Security expertise / Message protection

Plan who can read, send and retain messages.

Ecliptix Protection is a research design for authenticated key agreement, rotation and hybrid cryptography. We use the assessment to define the messaging rules, device responsibilities and verification work your product requires.

Messaging

Turn conversation rules into security requirements.

We map participants, devices and the servers that relay messages. Your team decides who may join a conversation, what must be retained and which metadata can remain visible.

Key lifecycle

We document key creation, storage, rotation and removal across the device lifecycle. Tests cover a new device, lost access and recovery after a failure.

Conversation rules

We specify how joining or leaving a group affects access to messages. The design also defines offline delivery, retention, abuse reports and what deletion means on each device.

Independent review

We define the threat model, review scope and evidence an independent assessment needs. Findings and test results must refer to the exact code version and deployment configuration.

NIST FIPS 203 specifies ML-KEM, a mechanism for establishing a shared secret. Protocol assessment also covers how that secret is authenticated, used and replaced.

Assessment outcomes

A protection model your team can review.

The assessment produces a map of data flows and trust boundaries, rules for device and group changes, and a verification plan. It identifies which decisions need a prototype, interoperability test or external review before implementation proceeds.