FlickerTalk

Security

No home-made cryptography: FlickerTalk uses reviewed protocols and libraries, and all of its code is public.

Building blocks

No trackers

No analytics, no advertising, no crash-reporting services, in the app or on this site.

Threat model

FlickerTalk is designed to protect against a breach of our database, anyone running our servers reading chats, central collection of messages, exposure of a cloud history (there is none), and push services reading messages.

It cannot fully protect against a compromised phone or operating system, malware, screenshots, the other person copying messages, someone holding your unlocked phone, or network metadata held by third parties. How it works lists who can see what.

Open source

The app and the server are published under the AGPL-3.0 licence.

Report a problem

Please report security issues privately, through GitHub's “Report a vulnerability” on the app or server repository, or by email to info@flickertalk.com. We will answer, keep you informed and credit you if you wish.