✦ Frequently asked questions ✦

Own your privacy. Know how it works.

Straight answers about how Chryptor helps you protect what you type, save, and send. No cloud. No backdoors. No hidden access.

Chryptor encrypts your selected data before other apps can see it.

Write, encrypt, send, and store sensitive information locally on your phone. Your normal apps can still deliver the content — but they do not get the readable version.

Use any app. Trust none of them.

FAQ Control Panel
[ACTIVE: BASICS]

Basics

What is Chryptor?

Chryptor is an offline keyboard that encrypts what you write before the app you are writing in can see it.

It is the easiest way to protect your sensitive information before it reaches the cloud, apps, or anyone else.

Its main job is messaging. You keep WhatsApp, Signal, Telegram, Gmail and SMS, and you keep the chats, groups and contacts you already have. You type your message into Chryptor, Chryptor encrypts it, and the messaging app carries it without being able to read it.

The same encryption also works on whole files, and stores your private ones in a vault on the phone.

  • Use any app.
  • Trust none of them.
Is Chryptor a messaging app?

No. It does not replace WhatsApp, Signal, Telegram, Gmail or SMS.

A secure messenger only works if you can get the other person to switch to it. Most people cannot move their family, their clients or their sources off WhatsApp, so the encryption never gets used.

Chryptor does not ask anyone to switch. It encrypts your message inside your keyboard and hands the encrypted result to the app you were already using. Your contacts, your group chats and your history stay where they are.

  • The app still delivers it.
  • It just cannot read it.
Is Chryptor cloud storage?

No.

Chryptor is not a cloud drive, backup service, or online vault. It is designed around local encryption and private storage on your device.

Who is Chryptor for?

Chryptor is for anyone who has private things on their phone.

Notes. Photos. Documents. IDs. Contracts. Wallet recovery notes. Voice recordings. Business ideas. Family information. Messages that are meant for one person, not a platform.

You do not need to be doing anything wrong to want privacy.

Which phones does Chryptor run on?

Android 10 and newer.

How it works

How does Chryptor work?

Three tools. The first one is the main feature:

  1. An encrypting keyboard. It becomes your keyboard, adds its own message box above the keys, and encrypts what you type before the app underneath, such as WhatsApp, Telegram, your email, or SMS, receives a single character. This is the free core of Chryptor.
  2. A local encryption engine. The same encryption, applied to whole files: documents, photos, videos, recordings, anything.
  3. A private vault. Encrypted storage on the phone, for files you do not want sitting in your gallery or your file manager.

All three run entirely on your phone. None of them can reach the internet.

Why does Chryptor have an offline keyboard?

Because privacy can break before you press send. Most standard keyboards are connected to the internet and usage details can be sent outside of your device, for example metadata or keylogging.

Sensitive text often starts earlier: while typing, drafting, editing, copying, or thinking. Chryptor’s offline keyboard and textbox are designed for writing private text without telemetry, learning, syncing, or keylogging.

  • No telemetry.
  • No learning.
  • No syncing.
  • No keylogging.
Can I still use my normal apps?

Yes. That is the point.

Chryptor is designed so you can keep using your preferred messaging, email, storage, and sharing apps. The difference is that sensitive content is encrypted before those apps receive it.

  • They can carry it.
  • They cannot read it.
Can I encrypt files too, or only text?

You can encrypt text and files.

That includes documents, photos, videos, notes, recordings, IDs, scans, and other sensitive files.

Privacy & trust

Does Chryptor use the internet?

No. Chryptor will never access the internet, because it does not have the ability to do so.

This is not a policy or a promise. An Android app has to declare up front that it wants network access. Chryptor does not declare it, so Android refuses to open a connection for it. There is no setting to flip and no hidden code path. An update could not switch it on without the permission appearing on the app’s public permission list.

An app that cannot reach the network cannot send, sync, leak, analyse or monetise anything.

You can check this yourself. See Verify it yourself.

Can Chryptor read my files or messages?

No.

Chryptor needs no servers and is designed so encryption happens on your device. Chryptor has no cloud account, and no internet permission in the app.

If we do not have your data, we cannot sell it, scan it, train on it, lose it, or hand it over.

Why do you say “Use any app. Trust none of them”?

Because trust is fragile.

Apps change policies. Companies get breached. Cloud systems sync more than people realize. AI features process more personal data over time.

