Skip to content
Halo
← All channels

Summit Command

the Board Chair · Chief of Staff · Comms Director · Summit Lead

Reading as device:

?
Reading as deviceEach message is sealed separately for every recipient device. Pick a device here to decrypt the transcript with that device's key — exactly what that person would see. In a real deployment only the device's owner holds its private key.

safety #: 14612 75108 20959 01899 84127 02003 03434 63184 15827 42495 28480 39369

Draft saved on this device only until you seal & send.

What the server actually stores
?
On-the-wire envelopeThis is the raw record the server keeps for the latest message: iv (a one-time nonce), eph_pub (the sender's per-message public key), and ciphertext (the sealed bytes). There is no plaintext column anywhere — only a holder of the recipient device's private key can read the message.

wire.envelope
$ halo show --raw --last
iv: Kx7kvhOCUXYaXaDV
eph_pub: MCowBQYDK2VuAyEAU57SpwfC7icNrgLGoiE3L6hj7pi0…
ciphertext:C83VPvEYIB4giExAwwfliMvH3bm+kFRKG/ZPvnnqmCuP…
plaintext: <never stored on server>