Wiki · User Manual

SecureChat User Guide

End-to-end encrypted message content with minimized service metadata. This guide covers first setup, contacts, online signaling delivery and offline exchange.

Section 1

🔐 What is SecureChat?

SecureChat is an end-to-end encrypted messenger. Message content is protected with XChaCha20-Poly1305 + Double Ratchet; the current central signaling relay still processes connection timing and sender/recipient sx_ identifiers. No phone number or email registration is required.

Shared identity: SecureChat uses the same sx_ ID as SecureCall. One identity — both apps. Share your QR once; your contact reaches you on both.
Section 2

▶ First Start

  1. An Ed25519 key pair is generated and stored in the Android Hardware Keystore
  2. Your ID is assigned: sx_XXXXXXXXX (12 characters: prefix + 9 Base58 characters)
  3. This is identical to your SecureCall ID — one identity for all StealthX apps
  4. No network connection required for this step
Your identity is tied to the device. Uninstalling or clearing app data generates a new identity.
Section 3

💬 Conversations Screen

ElementFunction
ID (top right)Opens "My ID" — your QR to share
⚙ Gear (top right)Opens Settings
+ Button (bottom right)Add a new contact
🔒 Lock icon (top left)Tap 5× quickly → STEALTH-DELETE (wipes all data instantly)
STEALTH-DELETE: 5 rapid taps on the lock icon delete all messages, contacts, and keys with no confirmation and no recovery.
Section 4

🪪 My ID

ElementWhat it shows
sx_ IDYour permanent address, large monospace font
QR CodeFull Public Key Bundle (all keys for the Double Ratchet, not just the ID)
"Works in SecureCall AND SecureChat"One QR — your contact can reach you on both apps
Share Deep LinkAndroid share sheet with raw text stealthx://add/sx_...?...
Show the QR on screen for your contact to scan (most secure) — or tap "Share Deep Link" to send the text via any channel.
Section 5

➕ Adding a Contact

OptionStatusHow
Scan QR CodeActiveCamera → scan contact's QR
NFC TapRoadmapUse QR or paste flow in the current APK
Paste QR contentActivePaste stealthx://add/... text
Text fieldActiveType/paste, then tap "Add Contact"
"Add Contact" is only enabled when the field starts with stealthx://add/.

Free tier limit: Max. 10 contacts. Red banner appears at limit; all inputs lock. Upgrade to Pro for unlimited.

Section 6

✉ Chat

The header shows the contact's sx_ ID. Current online delivery requires both clients to be connected; the signaling handler does not provide an offline server queue.

IconFunction
📷 QR ScannerScan an encrypted message shown as QR by your contact (air-gap mode)
⬆ ImportPaste an encrypted message as text
🛡 ShieldSafety Number — 30-digit code for manual identity verification
QR (bottom bar)Export last sent message as QR — contact scans it (air-gap, no internet)

Message delivery modes

  1. Online: Both online → the signaling server routes the encrypted blob and processes sender/recipient sx_ identifiers plus connection metadata.
  2. Air-gap: Export as QR → contact scans. No internet required. Ideal for sensitive environments.
Section 7

⚙ Settings

Security

SettingDescription
Biometric UnlockON: asks for fingerprint/face on launch. OFF: opens directly.
STEALTH-DELETE (5-tap)ON: 5-tap trigger active. OFF: lock icon is inert.

Free FREE

FeatureDetail
E2E Encrypted MessagingXChaCha20-Poly1305 + Double Ratchet — always on
QR Key ExchangeDevice-to-device, no server
ContactsMax. 10

Pro PRO

FeatureDetail
Unlimited ContactsRemoves the Free tier contact cap
RoadmapGroup messaging, file transfer, Kaspa identity, Chameleon integration
ContactsUnlimited

Elite ELITE

FeatureDetail
Emergency BroadcastEncrypted alert to all contacts simultaneously
RoadmapOnion routing, decoy chat profiles, advanced threat detection
Section 8

🔑 IFR Token and Planned Holder Discount

ElementCurrent status
Paid activationLaunch-gated; check VLABS for availability
IFR holder discountPlanned, but disabled pending payment, accounting and launch approval

The referenced Ethereum Mainnet token contract is 0x77e99917Eca8539c62F509ED1193ac36580A6e7B. The Android app does not connect a wallet, and no discounted Stripe checkout is available in this release.

