End-to-End Encryption. No Backdoors.
Every 1-on-1 message, voice call, and video chat is encrypted directly on your device. Decryption keys never touch our servers, and messages are erased the moment they are delivered.
The Truth About Secure Messaging
If an app promises security but keeps backups on a commercial cloud server, forces you to link a traceable phone number, or maintains master keys, your private conversations remain at risk.
UTurn takes a zero-compromise approach. Your cryptographic keys are generated and stored exclusively on your physical phone, refresh continuously as you chat, and delete old states so past communications cannot be decrypted.
-
Device-Level Isolation: Messages and call streams are encrypted before leaving your device. Our relays handle only unreadable ciphertext.
-
Forward Secrecy: Because encryption keys rotate with each message, compromising an isolated transmission reveals nothing about previous or future conversations.
The Life of a Message
From the moment you start a conversation to delivery on your contact's screen, your data is protected by continuous, client-side encryption locks.
How Your Privacy is Protected
A step-by-step breakdown of the safeguards protecting 1-on-1 communication.
1. Creating Your Security Keys
When you set up UTurn, your phone generates unique cryptographic key pairs locally. Your account identity is tied to an email address and random UTurn ID—never your phone number or SIM card.
2. The Private Introduction
When messaging someone for the first time, devices perform a mutual cryptographic handshake. Our servers coordinate the initial exchange without holding the keys required to decode it.
3. Continuous Key Rotation
Every message sent or received advances the conversation's encryption state. A single-use key encrypts each individual message, ensuring the channel is continuously updating.
4. Erasing Used Keys
As new keys are derived, previous ephemeral keys are permanently deleted from device storage. Old states cannot be recovered to decipher future conversations.
Zero Backdoors, Zero Master Keys
We design our architecture so that we cannot decrypt your conversations even if compelled to do so. Encryption keys exist only on the user's physical device.
Our servers do not possess escrow keys, master recovery passwords, or administrative inspection privileges for 1-on-1 communication.
Architectural Protection.
Zero Master Keys.
Real digital safety means eliminating the single points of failure that attackers target. Because our servers never hold your private keys, there is no central database to breach.
Explore our sovereign server infrastructure