Brume is a self-hosted, end-to-end encrypted chat app built on Signal Protocol. Invite-only. No tracking. No algorithms. Just real conversations with people you trust.
Invite-only. End-to-end encrypted. Free.
Three principles. Zero compromises.
Signal Protocol (X3DH + Double Ratchet) encrypts every message on your device. Even the server operator cannot read them. Forward secrecy means compromising a key today can't unlock yesterday's messages.
Invite-only registration. No user discovery. No IP logging. No metadata profiling. Self-destruct messages vanish on a timer. GIF searches proxied through your server so providers never see your IP.
Brume runs on our own infrastructure — not on Big Tech cloud platforms. No corporate intermediary. No third-party data broker. Your conversations never leave a server we control.
Built for real conversations, not engagement metrics.
Signal Protocol for DMs. Sender Keys for groups. Every message encrypted before it leaves your device.
Each device gets its own encryption keys. Compromise one device, not your entire account.
30 seconds to 24 hours. Client, sender, and server all respect the timer. No traces left behind.
Admin, moderator, and member roles. Mute, kick, pin messages. Sender keys rotate automatically on member changes.
Share files up to 25 MB. Each file encrypted with a unique key. Inline image previews.
Compare safety numbers with friends to verify encryption. QR code scanning for in-person verification.
Restore on a new device with your passphrase. Argon2id key derivation. The server cannot decrypt your backup.
Private encrypted notepad synced across your devices. Your personal space inside Brume.
Three steps to private conversations.
Tell us who you are and why you'd like to join. We review every request personally to keep the community trusted and spam-free.
Once approved, you'll receive an invite code by email. Download the app, enter your code, and set up your encrypted identity.
Add friends by username. Every message is end-to-end encrypted from the moment you hit send. No one — not even us — can read them.
We use the same cryptography trusted by security researchers worldwide.
Signal Protocol — X3DH key agreement establishes sessions. Double Ratchet provides forward secrecy and break-in recovery for every message.
Per-device identity keys. Signed pre-keys with one-time pre-keys. Automatic replenishment when the pool runs low.
Sender Keys distributed via pairwise Signal sessions. Keys rotate automatically when members join or leave.
Argon2id KDF (64 MB memory, 3 iterations) derives a wrapping key from your passphrase. The server stores only the encrypted blob.
Encrypted ciphertext, usernames, and timestamps. No plaintext. No IP addresses. No device fingerprints. No read status metadata for groups.
Read your messages. Decrypt your backups. Identify conversation participants beyond what's in the participant list. Recover deleted messages.
Available on every platform you use.
Android and iOS coming soon.
Brume is invite-only to keep the community trusted. Tell us a bit about yourself and we'll review your request.
Help keep Brume free, private, and independent.
Brume is free and privacy-respecting. If you find it valuable, consider supporting its development — every contribution helps keep the lights on.