TRUST BOUNDARY

Privacy starts with what is never collected

Orylin minimizes persistent identity and content surfaces: no account, no cloud history, browser-local session keys and encrypted application records.

01AccountsNot used
02Cloud historyNot created
03Local persistenceLocale and theme only

Minimize identity and persistence

The current service does not ask for a profile, contact list or password. Temporary sessions reduce the need for durable identifiers and cloud-held conversation state.

Closing or reloading a participating browser ends the browser-memory state unless the current session flow explicitly reconnects. Orylin does not advertise recovery of deleted browser state.

Keep application content encrypted

Messages and files are protected as application records before they cross Orylin coordination infrastructure or a volunteer relay. Session keys are not supplied to those relays.

Files are verified progressively with SHA-256. That integrity check detects transfer corruption; it is not a claim that a file is safe or trustworthy.

State the metadata boundary clearly

Encryption does not remove the network metadata required to establish and carry a connection. Direct peers can learn the network addresses required by WebRTC, and infrastructure providers can observe ordinary request and transport metadata.

External public relays used by the rescue path may observe or retain encrypted event metadata. Orylin therefore avoids claiming anonymity or resistance to traffic analysis.