Skip to content
Security

Your data, your rules

Privacy isn't an afterthought — it's baked into every layer of Argon. Here's how we keep your conversations safe.

TLS Everywhere

All traffic is encrypted in transit — TLS 1.3 wherever the client supports it, TLS 1.2 as the floor. No plaintext, anywhere.

Infrastructure Isolation

All services run in isolated containers. Production environments are separated from development.

Token-Based Auth

Short-lived JWTs with refresh rotation, so a stolen token stops being useful fast.

Secure Credential Storage

Passwords are never stored in plaintext. We use industry-standard hashing for all credentials.

Data Minimization

We collect only what's needed to run the service. No data mining, no ad profiling.

Access Controls

Role-based permissions, rate limiting, and audit logging protect against unauthorized access.

Threat Response

Vulnerability Disclosure

Found a vulnerability? We take security reports seriously and respond within one business day — usually much sooner.

[email protected] →

Source Available

Parts of Argon are published on GitHub so anyone can read the code we ship. It's source-available, not open source — you can inspect it, but the licence doesn't grant open-source rights.

View on GitHub