Trust is a system property.
XLink is being built around explicit authority, local-first data, encrypted transport, and human control over consequential actions.
One authoritative writer
Identity, messages, social relationships, content, and payments are separate authority domains. Each domain defines one authoritative writer, versioned contracts, idempotent commands, receipts, recovery paths, and auditable state transitions.
Local-first personal data
Personal conversations and history are designed to remain useful on the user’s device. Cloud services coordinate delivery and recovery; they should not turn every app open into a full re-download of personal history.
Protected transport and storage
Sensitive data is transported through authenticated interfaces and stored according to its classification. XLink’s long-term direction is end-to-end encrypted content, device-bound identity, encrypted backups, and user-controlled retention.
Human approval for high-impact action
AI can prepare, explain, and recommend. Payments, external publication, irreversible deletion, and other high-impact actions remain subject to explicit authority and review.
Responsible disclosure
Security researchers can contact security@xlink.zone. Please do not access, modify, or retain user data while testing.
This page describes engineering principles and direction. It is not a claim that every planned capability is already generally available.
