Closed Beta — Invite Only

Trust math. Not corporations.

Private messaging,
secured by mathematics.

Keylane is an end-to-end encrypted, post-quantum ready, federated messenger. No phone number. No central database. Just a cryptographic identity that belongs to you.

Already have an invite? Download for iOS or Android.

No trackers on this site. No analytics. No third-party fonts or scripts.
Keylane chat list on iPhone

Secure doesn't have to mean sparse.

A messenger you'd actually want to use every day — with the encryption guarantees you can't see, and the polish you can.

Keylane conversation list
Conversations
Keylane in-app camera and media capture
Rich media
Keylane privacy screen blur
Privacy screen
Keylane contacts and presence, showing invite requests and pending connections
Contacts & presence

Built so we can't give up what we don't have.

Most secure messengers still collect metadata — who you talk to, when, and from where. Here's what Keylane minimizes, item by item.

01

No identity required

Your account is a random cryptographic identity generated on your device — not a phone number or email address. We never ask, so we never know.

02

Zero-knowledge relay

Servers hold encrypted envelopes, not conversations. Our database doesn't record who sent a message. Undelivered messages are purged after 14 days at the latest.

03

Post-quantum end-to-end encryption

Every message is protected by a hybrid handshake — classical X25519 combined with post-quantum ML-KEM — so today's ciphertext stays safe against tomorrow's quantum computers.

04

Seamless multi-device sync

Link your phone, tablet, and desktop to one cryptographic identity. Encrypted payloads fan out natively to every linked device — no central account database required.

05

Federated by design

Keylane instances talk to each other. Message someone on a completely different self-hosted server, without either instance needing to trust the other with your data.

How a message actually travels

Encryption happens before anything leaves your device. The server only ever sees a sealed envelope.

1

Sender's device

Message is encrypted locally with a key only the recipient can derive.

2

Sealed envelope

Ciphertext and a destination device ID — nothing else — cross the wire.

3

Blind relay

The server routes the envelope without the keys needed to open it.

4

Recipient's device

Only the recipient's device holds the key to decrypt it, locally.

Own your infrastructure.

Keylane's public network is free. For teams, law firms, and organizations that want their own relay, we're building managed hosting, an on-premises Docker image, and a plug-and-play Raspberry Pi appliance.

Don't take our word for it.

Security through obscurity doesn't work. Here's exactly where things stand.

Open-core today
Kodium, our cryptographic core, is public under GPLv3. The full client application source will be released at public launch.
Independent audit planned
We intend to commission a third-party security audit ahead of public launch and publish the results in full.
Documented cryptography
Every primitive and protocol decision is written up in our whitepaper — not just asserted on a landing page.
How we make money
You pay for optional infrastructure and convenience — dedicated servers, business features. Never for privacy, and never with your data.

Frequently asked questions

How is Keylane different from Signal or Matrix?

Signal ties identity to a phone number and runs a centralized network. Matrix is federated but carries years of protocol and database overhead. Keylane borrows the best ideas from both — phone-number-free identity and federation — while staying zero-knowledge, RAM-first, and post-quantum ready from day one.

Why is Keylane in closed beta?

We're refining the post-quantum cryptographic core and network infrastructure with a small group of testers before opening it up. Public beta and app store availability will follow.

If it's free, how does Keylane make money?

The app and public network are free for everyone. Revenue comes from optional paid infrastructure: managed private servers, on-premises deployments, and business features. We never charge for privacy or security, and we never monetize your data.

What can the server actually see?

The server sees an encrypted envelope and a destination device ID. It does not see message content, and it does not record who sent a message. Undelivered envelopes are purged after 14 days at the latest. Details are in the whitepaper.

When will the full client be open source?

Kodium, the cryptographic core, is already public under GPLv3. The full application source will be published at public launch.

What does "federated" mean for me?

You can message people on other Keylane servers — including self-hosted ones — the same way email works across providers. No single company or server operator can lock you in.