No identity required
There is no sign-up. You pair with a contact directly — by scanning each other's QR code or exchanging a contact code — and the encryption keys for that conversation are created on your two devices and nowhere else.
A private messenger. Messages are end-to-end encrypted and routed over the Tor network — no accounts, no phone number, no tracking.
Rún keeps your conversations on your device, inside an encrypted vault. The relay that passes messages along never sees your IP address and only ever holds sealed, fixed-size ciphertext it cannot read. There are no analytics, no advertising, and no third-party trackers.
There is no sign-up. You pair with a contact directly — by scanning each other's QR code or exchanging a contact code — and the encryption keys for that conversation are created on your two devices and nowhere else.
Messages are encrypted on your device and can only be decrypted by your contact's device. Message keys are continuously rotated, so even if a key were ever compromised, past conversations stay protected.
All traffic is routed over the Tor network. The relay infrastructure never learns your IP address or location, and messages are padded to fixed sizes so that not even the length of what you write can be observed.
Conversations live in a local, PIN-protected encrypted vault. There is no server-side copy, no backup we hold, and no way for us — or anyone else — to read your messages. Repeated wrong PIN entries or long inactivity securely erase the vault.
No analytics, no advertising, no trackers, no crash reporting that leaves your device — on any build. The F-Droid/direct build goes further and contains no Google code at all; the Play build adds Firebase Messaging and Play Billing, used only if you turn on notifications or open the tip jar. What we cannot see, we cannot lose, sell, or hand over.
Rún is in development for iOS and Android.