Private by design.
Encrypted by default.

PliusC3 is a secure messenger built for people who mean it. Messages, calls, files and your personal vault, sealed with post-quantum, device-side cryptography that even our servers can't read.

Post-quantum · ML-KEM-1024 Zero plaintext at rest Auto-burning messages
What PliusC3 does

Everything you need to communicate. Built to stay private.

A full private-comms toolkit in one app: messaging, calls, file transfer, and an encrypted personal vault.

Encrypted Messaging

1-to-1 chats encrypted on your device before they ever touch the network. The server only ever sees opaque ciphertext.

Encrypted Voice & Video Calls

High-fidelity WebRTC voice and video calls, protected with DTLS-SRTP media encryption, routed securely through encrypted signaling relays.

Secure File Transfer

Send documents, photos and media end-to-end encrypted over the same channel, safely routed via store-and-forward relays if contacts are offline.

Encrypted Vault

A private space for sensitive files, notes and your calendar, all locked behind the same on-device encryption.

Private Calendar

Events, reminders and birthdays with exact on-time alarms and deep-links, stored locally, never synced to the cloud.

QR Contact Pairing

Add contacts by scanning a QR code, exchanging identity keys in person so you know exactly who you're talking to.

Safety & Protection

Built like a vault, not a billboard

Every layer assumes the network, and even the server, is hostile. Here's what's standing between your data and everyone else.

Post-quantum end-to-end encryption

Messages use PliusC3's own custom end-to-end encryption protocol with a post-quantum PQXDH handshake, combining classical X3DH with Kyber / ML-KEM-1024, followed by the Double Ratchet, giving forward secrecy against tomorrow's quantum computers. The server only relays ciphertext it cannot read.

Hardware-backed keys

Your identity keys live in the Android Keystore (StrongBox where available), generated and used inside secure hardware, never exported.

Encrypted local database

Chat history is stored in a SQLCipher database, keyed by a 256-bit secret sealed under a Keystore master key.

Burn-after-read & short retention

Messages can self-destruct on read, are deleted on delivery, and any undelivered copy is purged from the server within hours.

Duress & panic wipe

A duress passcode instantly destroys all local data: identity, sessions, the database and its key, leaving nothing to recover.

Certificate pinning

Every connection is pinned to trusted root CAs, blocking man-in-the-middle interception even if a CA is compromised.

Proof-of-possession login

You authenticate by signing a server challenge with your private key. No passwords to phish, and a stolen ID can't impersonate you.

Identifiers hashed at rest

User, device and prekey records are keyed by HMAC-SHA256 hashes, so the database doesn't hold your raw identity in the clear.

A fresh key for every message

Every message is sealed with its own one-time key, derived from a forward-ratcheting chain. No two messages share encryption, so compromising one message’s key leaves every other message sealed.

Burn-on-view Stories

Share a moment that burns the instant it's viewed. Screenshots are blocked, it stays strictly between the two of you, and vanishes once seen.

Under the hood

The encryption, in plain numbers

No mystery crypto. Standard, audited primitives, applied client-side, end to end.

PQXDH
Post-quantum handshake
ML-KEM-1024
Kyber KEM
Double Ratchet
Per-message keys
SQLCipher
Local DB · 256-bit

PliusC3 employs a post-quantum PQXDH prekey bundle, comprising an identity key, a signed prekey, one-time prekeys, and a Kyber/ML-KEM-1024 KEM prekey. This configuration enables secure, offline session establishment and guarantees forward secrecy against future quantum-assisted decryption. The Double Ratchet protocol subsequently derives a unique encryption key for every individual message. Call media is secured via a dedicated, DTLS-SRTP encrypted peer-to-peer channel. The signaling server stores only public keys.

The perks

Why people choose PliusC3

No phone number requiredYour identity is a cryptographic key, not your SIM.
Works offline tooStore-and-forward delivers when your contact reconnects.
Server can't read your messagesOnly ciphertext ever leaves your device.
Store-and-forward relay resilienceMessages are securely queued on the server in encrypted form until the recipient connects, bypassing offline hurdles.
App lock & duress wipeProtect the app, and nuke everything under coercion.
All-in-oneMessaging, calls, files, vault and calendar in one app.
Self-hostable backendGo signaling server + Postgres you can run yourself.
Minimal metadata footprintHashed identifiers and aggressive purging by default.
Enterprise

Private communications for business and institutions

Take PliusC3's privacy to your whole organization. Self-hosted messaging, a managed VPN and private email, all running on infrastructure you control.

Private Messaging Infrastructure

Deploy PliusC3 on your own servers. End-to-end encrypted chat, calls and file transfer for your entire team, with no outside party in the loop.

Managed Private VPN

A WireGuard-based VPN for your organization: secure remote access and encrypted tunnels between offices, sites and devices.

Custom Development

Building and integrating additional secure functionality into your organization's communication and real-time team-coordination environment.

Institutional Compliance

Tailored deployment packages, flexible administrator controls, and direct technical support, adapted to strict security requirements.

Your servers or ours. Run PliusC3 on our hardened, privacy-first servers, or deploy it entirely on a private server your organization owns and trusts.

Talk to our team

Take back your privacy.

Deploy PliusC3 to secure your organization's communications: encrypted, decentralized, and fully audited.

PliusC3 gives you strong content confidentiality. Like any messenger it needs some routing data to deliver your messages, but we don't keep it. The server auto-wipes everything every few hours: any logs we must hold for delivery get purged clean, metadata included. We believe in being honest about what encryption does and doesn't protect.