OBolo is live — free on the App Store and Google Play
Trust & security

Privacy must be experienced in the product — not merely described in a policy.

Security at OBolo is continuous, layered and honestly stated. Here is exactly how we protect identity, relationships and content — and exactly what we will not claim.

The principles

Defence in depth, without theatre.

Identity isolation & least privilege

Registration credentials sit inside a restricted, audited trust boundary — never exposed to Spaces, businesses or contacts.

End-to-end encryption where appropriate

Experience-specific end-to-end encryption for eligible private conversations and calls.

Encrypted in transit, at rest, on device

Cloud storage, backups and each authorised device’s local store are encrypted, with remote wipe and revocation.

Disciplined key management

Separate identity, device, conversation, call, file, Space, Circle and recovery keys — and no universal decryption key for ordinary user content.

Metadata minimisation

Only purpose-required attributes and operational evidence are kept — never more.

Honest claims & lawful governance

Capability claims follow technical validation; lawful requests follow restricted, auditable process.

The mediation layer

The Privacy Hedge Layer™: a guard between your identity and everything else.

Before any experience or participant receives data, protective checks run — every time.

Tokenisation & shielding

Identity references are tokenised; Registration Identity is shielded from every external domain.

Attribute & metadata minimisation

Only what the declared purpose requires is exposed — nothing incidental.

Context & consent validation

LifeSpace, Space, purpose and permission are validated at the moment of the action.

Anti-abuse controls

Anti-enumeration limits, rate limiting and anomaly detection guard the identity layer itself.

Precision

Encryption, experience by experience.

Honest security is specific. Public or moderated content follows different treatment from private conversation — and we say so.

ExperienceTarget security treatment
OChatEnd-to-end encryption for eligible private and group conversations
OCallEnd-to-end encryption for eligible voice and video calls
OMeetEnd-to-end mode, or strong media and transport encryption by meeting type
OMomentsAudience-encrypted or access-controlled encrypted delivery
OTaskObject- or field-level encryption; end-to-end where feasible
ODriveClient-side or object-level encryption with per-file keys and controlled key sharing
OCircleSecure channel encryption; optional end-to-end modes for eligible private Circles
Data trust

Proof without exposure.

Distributed-ledger technology is used for tamper-evident proofs — never for personal content.

On the integrity ledger

  • Consent receipts and permission-change proofs
  • Identity issuance and organisation verification proofs
  • Document and file hashes
  • Campaign authorisation proofs and audit checkpoints

Never on any immutable ledger

  • Chat messages, call content or recordings
  • Mobile numbers or biometric data
  • Raw files, personal profiles or private Moments
  • Your relationship graph or Space content

Lifecycle-aligned retention

Records are retained only according to security, legal and published policy.

Real deletion and closure

Permissions end when relationships close; content is deleted or exported under product controls.

Never recycled

Revoked Dynamic IDs are never reassigned; integrity proofs never embed personal content.

The standard we hold

No “unhackable.” No “100% private.” Ever.

Absolute security claims are prohibited by our own brand standards. We state capability status precisely, validate before we claim, and accept accountability when outcomes fall below the standard.

Security is an ongoing responsibility across the platform — not a one-time feature or a marketing claim.

Trust, examined — not asserted.

Bring your security questions. Precise answers are the point.