Technology
Defense-grade encryption meets ultra-efficient communication. Built for environments where every byte matters and every message must be protected.
Post-quantum,from day one.
COMPLETED Arc PRODUCT SPECIFICATION
Signal Foundation audited cryptographic stack
Ultra-Low Bandwidth Communication
COMPLETED Arc PRODUCT SPECIFICATION
Voice Message Compression
File size per minute of voice recording
8x smaller
| Network | Speed | Voice (1 min) | Photo (500KB) |
|---|---|---|---|
| 5G | 100 Mbps+ | <1s | <1s |
| 4G LTE | 10 Mbps | <1s | <1s |
| 3G | 1 Mbps | <1s | ~4s |
| 2G / EDGE | 50 kbps | ~20s | ~80s |
| Satellite (LEO) | 25 Mbps | <1s | <1s |
| BLE Mesh | 1 Mbps | <1s | ~4s |
4-Phase E2EE Pipeline
Normal DM uses official libsignal v0.96.2 primitives with PQXDH and Double Ratchet. The common outbound journal and physical-device release gate remain incomplete; security processing is protocol-specific.
PQXDH
COMPLETED Arc PRODUCT SPECIFICATION
Double Ratchet
Forward secrecy — unique key per message, immediate deletion
AES-256-GCM
Authenticated encryption with 256-bit keys
Sealed Sender
COMPLETED Arc PRODUCT SPECIFICATION
Post-Quantum Cryptography
ML-KEM-1024
Hybrid Design
Arc combines classical and post-quantum cryptography. Even if one algorithm is broken, the other maintains security. This dual-defense protects against both today's threats and tomorrow's quantum computers.
⚠️ Protects against "Harvest Now, Decrypt Later" attacks — adversaries who record encrypted traffic today to decrypt with future quantum computers.
BLE Mesh Network Arc ORIGINAL
Explicit Security Modes
COMPLETED Arc PRODUCT SPECIFICATION
Ephemeral Zones
Automatically create temporary communication zones during disasters. Map evacuation points, medical stations, and resource distribution centers in real-time.
Zero-Knowledge Presence
Prove you're nearby without revealing your exact location. Privacy-preserving proximity verification for trust establishment.
Reach first. Or keep it confidential.
Arc makes the security boundary visible before the first Mesh message—and keeps that mode fixed for the conversation.
IGF (Instant Gone Forever)
Messages expired by IGF disappear from devices immediately. Their encrypted server documents are permanently deleted on the schedule for each plan; until that cleanup runs, an expired encrypted document may remain on Arc's servers. Essential: default 1 day; manual dial 00:01–23:59 (hours and minutes only) Premium: default 7 days; manual dial 1 second–7 days Intelligence: default 7 days; manual dial 1 second–7 days
Secure Device Transfer
Authorize a one-time device transfer without copying the new device’s cryptographic identity. Every active device generates and protects its own identity and message keys.
One-time QR authorization
Target Device
One-time QR authorization
Target Device
Explicit history choice
One-time QR authorization
The QR code is bound to the account, source and target devices, roster revision, and expiry. It is an authorization, not an encryption key.
Independent device identity
The new device generates its own identity, prekeys, sessions, and local database key. Long-term private keys are never copied.
Explicit history choice
Before transfer, choose eligible current history or start empty. Expired IGF, burned, and deleted items are always excluded.
Essential
One active device normally. During replacement only, the old and new devices coexist until verification; the old device is then revoked.
Premium / Intelligence
Up to three independent active devices. New messages are encrypted separately for every active device; no device is the master.
Secure Device Transfer is not enabled in the current public release. Availability requires verified device-roster and physical-device release gates.
How Arc Compares
Competitor cards link to first-party sources. Arc's card is bound to its completed product specification and the same scoring model.
Use Cases
Healthcare
Future plan · Separate healthcare specification
Patient data communication must comply with HIPAA and privacy regulations while remaining fast enough for clinical workflows.
We are seeking healthcare organizations, clinical experts, security and compliance specialists, and implementation partners to co-design, validate, and pilot this future specification.
- ✓COMPLETED Arc PRODUCT SPECIFICATION
- ✓IGF · Essential: default 1 day; manual dial 00:01–23:59 (hours and minutes only) · Premium: default 7 days; manual dial 1 second–7 days · Intelligence: default 7 days; manual dial 1 second–7 days
- ✓COMPLETED Arc PRODUCT SPECIFICATION
Disaster Response
Communication infrastructure is destroyed. Rescue teams need secure coordination without cell towers or internet.
We are seeking municipalities, government agencies, and pilot partners to co-develop and validate disaster-tech deployments.
- ✓COMPLETED Arc PRODUCT SPECIFICATION
- ✓Ephemeral Zones map evacuation and medical aid points
- ✓120KB/min voice — usable on survival-grade bandwidth
Field Operations
Remote sites with no connectivity need data collection, team coordination, and secure communication with headquarters.
- ✓Offline-first design: record locally, auto-sync on reconnect
- ✓COMPLETED Arc PRODUCT SPECIFICATION
- ✓Environmental sensors, quality tracking, and time management
Standards & Compliance
🇺🇸NIST CSF 2.0
Cybersecurity framework for critical infrastructure
🇺🇸NIST SP 800-53
Security and privacy controls for federal systems
🇺🇸FIPS 140-3
Cryptographic module validation (pending)
🇺🇸FIPS 203 (ML-KEM)
ML-KEM post-quantum key encapsulation standard
🌐ISO/IEC 27001
International information security management
🇪🇺GDPR
EU data protection and privacy regulation
🇬🇧UK Cyber Essentials+
UK government-backed cyber security certification
🇺🇸HIPAA
Design-ready for healthcare data protection
Explore Arc's Security Architecture
Dive deeper into Arc's cryptographic design, threat model analysis, and compliance documentation.
