Legal & Compliance Architecture
Last updated 2026-10-09
How MAVYR handles private communication
MAVYR provides invitation-only, end-to-end encrypted chat. This page explains which parts of a conversation stay on your devices, what the service needs to operate, and how its privacy responsibilities are divided.
Your messages and keys
Message text is encrypted on the sending device and decrypted on the receiving devices. The delivery service receives encrypted content. MAVYR does not hold a universal key that decrypts conversations.
Account authentication is separate from message encryption. A password and a second factor authorize access to your account. Your Recovery Key protects the recovery of encrypted message keys; second-factor backup codes serve a different purpose and cannot replace it.
Information the service still processes
Accounts, device identifiers, public encryption keys, room membership, room names, timestamps and delivery state allow the service to connect the right devices. These records are not all end-to-end encrypted. Encrypted storage protects data at rest, but the running service can read operational metadata.
You can register without supplying a phone number, legal name, postal address or date of birth. Your username and display name may still identify you, as may information you choose to share. Pseudonymous registration is not a guarantee of anonymity.
Purposes and boundaries
MAVYR uses service data to operate accounts, deliver encrypted conversations, manage devices and protect availability. It does not use message content for advertising or operate advertising trackers. It does not upload your address book.
Confidentiality covers communication circumstances as well as content. German telecommunications rules restrict when traffic data may be processed and for which purposes. A general interest in improving the product does not by itself justify analyzing private communications.
Retention and recovery
Server message history has a 24-hour availability window. An hourly job removes expired history, subject to the exceptions explained in the Retention Matrix. Device-held history, account records, room state and encrypted recovery backups have separate lifecycles.
A backup of encryption keys is not a backup of every message. If a message has expired on the server and is no longer on any of your devices, the Recovery Key cannot recreate it.
Responsibility and requests
Christopher Brückner is responsible for operating MAVYR and handling privacy requests. The Imprint identifies the operator; the Privacy Notice explains purposes, recipients and your rights. The Data Inventory and Retention Matrix describe the stored categories.
The Law-Enforcement Request Policy explains how legally valid requests are assessed. Encryption does not remove the obligation to preserve or provide existing data where the law requires it. That obligation does not create access to message keys the service does not hold.
Security in context
The service uses encrypted transport and storage, restricted administrative access, mandatory second-factor authentication and security monitoring. These measures reduce risk; they do not make a compromised device, browser or running server harmless. People in a conversation can keep or share the messages they receive.