Chryptor’s approach is different: encrypt before any app sees the content. The app can still carry your message, but it does not receive the readable version. That is why you do not need to trust it with the content, it is unreadable in the first place.

Does Chryptor collect metadata?

Chryptor is designed to avoid account-based tracking and cloud dependency. No account requirement. No email requirement. No phone number requirement.

Important: platforms you use to send encrypted content may still create their own metadata, such as who you contacted, when, and through which app. Chryptor encrypts the content, not every trace created by third-party platforms.

Verify it yourself

A keyboard can see everything I type. How can I trust yours?

You should not have to trust us. You can check.

Android warns that any keyboard can collect everything you type, including passwords. That warning is correct. What matters is whether a keyboard is able to do anything with what it sees.

Chryptor has no internet permission. The app never requests it, so Android will not let it open a network connection. There is nowhere for your keystrokes to go.

  • No telemetry.
  • No cloud sync.
  • No typing history, no learned words.
  • No network connection, enforced by the operating system.

You can confirm this yourself in about thirty seconds. See the next question.

How can I check that Chryptor never phones home?

Three ways, none of which require taking our word for anything:

  1. Read the full permission list. On Chryptor’s store listing, open “App permissions” and tap See more. On the phone: Settings, Apps, Chryptor, Permissions, then the three-dot menu, then All permissions. Any app that can reach the network has to declare it, and it appears in that list as “have full network access”. Chryptor has no such line.
  2. Use it in airplane mode. Writing, encrypting, decrypting, backups: all of it works with the radios off. Nothing in Chryptor needs a connection.
  3. Watch the traffic. Point a firewall or network monitor at it such as NetGuard, RethinkDNS, or anything similar. Chryptor never shows up in the traffic log, because it cannot produce any traffic to log.

This is enforced by Android, not by our good intentions. An app that does not hold the internet permission cannot open a connection, no matter what its code tries to do.

Why not the ordinary Permissions screen? That screen only lists the permissions Android asks you to approve, such as camera or location. Network access is not one of them: it is granted at install time, so it never appears there for any app. Looking there and seeing nothing proves nothing. Use the full list above.

What permissions does Chryptor ask for?

Three, and only one of them is optional or sensitive:

  • Camera optional: only to scan a contact’s QR code. Decline it and you can paste the code as text instead. Chryptor opens the camera for nothing else.
  • Vibrate: key press feedback on the keyboard.
  • Fingerprint / biometric: to unlock the app with the screen lock you already use.

That is everything Chryptor asks of your phone. No internet. No location. No microphone. No contacts. No storage permission. No device identifiers.

If you read the manifest itself, you will find one more entry: an internal permission the Android support libraries add (DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION). Chryptor grants it only to itself. It stops other apps reaching Chryptor’s internal components. It gives access to nothing of yours.

Is content encrypted with Chryptor quantum-safe?

Chryptor can encrypt messages and files using encryption designed to resist future quantum-computer attacks on encrypted content. For most users, the simple version is this:

  • Post Quantum contacts give you post-quantum contact encryption when both people choose that contact type.
  • Shared passphrases are also designed to be post-quantum resistant, as long as the passphrase is strong.

Why it matters: someone could save encrypted messages today and try to decrypt them years later when technology improves. Post-Quantum encryption is designed to mitigate against that risk.

The honest limit: Post-quantum encryption seals the content of your messages and files. It does not hide metadata created by the app you use to send them, such as who you contacted, when, or through which platform.

Post Quantum contacts are an opt-in contact type built on ML-KEM-768, the post-quantum key encapsulation standard published by the United States National Institute of Standards and Technology. Chryptor combines this with classical X25519 encryption, so the message remains sealed if either the post-quantum or the classical layer holds. Please check our architecture page for more details.

Both people need to add each other as Post Quantum contacts for this mode to apply. Data encrypted with a strong shared passphrase, including messages, files, and backups, is also designed to be quantum-resistant because the complexity depends on the strength of the passphrase rather than on a classical public-key exchange.

Can I hide the fact that I sent an encrypted message at all?

Partly. Chryptor can disguise an encrypted message so the chat shows ordinary-looking text or a harmless quote, with the real message carried alongside it in invisible characters.

