On most networks, privacy is a policy the operator asks you to trust. On Pixelmine it is a property of the mathematics: your private content is sealed on your own device before it ever leaves, and no node — and not the company — holds the keys to open it.
Direct messages, group chats, and followers-only posts are encrypted on your device and can only be opened by the people you intend. Everything that stores or relays that content — the nodes, the coordination service — only ever handles sealed data it cannot decrypt. There is no master key and no back door for anyone to abuse, leak, or be compelled to hand over.
Content is encrypted before it is sent. Plaintext never leaves your phone.
Nodes hold only ciphertext and wrapped keys — meaningless without your key.
Decryption happens solely on the devices of the people you chose to share with.
Pixelmine’s encryption is built on standards designed to remain secure even against the quantum computers of the future. Each message and post is sealed with a fresh key, and that key is wrapped individually for every recipient — so reaching many people stays cheap, and no shared secret is ever exposed. What is sealed today stays sealed against tomorrow’s decryption.
A followers-only post is sealed with a single key, and a copy of that key is wrapped individually for each accepted follower — so exactly those people can read it, however far the post travels. Group chats work the same way, sharing one key among their members.
Because the network is made of independently run nodes, authenticity cannot rest on trusting the machine that hands you data. Instead every action carries a signature and every record proves its own authorship — so a node can safely accept data from strangers precisely because it never has to trust them.
Your identity is derived from a cryptographic key generated on your own device and never handed to anyone. It works across every node with no login and no password to phish or leak. The company cannot reset it, lock you out of it, or impersonate you — because it never holds it in the first place.
Owning your identity means owning its recovery too. Your keys export as a single encrypted file, locked with a passcode, and restore on any device — the company is never in that loop. The keys that unlock your conversations are themselves stored sealed to you, so you can recover them across devices without ever exposing them to a node.
An encrypted key file, secured by your passcode, restores your account anywhere.
There is no reset button we can press and no key we can produce under pressure.
Your content lives across many nodes, not locked inside one company’s servers.
End-to-end encryption is a strong guarantee, but an honest one is worth more than an overstated one. Here is exactly where the line falls.
Strong privacy is worth stating precisely. Encryption protects the contents of your communication — it does not erase the fact that communication took place, and it is not a cloak of total anonymity.
Pixelmine does not invent its own cryptography. It uses published, standardized algorithms — the same ones being adopted to resist future quantum computers.
A post-quantum key-encapsulation standard (ML-KEM-768, FIPS 203) establishes shared secrets.
A post-quantum signature standard (ML-DSA-65, FIPS 204) authenticates identity and every record.
AES-256 seals the actual messages, posts, and files.
It rests on keys only you hold and encryption no operator can undo. That is the difference between a promise and a guarantee.