QSafeChat Privacy Policy
Effective date: 24 August 2026 · Türkçe aşağıda
QSafeChat is a post-quantum end-to-end encrypted messenger. It is built so that we — the people who run the service — can read as little about you as technically possible. This page describes, in plain language, exactly what our servers can and cannot see. It matches how the app actually works; nothing here is aspirational.
What we cannot see
- Your direct messages, photos, videos, voice notes and statuses. They are end-to-end encrypted on your device using post-quantum cryptography (a PQXDH key agreement with the NIST-standardized ML-KEM algorithm, plus a Double Ratchet). Our servers store and forward only sealed envelopes they cannot decrypt.
- Your calls. Call audio and video are encrypted frame-by-frame on your device with a key derived from your encrypted session. The relay server that routes call media carries ciphertext it cannot decode.
- Your contact list. It is stored encrypted on your device only. We never upload your address book.
- Your local data at rest. Everything the app keeps on your phone (messages, keys, contacts, your PIN) lives in an encrypted vault.
What our servers do store
- Your account: a random user ID created when you enroll, the @handle you chose, and the public keys other users need to message you securely. Handles are meant to be discoverable — that is how people find you.
- Sealed message envelopes awaiting delivery, and routing metadata needed to deliver them: sender and recipient IDs, timestamps and delivery state. We do not run analytics over this data.
- A push notification token for your device, so Apple's or Google's push service can wake the app when a message or call arrives.
One honest limitation
Group chats are not yet end-to-end encrypted. Group messages are protected in transit with TLS, but group end-to-end encryption is still in development. The app labels this truthfully wherever it applies — a direct message and a group message show different encryption states. We will update this policy when group E2EE ships.
Phone number
During sign-up the app asks for a phone number to send a verification code. The number is used transiently for that check only: it is never stored on our servers, never stored on the device after verification, and never made searchable. (QSafeChat is currently in pre-release; the verification step presently runs in a test mode.)
What we don't do
- No advertising, no ad networks.
- No trackers and no third-party analytics SDKs.
- No selling or sharing of data with data brokers — we have nothing readable to sell.
- No profiling. We do not build interest or behavior profiles.
Link previews
If you type a web link into a message, the app can fetch a small preview of that page. That fetch goes from your device to the website you typed — the site sees a normal page request from you. You can turn link previews off in Settings → Privacy.
Where your data lives
The QSafeChat backend is self-hosted infrastructure operated by us — there is no third-party messaging cloud behind it. The only third parties involved are Apple and Google push services (which carry wake-up notifications, not message content).
Deleting your account
Settings → Delete all data erases your identity end-to-end: it deletes your account on our servers (your keys, your @handle claim, your mailbox of pending envelopes) and wipes everything stored on the device. This happens immediately and cannot be undone. Copies of messages you already sent remain on your recipients' devices, as with any messenger.
Changes and contact
If this policy changes, the new version will be published at this address with a new effective date. Questions or requests: mgolcu00@gmail.com.
QSafeChat Gizlilik Politikası
Yürürlük tarihi: 24 Ağustos 2026
QSafeChat, kuantum sonrası uçtan uca şifreli bir mesajlaşma uygulamasıdır. Servisi işleten bizlerin sizin hakkınızda teknik olarak mümkün olan en az şeyi görebilmesi için tasarlandı. Bu sayfa, sunucularımızın neyi görüp neyi göremediğini olduğu gibi anlatır; uygulamanın gerçek çalışma biçimiyle birebir örtüşür.
Göremediklerimiz
- Birebir mesajlarınız, fotoğraf, video, sesli mesaj ve durumlarınız. Bunlar cihazınızda kuantum sonrası kriptografiyle (NIST standardı ML-KEM ile PQXDH anahtar anlaşması + Double Ratchet) uçtan uca şifrelenir. Sunucularımız yalnızca açamadıkları mühürlü zarfları saklar ve iletir.
- Aramalarınız. Arama sesi ve görüntüsü, şifreli oturumunuzdan türetilen bir anahtarla cihazınızda kare kare şifrelenir. Arama medyasını yönlendiren aktarma sunucusu, çözemediği şifreli veriyi taşır.
- Kişi listeniz. Yalnızca cihazınızda, şifreli olarak durur. Rehberinizi asla yüklemeyiz.
- Cihazdaki verileriniz. Uygulamanın telefonunuzda tuttuğu her şey (mesajlar, anahtarlar, kişiler, PIN) şifreli bir kasada saklanır.
Sunucularımızın sakladıkları
- Hesabınız: kayıt sırasında üretilen rastgele bir kullanıcı kimliği, seçtiğiniz @kullanıcıadı ve başkalarının size güvenle yazabilmesi için gereken açık anahtarlarınız. Kullanıcı adları bulunabilir olmak için vardır — insanlar sizi böyle bulur.
- Teslim bekleyen mühürlü mesaj zarfları ve teslim için gereken yönlendirme üstverisi: gönderen/alıcı kimlikleri, zaman damgaları ve teslim durumu. Bu veriler üzerinde analiz çalıştırmayız.
- Bildirim jetonu: mesaj veya arama geldiğinde Apple/Google bildirim servisi uygulamayı uyandırabilsin diye.
Dürüst bir sınır
Grup sohbetleri henüz uçtan uca şifreli değildir. Grup mesajları aktarım sırasında TLS ile korunur; grup uçtan uca şifrelemesi geliştirme aşamasındadır. Uygulama bunu her yerde dürüstçe etiketler. Grup E2EE yayınlandığında bu politika güncellenecektir.
Telefon numarası
Kayıt sırasında doğrulama kodu göndermek için telefon numaranız istenir. Numara yalnızca bu kontrol için geçici olarak kullanılır: sunucularımızda saklanmaz, doğrulamadan sonra cihazda tutulmaz ve aranabilir hale getirilmez. (QSafeChat şu an ön sürüm aşamasındadır; doğrulama adımı henüz test modunda çalışmaktadır.)
Yapmadıklarımız
- Reklam yok, reklam ağı yok.
- Takipçi (tracker) ve üçüncü taraf analitik SDK'sı yok.
- Veri satışı/paylaşımı yok — satılabilir okunabilir bir veri zaten yok.
- Profilleme yok.
Bağlantı önizlemeleri
Bir mesaja web bağlantısı yazarsanız uygulama o sayfanın küçük bir önizlemesini çekebilir. Bu istek cihazınızdan yazdığınız siteye gider. Önizlemeleri Ayarlar → Gizlilik'ten kapatabilirsiniz.
Verinizin bulunduğu yer
QSafeChat arka ucu, kendi işlettiğimiz sunucularda çalışır — arkasında üçüncü taraf bir mesajlaşma bulutu yoktur. Sürece dahil olan tek üçüncü taraflar Apple ve Google bildirim servisleridir (mesaj içeriğini değil, uyandırma bildirimini taşırlar).
Hesabınızı silmek
Ayarlar → Tüm verileri sil, kimliğinizi uçtan uca siler: sunucularımızdaki hesabınızı (anahtarlarınız, @kullanıcıadı kaydınız, bekleyen zarf kutunuz) ve cihazdaki her şeyi kaldırır. Bu işlem anında gerçekleşir ve geri alınamaz. Gönderdiğiniz mesajların alıcılardaki kopyaları, her mesajlaşma uygulamasında olduğu gibi onların cihazlarında kalır.
Değişiklikler ve iletişim
Bu politika değişirse yeni sürümü yeni yürürlük tarihiyle bu adreste yayımlanır. Sorularınız için: mgolcu00@gmail.com