Read this carefully, because it is easy to over-trust. Disguising is concealment, not extra encryption. The encryption is exactly as strong either way, but the hiding itself is weak: anyone who inspects the raw text can spot the invisible characters and strip them out. It hides a message from someone glancing at your chat list. It will not hide it from someone who is analysing your messages.
Does Chryptor collect data, show ads, or contain trackers?

No.

No analytics, no advertising, no crash reports sent to us or to anyone else. No account, no email address, no phone number.

Chryptor does not even keep a record of its own crashes unless you ask it to. There is a diagnostics log, and it is off by default: until you switch it on in Settings, nothing is written down at all.

It exists for one situation, a bug you keep hitting. You turn the log on, reproduce the bug, and export the file to send to us. It holds no message content, it stays on your phone until you choose to send it, and with no internet permission there is no other route it could take. Turn it back off and it stops recording.

Did an AI develop this app?

No.

Chryptor was imagined, designed, architected, and directed by humans who wanted to challenge the direction of modern technology and the quiet normalization of spyware-like behavior in everyday software.

AI was used as a practical development assistant for repetitive implementation work, debugging, test coverage, visual assets, and tedious coding tasks.

The overall development, security model, architecture, logic, privacy rationale, product decisions, critical thinking, and final judgment were human-led.

Sending & receiving

How do I actually send an encrypted message?

You never leave the app you are already in. Say you are messaging someone on WhatsApp:

  1. Tap the WhatsApp message field as usual. Chryptor comes up as your keyboard, with its own message box sitting above the keys.
  2. Tap the target button and choose who it is for: a contact, or a shared passphrase.
  3. Type your message. It goes into Chryptor’s box, not WhatsApp’s.
  4. Press Chryptor’s SEND. It encrypts what you wrote and places the encrypted result into WhatsApp’s message field.
  5. Press WhatsApp’s own send button, exactly as you always do.

WhatsApp delivers it the way it delivers everything else. What it delivers is unreadable.

Does WhatsApp ever see what I actually typed?

No. Not one character.

When you type, your keystrokes do not go into WhatsApp’s message field. They go into Chryptor’s own message box, which belongs to Chryptor.

WhatsApp’s field stays empty the whole time you are writing. The only thing ever placed into it is the finished ciphertext, at the moment you press SEND. Your readable message never touches the app you send through, so there is nothing there for it to log, sync, back up, preview or scan.

If encryption fails, Chryptor puts nothing into the field. It cannot fall back to sending your message unencrypted, because the readable version never reaches the app at all.

How does the other person read it?

Three ways, and not one of them involves leaving the chat or pasting your message into some website.

  1. Long-press the message. Where the app uses Android’s own text menu, that menu now carries an extra entry: Decrypt with Chryptor. Tap it, unlock, read it.
  2. Copy it, then long-press Chryptor’s key beside the space bar. Plenty of apps put their own menu on a long-press rather than Android’s, so this is the route that always works. Copy the message however that app lets you, then hold down Chryptor’s key next to the space bar. Chryptor reads the clipboard, finds the encrypted message sitting in it, and opens it. If there is nothing encrypted on the clipboard, it simply tells you so and does nothing.
  3. Share it into Chryptor, for anyone who would rather use the share sheet.

Whichever route they take, Chryptor works out for itself who the message is from, and tells them whether the sender really is who they claim to be. It finds the encrypted message even when it is buried in a longer quoted reply, and even when it is disguised as ordinary text.

The decrypted message is shown inside Chryptor and nowhere else. It is never written back into the chat or anywhere less secure. Reading decrypted messages only in Chryptor ensures no other apps have access to the plaintext.

Do I have to type everything through Chryptor now?

No. Chryptor becomes your keyboard, but it is not always encrypting.

There is a dedicated key next to the space bar that puts the message box away. Tap it and Chryptor behaves like any ordinary keyboard: your keystrokes go straight into whatever app you are in, so you can search, fill in a form, or write a perfectly normal message. Tap it again to go back to encrypting. It stays wherever you left it.

Chryptor also does this automatically where it matters: on a PIN pad, a phone-number field or any other number-only field, it switches to plain typing on its own, so it cannot get in the way while you are unlocking your bank.

And if you would rather not change your keyboard at all, you do not have to. Chryptor’s Encrypt and Decrypt screen does the same job with copy and paste: write it there, encrypt it, copy it, paste it into any app. The keyboard is the fast path, not the only one.

Can I read my own sent messages?

Only if you switch that on. It is off by default.

