating.

4. Erasing Used Keys

As new keys are derived, previous ephemeral keys are permanently deleted from device storage. Old states cannot be recovered to decipher future conversations.

Our Security Standard

Zero Backdoors, Zero Master Keys

We design our architecture so that we cannot decrypt your conversations even if compelled to do so. Encryption keys exist only on the user's physical device.

Our servers do not possess escrow keys, master recovery passwords, or administrative inspection privileges for 1-on-1 communication.

Architectural Protection.
Zero Master Keys.

Real digital safety means eliminating the single points of failure that attackers target. Because our servers never hold your private keys, there is no central database to breach.

Explore our sovereign server infrastructure