Security philosophy
Least privilege, server-enforced permissions, and desktop hardening. We do not claim Zero Trust or E2EE audio until those systems are real.
Trustworthy communication starts with clear boundaries: what ships, what is Coming soon, and what we refuse to invent.
Least privilege, server-enforced permissions, and desktop hardening. We do not claim Zero Trust or E2EE audio until those systems are real.
User-visible privacy controls, consent for policy changes, and channels for privacy requests — aligned with GDPR/KVKK practice, not a certificate badge.
Authenticated sessions today. MFA / 2FA is on the roadmap as Planned — never shown as available early.
Community guidelines, reporting, and moderator roles. Automated AI safety is Planned and labeled as such.
We publish policies, diagnostics notices, and request flows. Legal compliance is ongoing work — not a marketing slogan.
These claims are forbidden on picom.gg until implemented and verified:
Security page covers audio privacy and permissions. Roadmap shows what is next.