When you encrypt a message for someone, it is encrypted to them, so you cannot read it either. Scroll back through your own chat history and you will find the encrypted block you sent, not the words you wrote.

If you want a readable copy, switch on “Keep a copy you can read” in Settings. Chryptor then attaches a second copy, encrypted to you, so your own sent messages open on your phone. It is off by default because it roughly doubles the size of every message.

Which apps can I send encrypted content through?

Any of them. WhatsApp, Signal, Telegram, Gmail, SMS, Facebook, Instagram, a forum post, a note to yourself: if it carries text or files, it can carry Chryptor.

The only limits are the delivery app’s, not Chryptor’s:

  • Encrypted text goes anywhere text goes, including SMS. Encrypting makes a message longer than what you typed, and a Post Quantum message much longer, so a long one can arrive as several SMS parts.
  • Encrypted files need an app that accepts attachments, so SMS is out, and every app has its own size cap. Gmail stops at 25 MB, WhatsApp around 2 GB. Chryptor itself puts no limit on file size, so for something very large, save the encrypted file and move it the way you would move any large file. It is encrypted either way.
How do I set up encryption with another person?

Two ways, and neither one involves an account, a server, or us.

  1. Exchange keys once. They show you their code as a QR, in person or on a video call, and you scan it. You can also exchange public key bundles as text via any platform, in case scanning QR is not possible. After that, encrypting to them is one tap, forever.
  2. Agree on a shared passphrase. No key exchange at all: you both type the same secret phrase. Useful for a small circle, since anyone who knows the phrase can read the message, which is exactly why it is not the default.

Both happen offline. Chryptor never uploads your key anywhere, because it cannot. You hand it over yourself.

Does the recipient also need Chryptor?

Yes. To read what you encrypted, they need Chryptor.

What they need from you depends on how you encrypted it:

  • Encrypted to them personally: you and they exchange keys once, and it is automatic from then on.
  • Encrypted with a shared passphrase: no key exchange at all. Anyone who knows the passphrase can read it.
  • No key.
  • No readable content.
  • That is the point.
Can I use Chryptor in a group chat?

Yes, using a shared passphrase.

Encrypting to a person is one-to-one: it is locked to their key, and only they can open it. For a group, you all agree on one secret phrase, out loud or on paper, and each of you saves it in Chryptor. From then on anyone in the circle can encrypt with it and everyone who knows it can read: one encrypted message, any number of readers. It works inside a WhatsApp group exactly as it does in a one-to-one chat.

The trade-off: a shared phrase is only as safe as the people who know it. Anyone holding it can read every message encrypted with it, and can write one too. To remove someone’s access, everyone has to change the phrase. This is why passphrase mode is a separate mode and not the default.
What if someone intercepts the message? What do they see?

Encrypted data. Not the original message, not the file contents, not the meaning.

This is also what anyone without Chryptor sees, including the messaging company: a block of scrambled characters, marked as a Chryptor message. It looks encrypted because it is.

If you do not want it to stand out, Chryptor can disguise it as ordinary text or a harmless quote. That hides the fact that you sent anything, but it is concealment, not extra encryption. Verify it yourself sets out how far it goes.

Vault & storage

What is the private vault?

The private vault is where you keep selected sensitive files encrypted on your phone.

It is for things you do not want sitting openly in normal app storage, galleries, previews, file managers, or cloud backups.

Does the vault replace my phone gallery?

No.

Your normal gallery remains your normal gallery. The vault is for selected private things that should not be visible or readable through normal phone browsing.

If I add a photo to the vault, does it disappear from my gallery?

No.

Adding a file to the vault creates an encrypted copy inside Chryptor. The original stays where it was, unencrypted, in your gallery or your file manager.

You have to delete the original yourself. Chryptor tells you this when you import. It does not delete your files for you, so a failed import can never destroy your only copy.

Are files in the vault encrypted at rest?

Yes. That is the point of the vault.

Can other apps see files in the vault?

The vault is designed to keep selected files separate from ordinary app storage and unreadable to other apps.

Keys, passwords & recovery

Can Chryptor recover my data if I lose my password or key?

No. And it should not be able to.

If Chryptor could recover your private data, that recovery path could become an access path for someone else.

Real privacy means real responsibility. You need to protect your own password, keys, and backups.

Why not offer account recovery?