Section 9

📊 Tier Comparison

FeatureFREEPROELITE
E2E Encrypted Messaging
QR Key Exchange
Biometric Unlock
STEALTH-DELETE
Max Contacts10
Group MessagingRoadmap — not available in this release
File Transfer (XFTP)Roadmap — not available in this release
Kaspa Identity AnchorRoadmap — not available in this release
Chameleon IntegrationRoadmap — not available in this release
Onion Routing (3-hop)Roadmap — not available in this release
Decoy Chat ProfilesRoadmap — not available in this release
Threat DetectionRoadmap — not available in this release
Emergency Broadcast
Web IFR discountPlanned — currently disabled
Wiki · Betriebsanleitung

SecureChat Betriebsanleitung

Ende-zu-Ende verschlüsselter Nachrichteninhalt mit minimierten Servicedaten. Diese Anleitung erklärt Erster Start, Kontakte, zentral vermittelte Online-Zustellung und Air-Gap-Modus.

Abschnitt 1

🔐 Was ist SecureChat?

SecureChat ist ein Ende-zu-Ende verschlüsselter Messenger. Der Nachrichteninhalt ist mit XChaCha20-Poly1305 + Double Ratchet geschützt; der zentrale Signaling-Dienst verarbeitet weiterhin Verbindungszeit und Absender-/Empfänger-sx_-IDs. Keine Telefonnummer oder E-Mail-Registrierung.

Gemeinsame Identität: SecureChat verwendet dieselbe sx_ ID wie SecureCall. Eine Identität — beide Apps. QR einmal teilen, Kontakt erreicht dich auf beiden.
Abschnitt 2

▶ Erster Start

  1. Ein Ed25519-Schlüsselpaar wird generiert und im Android Hardware Keystore gespeichert
  2. Deine ID: sx_XXXXXXXXX (12 Zeichen: Präfix + 9 Base58-Zeichen)
  3. Identisch mit deiner SecureCall-ID — eine Identität für alle StealthX-Apps
  4. Keine Netzwerkverbindung für diesen Schritt nötig
Die Identität ist an das Gerät gebunden. Deinstallation erzeugt eine neue Identität.
Abschnitt 3

💬 Conversations-Screen

ElementFunktion
ID (oben rechts)Öffnet "My ID" — dein QR zum Teilen
⚙ Zahnrad (oben rechts)Öffnet Einstellungen
+ Button (unten rechts)Neuen Kontakt hinzufügen
🔒 Schloss-Icon (oben links)5× schnell tippen → STEALTH-DELETE (löscht alle Daten sofort)
STEALTH-DELETE: 5-faches Tippen löscht alle Nachrichten, Kontakte und Schlüssel ohne Rückfrage und ohne Wiederherstellung.
Abschnitt 4

🪪 My ID

ElementInhalt
sx_ IDDeine permanente Adresse, groß in Monospace
QR-CodeVollständiges Public-Key-Bundle (alle Schlüssel für den Double Ratchet)
"Works in SecureCall AND SecureChat"Ein QR — Kontakt erreicht dich in beiden Apps
Share Deep LinkAndroid-Teilen mit Rohtext stealthx://add/sx_...?...
QR auf dem Bildschirm zeigen zum Scannen (sicherste Methode) — oder "Share Deep Link" für Textteilung.
Abschnitt 5

➕ Kontakt hinzufügen

OptionStatusVerwendung
Scan QR CodeAktivKamera → QR des Kontakts scannen
NFC TapIn Entwicklung
Paste QR contentAktivstealthx://add/... Text einfügen
TextfeldAktivDirekt tippen/einfügen, dann "Add Contact"
"Add Contact" nur aktiv wenn das Feld mit stealthx://add/ beginnt.

