







How Keyhive groups can agree on keys over time
Using Keyhive in WASM to model capability groups
I'm a programmer, designer, writer and artist. I try to make tools for community autonomy, creativity, and resistance.

Keytrace takes ideas from Keybase and Keyoxide and brings them to the decentralized web.
BeeKEM: Decentralized, Secure and Efficient Group Key Agreement
Group key agreement protocols are essential for modern secure messaging. Most existing group key agreement protocols assume a centralized model with a semi-trusted service that mediates the communication. This is efficient, but problematic for some important applications, since a central service can be a choke point for surveillance and censorship. There is a nascent literature on decentralized group key agreement that avoids such reliance, but existing proposals either do not scale, with update costs linear or quadratic in the group size, or lack proofs of security. Centralized protocols can offer much lower (logarithmic) cost. We present BeeKEM, the first decentralized group key agreement protocol with logarithmic update cost in the common case (degrading to linear in the worst case) and proofs of security. We provide an open-source implementation and demonstrate that it is competitive with OpenMLS. BeeKEM opens the door for a range of communication and collaboration applications offering not only end-to-end encryption, but also metadata privacy and censorship resistance.
Keyhive: Local-first access control
Keyhive is a project exploring local-first access control. It aims to provide a firm basis for secure collaboration, similar to the guarantees of private chat but for any local-first application.

Keybase Book
Use Keybase for end-to-end encrypted chat messaging, file sharing, and team collaboration. Get the free app for iOS, Mac, Android, Windows, and Linux.
Keybase Book
Use Keybase for end-to-end encrypted chat messaging, file sharing, and team collaboration. Get the free app for iOS, Mac, Android, Windows, and Linux.
Rotation Key Census, December 2025 - Rob's wRitings
Census of rotation keys and other ways of asserting strong control over identity on the Atmosphere
Key Agreement for Decentralized Secure Group Messaging with Strong Security Guarantees
Secure group messaging protocols, providing end-to-end encryption for group communication, need to handle mobile devices frequently being offline, group members being added or removed, and the possibility of device compromises during long-lived chat sessions. Existing work targets a centralized network model in which all messages are routed through a single server, which is trusted to provide a consistent total order on updates to the group state. In this paper we adapt secure group messaging for decentralized networks that have no central authority. Servers may still optionally be used, but they are trusted less. We define decentralized continuous group key agreement (DCGKA), a new cryptographic primitive encompassing the core of a decentralized secure group messaging protocol; we give a practical construction of a DCGKA protocol and prove its security; and we describe how to construct a full messaging protocol from DCGKA. In the face of device compromise our protocol achieves forward secrecy and post-compromise security. We evaluate the performance of a prototype implementation, and demonstrate that our protocol has practical efficiency.
Rotation Key Census, July 2026 - Rob's wRitings
Census of rotation keys and other ways of asserting strong control over identity on the Atmosphere
Revisiting Keyed-Verification Anonymous Credentials
This summary was generated using automated tools and was not authored or reviewed by the article's author(s). It is provided to support discovery, help readers assess relevance, and assist readers from adjacent research areas in understanding the work. It is intended to complement the author-supplied abstract, which remains the primary summary of the paper. The full article remains the authoritative version of record. Click here to learn more.

Keyoxide Docs
Keyoxide is a privacy-friendly tool to create and verify decentralized online identities.
A community organizer’s guide to Signal group chats
Key privacy settings and best practices.

Unkey's Globally Distributed API key generation - with cofounder James Perkins
Collaborative Groups Protocol
A practical formula for creating and sustaining small, effective groups — designed to work together at scale.

Collaborative Groups Protocol
A practical formula for creating and sustaining small, effective groups — designed to work together at scale.
