Reconnect with a cursor.
A durable event position makes missed intervals visible and recoverable after interruption.
Open chat.livara.org for Livara 0.9.12 on web and Android: end-to-end encrypted direct messages and private groups, Android group calls with screen sharing, and an account that is a username and a password.
LIVE PRODUCT / WEB + ANDROIDLivara Chat combines persistent realtime delivery, durable reconnect recovery, expressive media, and connected web and Android clients. Direct-message text, edits, captions and attachments are sealed on the device by the LVR1 hybrid ratchet, which mixes ML-KEM-768 with P-256; compatible private-group content is sealed by LGS1 sender keys. Channel content stays readable by the server, and this page says so rather than rounding the claim up.
Persistent Socket.IO delivery with contiguous per-user sequence recovery
One conversation across web and Android, with a durable offline outbox
LVR1 direct-message encryption: ML-KEM-768 mixed with P-256, advanced before every send
LGS1 sender-key encryption for compatible private-group text, edits and attachment keys
Direct calls and 2–6-person Android group rooms over WebRTC DTLS-SRTP, with screen sharing
Media, voice notes, round video, replies, reactions, stickers and configurable themes
SRP sign-in and a recovery-phrase key backup, so the server never receives the password
A published APK SHA-256 and an offline Proof Lab for checking the download yourself
A durable event position makes missed intervals visible and recoverable after interruption.
Direct messages and compatible private groups are encrypted on the device before anything leaves it. Channels, group membership and delivery metadata are listed as the parts that are not.
When the other device has no current key to seal to, the send stops and says so. There is no quiet fallback to plaintext.
The released APK checksum is published, and the Proof Lab hashes your own download in the browser, offline.
These are not footnotes. They are part of the product description.
Channels, reactions and some control relationships sit outside the encryption claim; channel content stays readable by the server.
Private-group membership is supplied by the service, so a compromised server could add an account before sender keys are redistributed.
Routing, membership, timestamps, ciphertext size and delivery state remain visible to the platform.
Call media is DTLS-SRTP and is not post-quantum; browser clients do not join the Android group rooms yet.
Encryption does not protect content on a compromised or unlocked endpoint, and a lost recovery phrase cannot be reissued.
LVR1 and LGS1 are custom protocols with no independent audit, and no production SLA is claimed here.
Tell us about the product, workflow, or system you are trying to build.