Angaaraâ„¢ Terms
Angaara is a free, open-source app for chatting on Matrix. By using it you agree to these terms. They're written in plain language on purpose.
1. What Angaara is
Angaara is only the app. Your account, messages and files live on the Matrix homeserver you chose when you signed up (for example matrix.org). That homeserver is run by someone else, has its own terms and privacy policy, and is responsible for your account. Angaara does not run homeservers and can't reset your password, restore your account or remove content from them.
2. Encryption and recovery
Nobody can recover your encryption keys or encrypted messages for you. That includes Angaara and your homeserver.
- Messages in encrypted chats are locked on your device before they're sent. Only devices holding the keys can read them.
- Your keys live on your signed-in devices and, if you turn it on, in an encrypted backup protected by your recovery key or passphrase. We never see that key.
- If you sign out of every device and lose your recovery key, your encrypted message history, and anything else Angaara keeps encrypted with it (like your friends list, private DM list and scanned files list), is gone for good. Resetting your password does not bring it back.
- If you forget the app lock password on a device, the keys on that device can't be opened. You'll need to sign out and sign back in with your recovery key.
- Not every chat is encrypted. Public rooms usually aren't, and anyone in them (and their homeservers) can read what's posted.
Keeping your recovery key safe is your responsibility.
3. What the Angaara service stores
- XP: your Matrix user ID, your XP and your member number (the order you joined in, used for the Early Ember badge and launch boosts). To count XP, the app sends only the IDs and send times of your own messages. You can turn this off in Settings, under Account, then Experience.
- Angaara account (optional): your Angaara username, the public keys of your passkeys, which Matrix accounts you linked (up to 3), and whether you're a Supporter, with its start and end dates. Passkeys never leave your device, and we never have a password. Others can only see that you're a Supporter.
- Supporter page: opening it from the app creates a one-use ticket, kept only as a hash for 60 seconds.
- Link and File Checks: a hash of your Matrix user ID and how many checks you've used, for the limit (20 every two months, 300 for Supporters). The links you check aren't stored. Files are scanned on your device, and only their fingerprint is looked up, on MalwareBazaar and CIRCL's list of known software. Your list of scanned files is kept in your Matrix account, encrypted so only you can read it.
- Crash and bug reports: only what you choose to send. A bug report has its type, title and description. A crash report has the error, where in the app it happened (with room, user and message IDs removed) and your note, if you add one. Both also include the time, the app build, and your browser's user agent (your browser, its version and your operating system). They don't include your account, user ID or rooms. Only Angaara's developers can read them, and a hash of your IP address is kept to limit how many can be sent per hour.
- GitHub sign-in: if you link GitHub, the sign-in passes through our server once and the token is stored in your browser.
- Everything else (settings, drafts, caches) is stored in your browser on your own device.
4. Private mode and deleting your data
- Private mode (Settings, under Account) stops the app from contacting Angaara's servers. Features that need them, like XP, turn off while it's on.
- Delete My Data (in the same place) permanently deletes everything Angaara's servers keep about your account, including your XP, level, member number and Early Ember badge, and turns private mode on. You confirm it by typing your username and, if you have an Angaara account, with your passkey. It can't be undone, and anything you earn later starts from zero.
- If you choose to delete all your data, we are not responsible for your data loss. Your Matrix account and messages live on your homeserver and aren't affected.
5. Using Angaara
- Follow the law and the rules of your homeserver and the communities you join.
- Don't use Angaara to abuse, spam or harm others, or to attack Angaara or anyone's servers.
- We may block accounts from Angaara's own features (like XP) if they're abused or cheated.
- You're responsible for any bots you build and run with Angaara's developer tools.
6. Content you see and share
- Angaara doesn't host, store or check the messages, images or files sent through it. They travel between people's Matrix homeservers, and Angaara only shows them to you.
- Everyone is responsible for what they send. Content belongs to its sender, and is hosted by their homeserver and yours, under those homeservers' own rules.
- Angaara isn't responsible for content other people send you, including anything unwanted, offensive or illegal. Report it to the admins of the community it was posted in, or to the sender's homeserver, and block the sender if you need to.
- Community owners and moderators set and enforce their own community's rules. They aren't Angaara, and Angaara doesn't moderate their communities.
7. No warranty
Angaara is provided "as is", without warranty of any kind, and parts of it (like the phone layout) are still in beta. To the fullest extent the law allows, we aren't liable for lost data, lost messages or other damage from using it. Always keep your recovery key safe.
8. Open source
Angaara is based on Cinny and licensed under the GNU Affero General Public License v3.0. That license covers the code; these terms cover using the hosted app. It doesn't cover the Angaaraâ„¢ name or logo, so if you publish your own version, please give it its own name.
9. Changes
If these terms change in a meaningful way, Angaara will ask you to agree again before you continue.
10. Contact
Questions? Find us in #angaara:matrix.org.