More
Read

Installation

Activation

Usage

qmonicator.com

Support Center

security@qmonicator.com contact@qmonicator.com support@qmonicator.com

User Manual
Step by Step

Start Reading

2. Creating
Your PIN

After confirmation, a special security window (Rust) will open for creating a PIN. This PIN is the key to your digital safe. Do not forget it.

Main PIN

Must be at least 6 digits long. It is used for daily access and decryption of your local database.

Duress PIN (Optional)

PIN for coercion. If someone forces you to unlock the application, enter this PIN. The application will "unlock" but will permanently delete all data in the background.

Security Chief
Security first: The PIN is not stored anywhere in readable form.
PIN Security

4. Adding
Friends

The system uses "Out-of-Band" verification. To add someone, you must know their username and a pre-agreed Secret Word.

Only when both parties enter the same secret word does the exchange of public keys occur. This prevents "Man-in-the-Middle" attacks.

Blind Relay
Sending Request
Blind Relay
Accepting
Zero-Knowledge architecture
means the server knows nothing.

5. Communication and Files

All messages are automatically encrypted "End-to-End". They are stored in your local, encrypted database, and pass through the server as unreadable "noise".
Sending Messages

Messages are encrypted with the friend's public key. The server does not know who is sending or what is being sent (users have random IDs, e.g., F1111).

Sending Files

The file is encrypted with a session key, which is then encrypted with the recipient's public key. Only the recipient can unlock the file.

7. Additional Security Features:

Manual Locking

By clicking on the padlock icon, the application immediately deletes the database decryption key (db_key) from RAM memory. To continue working, you need to re-enter the PIN.

Rotating Tokens

The system uses advanced session management. Each time the session is extended, a new token is generated, and the old one immediately becomes invalid. Logout permanently deletes the session from the server.