Explainer · Security · Messaging

What Is End-to-End Encryption? Secret Chats, Explained

You’ve seen the “end-to-end encrypted” sticker on every serious messenger. Here’s what E2EE actually guarantees, what it doesn’t, and how Plus One’s secret chats work.

When you send a message, it travels from your phone, through a server, to your friend’s phone. With end-to-end encryption, no one in the middle — not the messenger company, not the network, not an attacker who gets into the server — can read it. Only the two of you can.

The one-sentence version

The message is encrypted on your device, and it stays encrypted until it unlocks on your friend’s device. The server in the middle stores and delivers ciphertext — an unreadable string — and never holds the key. That’s the whole idea, and it’s why “we can’t read your messages even if we wanted to” is a design claim, not just a promise.

E2EE vs. “secure” HTTPS

This is the distinction people get wrong, and it’s worth being precise:

  • HTTPS (everyone has this): secures the connection between your phone and the server. An eavesdropper on the wifi can’t read it — but the server itself can.
  • E2EE (not everyone has this): the server only ever holds ciphertext. It could be leaked, subpoenaed, or hacked, and still no one reads your message.

On Plus One, every conversation is transported securely, and you can turn on secret chats — opt-in end-to-end encryption — for conversations you want read by exactly two people.

What E2EE does NOT do

  1. It doesn’t stop screenshots. The other person can still photograph or capture the screen. E2EE protects the message in transit, not the person holding the phone.
  2. It doesn’t make you anonymous. Your account and your metadata (who you talk to, when, from where) can still exist. E2EE hides content, not your identity.
  3. It doesn’t protect a compromised device. If someone has your unlocked phone or your password, encryption doesn’t matter — they’re already inside.

So: E2EE is a strong, real guarantee about the messages themselves. It’s not a magic cloak. Knowing the difference is what makes it useful.

Start a secret chat on Plus One

Opt-in end-to-end encryption per conversation, plus disappearing messages. Free on Android, iOS and web.

E2EE, answered

What does end-to-end encryption mean?

Your message is scrambled so that only the sender and the receiver can read it. Even the company running the server can’t read it in transit — they only hold the encrypted ciphertext.

What is the difference between HTTPS and E2EE?

HTTPS protects the connection between your device and the server, but the server can still read the message. E2EE protects the message itself — the server only ever holds ciphertext.

Does E2EE mean my messages are always private?

It protects them in transit and on the server from being read. It doesn’t protect against a screenshot on the other person’s phone, or someone with physical access to your unlocked device.

Are secret chats on Plus One end-to-end encrypted?

Yes — E2EE is opt-in per conversation. Start a “secret chat” for a specific 1:1 conversation, and only the two of you can read it. Regular chats use secure transport but aren’t E2EE by default.

Should I use a secret chat for everything?

Only if you want it. E2EE means some convenience features (like syncing history across new devices) can’t work the same way. Use secret chats for sensitive conversations and regular chats where you value cross-device convenience.