Messenger
One-to-one and group chats, voice messages, files. End-to-end encrypted, including in large groups.
E2E · X3DHPrivate. Punkt
Messaging, marketplace, events, jobs and calls in one app. End-to-end encrypted, running exclusively on servers inside the EU, built under European law.
Every message is encrypted on your device before it leaves it. We run the servers, but we hold no key. This is not a setting you have to switch on, it is how the system is built.
Every module sits behind the same encryption and the same account. No switching, no second profile, no new data trail.
One-to-one and group chats, voice messages, files. End-to-end encrypted, including in large groups.
E2E · X3DHBuy and sell locally. Straight from the chat, with no middleman.
0 % commissionDrill, trailer, party tent. Borrow instead of buy, within your neighbourhood and with a clear return.
Borrow, don't buyParties, matches, meetups. RSVPs, group chat and reminders are linked automatically.
Local & privateOpenings nearby. Apply by message, without an account on a third-party portal.
No profile sellingVoice and video calls, one-to-one or in groups. Encrypted like every message.
EncryptedFor clubs, schools and companies: verified profiles, team channels, clear roles.
For organisationsEncrypted in Europe. Not administered elsewhere.
The same encryption as in the private version, plus a dedicated instance, administration, contract and support. Six categories, one system.
Internal communication, team channels and customer contact on an encrypted basis. Verified profiles, roles, audit compliance.
Digital sovereignty without dependence on providers outside Europe. Optionally operated in your own data centre.
Administration, emergency services, schools and citizen contact in one structure. Multi-tenant, with clear separation of roles.
Situational communication and alerting with robust encryption. Separated channels, defined permissions, logging.
Can be operated fully separated from the public network. Own key sovereignty, documented supply chain, auditable sources.
Self-contained instances without external dependencies. Need-to-know access, no metadata leaving the system.
Every organisation has different requirements for operation, certification and acceptance. Tell us what you need and we will come back with a concrete proposal.
Data protection has long stopped being a matter of attitude. It is a matter of liability. Three figures that set the frame.
That is what a single incident cost on global average in 2025. In the US the figure was USD 10.22 million. It covers investigation, downtime, notification duties and follow-up costs.
For serious infringements the GDPR provides for up to 4 % of global group turnover or EUR 20 million, whichever is higher. Since 2018 around EUR 5.88 billion has been imposed across Europe, the largest single fine being EUR 1.2 billion against Meta.
Projected total damage from cybercrime worldwide for 2025. The figure covers far more than data breaches and is an estimate, not a measured value.
Nine criteria that determine security, sovereignty and scope. Each one is either met or not, with no shades in between. Other providers meet individual criteria well. To our knowledge, only heloo meets all nine.
| Criterion | heloo | Telegram | Signal | Threema | |
|---|---|---|---|---|---|
| End-to-end in every chat | ✓ | ✓ | ✕ | ✓ | ✓ |
| Company domiciled in the EU | ✓ | ✕ | ✕ | ✕ | ✕ |
| Servers in the EU | ✓ | ✕ | ✕ | ✕ | ✕ |
| GDPR directly applicable | ✓ | ✕ | ✕ | ✕ | ✕ |
| Open source client planned | ✓ | ✕ | ✓ | ✓ | ✓ |
| Usable without a phone number | ✓ | ✕ | ✕ | ✕ | ✓ |
| Marketplace, lending, events and jobs included | ✓ | ✕ | ✕ | ✕ | ✕ |
| Offering for public bodies and schools | ✓ | ✕ | ✕ | ✕ | ✓ |
| Free for private users | ✓ | ✓ | ✓ | ✓ | ✕ |
| Criteria met | 9 / 9 | 2 / 9 | 2 / 9 | 3 / 9 | 4 / 9 |
Three things together: encryption is the standard in every chat, not just in a special mode. Operations and company domicile are entirely within the EU, so European law applies and no third-country access rights do. And for the encryption we rely on open source libraries that can be verified independently. Competitors meet these individually. In this combination, to our knowledge, nobody does.
Your message is encrypted on your device and only decrypted again on the recipient's device. In between it sits on our servers as an unreadable block of data. For the key exchange we use X3DH, modelled on the Signal protocol. Forward secrecy via the Double Ratchet is in preparation and not yet active.
In Nuremberg, with a European provider. There is no data processing in the US and no US provider in the stack. heloo therefore falls outside access rights that expose European user data in third countries.
That depends on size, mode of operation and requirements. A school with its own instance involves different effort than a state administration running it in its own data centre. So there are no list prices, but a quote after a short conversation.
We answer every lawful request, but we can only hand over what we hold. Message content is not part of that, because on our servers it exists only as an unreadable block of data. What we do hold is minimal technical data such as the time of the last connection. Every request received is published in anonymised form in our transparency report.
Not yet: the client source code has not been published so far, that is planned for the open beta. Open source alone is not enough anyway, because nobody can see what a provider actually compiled. That is why we additionally plan reproducible builds: anyone compiling the source themselves should end up with exactly the same file as the one in the store.
What can arise: connection timestamps, approximate message sizes and technical error logs. What does not arise: who writes to whom, how often and about what. Operational data is deleted after 30 days, error logs after 7. The full list is in the privacy notice, not just a summary.
Every chat has a safety number that must be identical on both devices. You compare it once in person or by QR code. If it later changes unexpectedly, heloo warns you actively, because that is precisely the sign of an attack on the connection.
For enterprise contracts: the source code of the server components is held in escrow, and in the event of insolvency or discontinuation you receive the right to keep running it yourself. If you operate in your own data centre, the instance keeps running independently of us anyway. This is in the contract, not in a letter of intent.
Start in the browser, no installation. For organisations we set up a dedicated instance.
Free for private users · No credit card · End-to-end encrypted