Protocol
How Miuchio's encryption works, exactly.
These pages are for developers and anyone who wants the details, mostly about the parts I designed myself and why. New to the terms? Start with the Glossary. For the plain version, read How it works.
- 00GlossaryEvery term these pages use, defined once.
- 01Protocol overviewWhat Miuchio protects, which parts are standard, which parts I designed, and the order to read the rest.
- 02Identity and key deliveryThe keys on each phone, how Miuchio's handshake differs from X3DH, and the format of a delivered album key.
- 03Albums and epochsMiuchio's own rules for epochs, signed epoch changes, inviting with history, and removal.
- 04Metadata and the social graphNo stored email, a separate token in every album, a locked link between accounts and albums, rounded times, and what a copy can still link.
- 05Photos, names and avatarsCleaning a photo, per photo keys, the upload gates, and everything else sealed under an album key.
- 06Trust and verificationTwo kinds of pins, the signer check, safety numbers, and what first contact cannot prove.
- 07What Miuchio does not protectKnown limits, open work, and what the server can still see.