BẢO MẬT

Kiến Trúc E2EE Đa Lớp

Arc Protocol: Signal Protocol (libsignal) làm nền tảng, với mật mã post-quantum PQXDH (ML-KEM-1024), chữ ký XEdDSA và Sealed Sender phía máy khách.

01

Trao Đổi Khóa PQXDH

Trao đổi khóa lai post-quantum kết hợp X25519 (Curve25519) và ML-KEM-1024 (NIST FIPS 203). Chống lại cả tấn công cổ điển và lượng tử.

02

Double Ratchet

Forward secrecy cho mỗi tin nhắn sử dụng DH ratchet + symmetric ratchet. Xâm phạm một khóa không thể giải mã tin nhắn quá khứ hoặc tương lai.

03

Mã Hóa AES-256-GCM

Mã hóa xác thực với khóa 256-bit. Mỗi tin nhắn được mã hóa bằng khóa duy nhất phát sinh từ Double Ratchet.

04

Chữ ký XEdDSA (libsignal)

Chữ ký XEdDSA qua libsignal. Identity Key (X25519) đồng thời đóng vai trò khóa ký. Bao gồm xác minh tính toàn vẹn của danh sách thiết bị.

05

Sealed Sender Phía Máy Khách

Khóa X25519 tạm thời cho mỗi tin nhắn + khóa AES phát sinh từ HKDF-SHA256. Ngay cả máy chủ cũng không thể thấy ai đã gửi tin nhắn.

Rosetta AI has an explicit privacy boundary

Rosetta automatic translation and every TranslateGemma first pass stay on-device. After per-message consent, Premium, free access, and trials use Gemini 3.5 Flash-Lite; Intelligence uses Gemini 3.6 Flash. Only the current outgoing draft and first-pass review are sent; received messages, chat history, and encryption keys are excluded. On-device only is always available.

Read the privacy details

Comparison with 17 Major Messengers

Independent review comparing Arc V2 against 16 competitors (Signal, iMessage, WhatsApp, Telegram, LINE, Threema, Wire, Element, Session, Viber, XChat, KakaoTalk, Slack, Discord, Chatwork, Google Messages) using an 8-axis 100-point rubric.

POST-QUANTUM

Thông Số ML-KEM-1024

Cơ chế đóng gói khóa post-quantum được chuẩn hóa NIST FIPS 203.

Thuật ToánML-KEM-1024 (via libsignal-client)
Cấp Bảo Mật NISTLevel 3 (AES-192 equivalent)
Bảo Mật Cổ Điển2^128 bit (X25519)
Bảo Mật Lượng TửNIST Level 3
Nền TảngModule Lattice (FIPS 203)
Kích Thước Khóa Công Khai1,184 bytes
Kích Thước Khóa Bí Mật2,400 bytes
Kích Thước Bản Mã1,088 bytes

Tuân Thủ & Tiêu Chuẩn

🇺🇸NIST CSF 2.0

Khung NIST. 6 chức năng quản lý rủi ro mạng có hệ thống.

🇺🇸NIST SP 800-53

Kiểm soát an ninh liên bang. Nền tảng FedRAMP.

🇺🇸FIPS 140-3

Xác nhận mô-đun mật mã liên bang. Bao gồm ML-KEM-1024.

🇺🇸NIST SP 800-175B

Hướng dẫn chọn thuật toán mật mã. Dựa trên FIPS 203.

🌐ISO/IEC 27001

Chứng nhận ISMS quốc tế. Nền tảng tin cậy B2B/B2G.

🇪🇺GDPR

Quy định bảo vệ dữ liệu chung của EU. Tiêu chuẩn bảo vệ cao nhất thế giới.

🇬🇧UK Cyber Essentials+

Chứng nhận an ninh mạng được chính phủ Anh phê duyệt.

🇬🇧NCSC Cloud Security

14 Nguyên tắc NCSC Anh. Tiêu chuẩn đánh giá bảo mật đám mây.

Phát triển tuân thủ tất cả các điều kiện tiên quyết của NIST Hoa Kỳ, GDPR EU, NCSC Anh và ISO quốc tế.

CONFIDENTIAL

System Architecture Documentation

Complete technical specification of Arc V2 — covering the 5-layer architecture, E2EE pipeline, PQXDH implementation, key lifecycle, group encryption, multi-device architecture, BLE Mesh networking, and on-device AI.

15+ Technical Sections

Layer architecture, PQC implementation, encryption pipeline, data storage, and more

Bilingual (EN/JP)

Full documentation available in English and Japanese with one-click toggle

Version 3.1 — March 2026

Includes Elixir PreKey Server, Sealed Sender, Sender Keys, and PQXDH ML-KEM-1024

This document is classified as confidential and available exclusively to NDA-bound partners, investors, and authorized technical reviewers. Access requires prior approval by Atlas Associates.