Because account recovery usually means someone else has a way back into your data. That may be convenient, but it weakens the privacy model.

What happens if I delete Chryptor, or lose my phone?

Your keys live in your phone’s secure hardware, and they leave with the app. If you uninstall Chryptor, or lose the phone, without a backup, anything encrypted to you is gone. Not “difficult to recover”: gone. Nobody, ourselves included, can bring it back.

Chryptor reminds you to create backups regularly. When you choose to create a backup, Chryptor generates an encrypted backup file and saves it to a location you select. The app can also remind you when a backup is overdue, based on a schedule you define: every 30 days by default, a custom interval, or never if you prefer to manage backups yourself. Because backups are encrypted using your passphrases, you must initiate the backup process manually.

Restoring that file onto a new phone brings back your encryption keys, your contacts, your saved passphrases and your settings, and every message ever sent to you still opens. One thing does not come back: your signing key is sealed into the old phone’s hardware and can never leave it, so the new phone makes a fresh one. To re-establish your identity, you must share your new public key with your contacts. Until they verify it, you will appear as an unverified sender.

  • Privacy gives you control.
  • It also gives you responsibility.
Do I need a screen lock on my phone?

Yes, and you need to keep it. Chryptor ties your keys to the screen lock you already use such as PIN, pattern, password or fingerprint, rather than adding another password.

The trade-off: if you later remove your phone’s screen lock entirely, Android destroys the hardware-protected keys, and Chryptor’s data goes with them. The app warns you about this during setup. Another reason to keep a backup.

Limits

What can Chryptor not protect against?

Chryptor is powerful, but it is not magic. Cryptography is only one part of security. Chryptor can reduce exposure by encrypting content locally, but:

  • It cannot protect data after you decrypt it and paste it into another app in readable form.
  • It cannot stop someone from photographing your screen.
  • It cannot erase metadata created by third-party platforms.
  • It cannot protect against weak passphrases, every form of malware or a fully compromised device.
  • It cannot recover keys or passwords you lose.
  • It cannot un-send a message if your private key is later extracted from your phone. Chryptor uses one long-lived key rather than a fresh key for every message, so someone who steals that key, and who kept copies of your old messages, could read them. That is a deliberate trade: it is the same design that lets you restore a backup and still read your own history.
Does Chryptor make me anonymous?

No. But what a Chryptor message can point at is a key, not a name, and that is only when the “sign encrypted text” option is active.

Chryptor has no account, no email address and no phone number. Instead, it uses cryptographic keys to identify contacts for encryption and decryption. This means Chryptor does not add personal identifiers of its own.

Chryptor seals the contents of your messages and files.

The apps, services, and networks you use to send encrypted data may still know who sent it, who received it, and when it was sent.

Anonymity depends mainly on the communication channel you use. Chryptor helps protect your data, but it cannot hide information that other apps, services, or networks collect.
Is Chryptor legal?

Encryption and privacy tools are legal in many countries and are widely used for ordinary personal and business protection. Laws can vary by country and use case, so you are responsible for using Chryptor lawfully wherever you are.

Pricing & launch

When will Chryptor launch?

Chryptor is currently preparing for launch.

Join the waitlist to be notified when it becomes available.

What is free, and what do I pay for?

The core features needed to safeguard your day to day privacy are free.

Free:

  • The keyboard.
  • Encrypting and decrypting messages, through any app.
  • Shared passphrases and Post Quantum contacts.
  • Key exchange by QR code, contacts, and sender verification.
  • Backup and restore.
  • Decrypting files. Always.

Pro, unlocked by a single one-time payment:

  • The private vault.
  • Encrypting files.
  • Additional Pro features to be announced at launch.

Reading is always free. Anything sent to you, you can open. Anything you encrypted, you can get back out. Even if you lose your Pro key, you can still open your vault and export your files. Not paying can never lock you out of your own data.

How much will Chryptor cost?

Pricing will be announced before launch.

Chryptor is designed around ownership, not subscription dependency.

  • No cloud plan.
  • No account lock-in.
  • No “pay or lose access to your private data” model.
Will Chryptor be subscription-based?

Chryptor is not designed around a cloud subscription model. The goal is simple: buy the tool, own the tool, encrypt your data locally.

Keep your apps. Protect your data.

Use any app. Trust none of them. Get notified when Chryptor launches.

MVP completed • Final features in development • Production preparation & testing underway