Every time you install a new messaging app, you are asked to trust three things: the company that wrote it, the servers that route it, and the policies that govern it. Laws change. Companies get acquired. Servers get subpoenaed. If you want real privacy, you have to remove at least one of those trust points from the equation.
CipherPigeon removes the app from the trust model. It does not send messages. It transforms them. You type your plaintext, enter the passphrase you already agreed on with your recipient, and tap encrypt. The result is a VS//PACKET: a block of unreadable text that can ride inside any app you already use.
The workflow is simple
- Agree on a key with your recipient ahead of time.
- Encrypt your message in CipherPigeon.
- Copy the VS//PACKET and paste it into SMS, email, chat, or social media.
- Your recipient pastes the packet into CipherPigeon and decrypts it with the same key.
The carrier app sees only ciphertext. It cannot read the message. It cannot hand it over to anyone in a readable form. The channel is untrusted by design, and that is exactly why it works.
When to use this
This approach shines when you already have a preferred chat app but do not fully trust its server, its metadata handling, or its future ownership. It is also useful when you need to send sensitive information through a public or monitored channel. The key is the only thing that has to be protected, and it never travels through the app at all.
