Skip to main content
Evakage is built for temporary, end-to-end encrypted chat and file sharing. Save files you want to keep.

What can the server see?

The server handles connections, room membership, and delivery. It can see connected device identities, recipients, and relay sizes. Messages and files are encrypted on the sending device and decrypted on the receiving device. Relayed content stays encrypted on the server.

What is stored?

Accounts do not store messages, files, or device private keys. Files you save outside Evakage remain on your device. If another participant still holds a conversation, your browser may recover history after reconnecting. If every browser loses its in-memory copy, direct-only content is gone. Self-chat can recover from the relay within its expiry window. See messages and files for relay lifetimes.

Verify who you connected to

Each browser has a persistent device identity. Evakage checks identity signatures before exchanging content. A changed identity appears as a new device. Compare safety codes with the owner outside the app. Verification helps confirm ownership; the server’s device list alone does not. See device verification.

Security limits

Evakage has not undergone an independent security audit. Device verification does not protect against a compromised server serving modified app code. For technical details, read the security model and review scope.

Usage and responsibility

Evakage is provided as is, without warranty. Users are responsible for what they share. Operators are responsible for access controls, updates, backups, and server security. Use it only where you have permission and comply with applicable laws. Other deployments are not necessarily operated or endorsed by the author. See the MIT license for the warranty disclaimer and liability terms.