Protocol

How Miuchio's encryption works, exactly.

These pages are for developers and anyone who wants the details, mostly about the parts I designed myself and why. New to the terms? Start with the Glossary. For the plain version, read How it works.

  1. 00GlossaryEvery term these pages use, defined once.
  2. 01Protocol overviewWhat Miuchio protects, which parts are standard, which parts I designed, and the order to read the rest.
  3. 02Identity and key deliveryThe keys on each phone, how Miuchio's handshake differs from X3DH, and the format of a delivered album key.
  4. 03Albums and epochsMiuchio's own rules for epochs, signed epoch changes, inviting with history, and removal.
  5. 04Metadata and the social graphNo stored email, a separate token in every album, a locked link between accounts and albums, rounded times, and what a copy can still link.
  6. 05Photos, names and avatarsCleaning a photo, per photo keys, the upload gates, and everything else sealed under an album key.
  7. 06Trust and verificationTwo kinds of pins, the signer check, safety numbers, and what first contact cannot prove.
  8. 07What Miuchio does not protectKnown limits, open work, and what the server can still see.