Privacy Policy
Last updated: January 2026
Our Promise
onitalk is designed for privacy from the ground up. We do not store video chats, messages, or metadata. Everything stays between you and your conversation partners.
How onitalk Works
To understand why onitalk is so private, it's important to know how the technology works:
Decentralized Signaling
For connection establishment, we use Trystero with BitTorrent technology. This means: there is no central server managing the connections. Instead, participants find each other through a distributed network.
Peer-to-Peer Connections
Once the connection is established, all video and audio data flows directly between participants (WebRTC). Our servers never see this data.
No Server Storage
We do not operate servers that store video content or chat messages. Room IDs are generated locally in your browser. Even password-protected rooms store the password nowhere - it is only used for local verification.
What Data We Collect
In short: We don't store any data.
- No video content: Your video chats are never stored or processed on our servers.
- No chat messages: Text messages are transmitted directly between participants.
- No user accounts: You don't need to register, so we don't store any profile data.
- No room histories: We don't know which rooms exist or who participates in them.
- No logs: We don't store any logs since the whole signaling proccess is handled decentralized.
Password-Protected Rooms
For password-protected rooms, security works entirely locally:
- The password is converted into a cryptographic key using PBKDF2 (100,000 iterations)
- The room ID is derived from the key hash (not the password itself)
- Kick commands are signed with HMAC-SHA256 and verified locally by all participants
- Neither the password nor the key ever leaves your browser in plain text
Cookies and Local Storage
onitalk uses minimal local storage for user settings such as theme preference (light/dark). We do not use tracking cookies, no third-party analytics tools.
Third Parties
onitalk uses the following technologies:
- Trystero: For decentralized signaling via BitTorrent trackers (these are public trackers and only see anonymous connection requests)
- WebRTC: For peer-to-peer video/audio connections (standard browser technology)
Your Rights
Since we store practically no personal data, there is nothing to delete or export. This is intentional - Privacy by Design. If you have questions about your data, feel free to contact us.
Changes to This Policy
We reserve the right to update this Privacy Policy. In case of significant changes, we will announce this on the homepage.