Messages that disappear when they should.
ChumiChat gives you real-time, end-to-end encrypted conversations that automatically delete after being read. No personal data. No permanent accounts. Nothing stored longer than it needs to be.
Built for privacy. Designed for simplicity.
Every feature in ChumiChat exists for one reason: to let you communicate privately without thinking about it.
End-to-End Encryption
Every message is encrypted with ECDH key derivation and AES before leaving your device. The server stores only ciphertext — nobody can read your conversations.
Auto-Delete After Reading
Messages self-destruct 5 minutes after the recipient opens them. No cleanup needed. Conversations stay private without any manual action.
Tap to Reveal
Messages stay hidden until the recipient taps to open them. Content is never exposed unintentionally, even if someone glances at your screen.
Real-Time Delivery
Built on Socket.IO for instant, low-latency message delivery. When a socket connection is unavailable, the app falls back to HTTP seamlessly.
Temporary by Design
No email, no phone number, no personal data. Your identity is auto-generated and lasts 24 hours — then it is permanently deleted along with all associated data.
Read Receipts
See when your message has been seen. Simple, clear, and unobtrusive — just a small indicator on your sent messages, no privacy compromised.
How it works
From setup to encrypted conversation in under a minute.
Generate your profile
ChumiChat automatically creates a unique username and a cryptographic key pair for you. Your public key is stored server-side for key exchange; your private key stays only in your browser. The whole identity expires and is deleted after 24 hours.
Find someone to chat with
Search for other ChumiChat users by their username. When you find them, open a new conversation instantly. No friend requests, no approval process needed.
Send encrypted messages
Type your message and send. Before anything leaves your device, it is encrypted end-to-end using ECDH key derivation and AES encryption. Only the recipient can decrypt it.
Messages disappear automatically
The recipient taps to reveal your message. Five minutes after opening, it is permanently gone from both sides. No archive, no backups, no trace.
When to use ChumiChat
Some conversations are better without a permanent record.
Sharing sensitive information
Passwords, API keys, private documents — share them knowing they'll self-destruct once read. No need to worry about them sitting in a chat log forever.
Private conversations
Talk freely without worrying about who might read your conversation history days, weeks, or months later. Nothing persists.
Time-sensitive messages
Send messages that are only relevant in the moment — meeting details, one-time codes, quick instructions. Information that shouldn't linger.
Reducing your digital footprint
For people who want to communicate without leaving a permanent record. Your conversations don't accumulate on a server, in a backup, or in an export.
Privacy without compromise
ChumiChat isn't trying to offer privacy as a feature. It is the foundation the entire product is built on. These aren't toggle settings — they're the defaults.
Try it now- Your private key never leaves your device
- Messages are encrypted before transmission — the server never sees plaintext
- No email, phone number, or personal data required to sign up
- Messages permanently deleted 5 minutes after being opened
- Accounts and all associated data auto-deleted after 24 hours
- Each device is its own cryptographic identity — no shared credentials
- Simple, distraction-free interface — nothing to configure or manage
Frequently asked questions
If your question isn't here, reach out through the contact section below.
End-to-end encryption means your messages are encrypted on your device before being sent, and only the intended recipient can decrypt them. ChumiChat uses ECDH key derivation with AES encryption — even if someone intercepted the data in transit, they couldn't read it.
No. The server only ever stores encrypted ciphertext. The decryption keys exist only on users' devices. There is no mechanism — technical or administrative — by which ChumiChat can read your conversations.
Messages remain available until the recipient opens them. Once opened, they are permanently deleted 5 minutes later. Neither party can recover them after that window.
ChumiChat accounts are temporary by design. Your account — along with your username, public key, and any remaining chat data — is automatically and permanently deleted 24 hours after it was created. There is no way to extend or recover it. Just open the app again to generate a new identity in seconds.
No. ChumiChat automatically generates a unique username and cryptographic identity for you the moment you open the app. There is no signup form, no email address, and no password. The identity lasts 24 hours and is then deleted.
Your private key is stored locally in your browser's IndexedDB. If you lose access to your device or clear your browser data, you lose access to your ChumiChat identity — but it would have auto-deleted within 24 hours anyway. Open the app on any device to start fresh.
Yes, ChumiChat is free.
Get in touch
Have a question, found a bug, or want to share feedback? We read every message.
For security disclosures or vulnerability reports, please email us with the subject line Security Report.
Ready to chat privately?
Start a conversation in seconds. No account. No setup. Just encrypted messaging.
Get Started