Free-Tier-Limit: Max. 10 Kontakte. Bei Limit: roter Banner, alle Felder gesperrt. Pro → unbegrenzt.

Abschnitt 6

✉ Chat

Der Header zeigt die sx_-ID des Kontakts. Die Online-Zustellung erfordert, dass beide Clients gleichzeitig verbunden sind; der Signaling-Handler stellt keine Offline-Serverwarteschlange bereit.

IconFunktion
📷 QR-ScannerScannt verschlüsselte Nachricht die Kontakt als QR zeigt (Air-Gap)
⬆ ImportVerschlüsselte Nachricht als Text einfügen
🛡 SchildSafety Number — 30-stellige Prüfzahl für manuelle Identitätsverifikation
QR (Leiste unten)Letzte gesendete Nachricht als QR exportieren — Kontakt scannt (Air-Gap, kein Internet)

Zustellungsmodi

  1. Online: Beide verbunden → der Signaling-Server routet den verschlüsselten Blob und verarbeitet dabei Absender-/Empfänger-sx_-IDs sowie Verbindungsmetadaten.
  2. Air-Gap: Als QR exportieren → Kontakt scannt. Kein Internet nötig. Ideal für hochsensible Umgebungen.
Abschnitt 7

⚙ Einstellungen

Sicherheit

EinstellungFunktion
Biometric UnlockEin: App fragt beim Start nach Fingerabdruck/Gesicht. Aus: direkt öffnen.
STEALTH-DELETE (5-tap)Ein: 5-fach-Tap aktiv. Aus: Schloss-Icon inaktiv.

Free FREE

FeatureDetail
E2E Encrypted MessagingXChaCha20-Poly1305 + Double Ratchet — immer an
QR Key ExchangeGerät-zu-Gerät, kein Server
KontakteMax. 10

Pro PRO

FeatureDetail
Unlimited ContactsHebt das Kontaktlimit der Free-Version auf
RoadmapGroup Messaging, File Transfer, Kaspa Identity, Chameleon Integration
KontakteUnbegrenzt

Elite ELITE

FeatureDetail
Emergency BroadcastVerschlüsselte Notfallnachricht an alle Kontakte gleichzeitig
RoadmapOnion Routing, Decoy Chat Profiles, Advanced Threat Detection
Abschnitt 8

🔑 IFR-Token und geplanter Holder-Rabatt

ElementAktueller Status
Bezahlte AktivierungLaunch-gesperrt; Verfügbarkeit bei VLABS prüfen
IFR-Holder-RabattGeplant, aber bis Payment-, Accounting- und Launch-Freigabe deaktiviert

Der referenzierte Ethereum-Mainnet-Tokenvertrag ist 0x77e99917Eca8539c62F509ED1193ac36580A6e7B. Die Android-App verbindet keine Wallet, und in dieser Version ist kein rabattierter Stripe-Checkout verfügbar.

Abschnitt 9

📊 Tier-Vergleich

FeatureFREEPROELITE
E2E-verschlüsselte Nachrichten
QR-Schlüsselaustausch
Biometrische Entsperrung
STEALTH-DELETE
Max. Kontakte10
Gruppen-MessagingRoadmap — in dieser Version nicht verfügbar
Dateiübertragung (XFTP)Roadmap — in dieser Version nicht verfügbar
Kaspa-IdentitätsankerRoadmap — in dieser Version nicht verfügbar
Chameleon-IntegrationRoadmap — in dieser Version nicht verfügbar
Onion Routing (3-Hop)Roadmap — in dieser Version nicht verfügbar
Decoy-Chat-ProfileRoadmap — in dieser Version nicht verfügbar
BedrohungserkennungRoadmap — in dieser Version nicht verfügbar
Notfall-Broadcast
Web-IFR-RabattGeplant — derzeit deaktiviert