No account, no phone number, nothing stored. Your conversation is encrypted so that only the people in the room can read it — not even we can.
No app to install, no account to create. Watch the whole thing — it takes less than a minute in real life.
You create a chat — no account, no install, one click.
Code 1: the room code — it finds your room.
Code 2: the secret — say it out loud, it becomes the key.
Same five words on both screens = it’s really just you two.
Talk freely — everything is end-to-end encrypted.
Done? It’s gone. No history. No accounts. Nowhere.
One click. You get two short codes — a room code and a secret. No sign-up, no phone number, no email.
The room code finds the room; the secret — best said out loud — becomes the encryption key. Matching control words prove it’s really them.
Messages, photos, voice notes — everything lives only on your two screens. Close the chat and nothing remains.
End-to-end encrypted. No accounts. No history.
The relay only ever sees encrypted data — it couldn’t read your chat even if it wanted to.
Messages are encrypted end-to-end on the device. Everything in between is just ciphertext — unreadable to anyone else, including us.
No account, no email, no phone, no name. There's nothing that ties a conversation to who you are.
No history, no database. Close the conversation and it's gone — nowhere to be found.
Keys are created right on the device. The server never sees them.
No email, no phone, no name. Nothing that links a conversation to you.
Messages aren't stored — not by us, not in any cloud. Close it and it's gone.
A simple way to be sure you connected with exactly who you meant to.
Not your everyday chat — the one-off conversation you'd rather not leave lying around afterwards.
Share a credential with a colleague — without it living in Slack or an inbox forever.
Discuss numbers privately with one person, then walk away leaving nothing behind.
Ask about something personal, and keep the conversation just between the two of you.
The quiet word that shouldn't sit in a chat history — said once, then gone.
Different tools for different moments. This isn't “better than Signal” — it's built for a different job.
| bono.chat | Signal | One-time notesPrivNote-style | |
|---|---|---|---|
| Install required | ✗ No | ✓ Yes, an app | ✗ No |
| Account / phone number | ✗ None | Phone number | ✗ None |
| Conversation | Two-way live chat | Full messenger | One-way note |
| History kept | Nothing after the chat | On your devices | Gone after reading |
| Ongoing daily messaging | ✗ Nofor one-time talks | ✓ Yes | ✗ No |
| Independently audited | Not yetexperimental | ✓ Yes | Varies |
| Open source | Crypto module planned | ✓ Fully | Varies |
Different tools for different moments: Signal is your everyday messenger, bono is the one-off conversation that should leave no trace, and one-time notes are for one-way secrets. Reach for whichever fits the moment.
Standard, modern cryptography — no magic, no secret sauce. Here's what actually does the work.
A password-authenticated key exchange (CPace). The codes agree on a shared secret without ever sending it across the wire.
Built on the Ristretto group using the well-tested @noble/curves library — the same primitives trusted across the field.
Encryption happens on each side. Everything in between carries ciphertext and nothing else.
A relay simply passes encrypted bytes along. It stores nothing readable and learns nothing about the contents.
Both sides compare a short five-word string. If it matches, no one is quietly listening between you.
There's nothing to sign up for and nothing kept afterwards — the system is designed to hold no record of you.
Not a safe, not a bunker. Just a closed door and a conversation that stays inside the room.
The messages themselves are seen only by the people in the room. They're encrypted so that not even we can read them.
We don't hide the fact that a conversation happened, or the technical traces of the connection. This is a tool for everyday privacy, not for life-or-death secrets. The project is experimental and hasn't yet had an independent security audit.
No. No sign-up, email, or phone number — you just open it and start talking.
Nowhere. While you talk they pass through the server encrypted; close the conversation and they're gone.
The content is end-to-end encrypted. But the project is young and hasn't had an independent audit, so don't trust it with secrets your life depends on.