{
  "slug": "keybase",
  "category": "messengers",
  "name": "Keybase",
  "description": "End-to-end encrypted chat, group chat and file sharing tied to public-key identity proofs. Owned by Zoom since its acquisition, with little ongoing development.",
  "website": "https://keybase.io",
  "source": "https://github.com/keybase/client",
  "license": "BSD-3-Clause",
  "platforms": [],
  "jurisdiction": {
    "code": "US",
    "name": "United States",
    "eyes": "Five Eyes",
    "eu": false,
    "gdpr": false,
    "cloud_act": "provider"
  },
  "pick": false,
  "pick_reason": null,
  "disclosure": null,
  "grade": "C",
  "score": 61,
  "coverage": 100,
  "summary": "Keybase scores 61 out of 100 (grade C) on the messengers criteria. It meets 3 of 8 criteria: no ads or data sales, end-to-end encrypted by default and no phone number needed. It partly meets open source, no trackers or telemetry and independent audit. It does not meet metadata protection and decentralized. It is based in the United States: Five Eyes member; subject to the US CLOUD Act.",
  "url": "https://privacyratings.com/messengers/keybase/",
  "markdown": "https://privacyratings.com/messengers/keybase/index.md",
  "answers": {
    "open_source": {
      "title": "Open source",
      "weight": 3,
      "answer": "partial",
      "evidence": "https://github.com/keybase/client/blob/master/LICENSE",
      "note": "Client apps are BSD-3-Clause; the server is closed source."
    },
    "no_trackers": {
      "title": "No trackers or telemetry",
      "weight": 3,
      "answer": "partial",
      "evidence": "https://keybase.io/docs/privacypolicy",
      "note": "No third-party analytics are listed, but the service collects device and operating system analytics data with no documented opt-out."
    },
    "no_ads": {
      "title": "No ads or data sales",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://keybase.io/docs/privacypolicy",
      "note": "The privacy policy states Keybase will never run ads or sell user data."
    },
    "independent_audit": {
      "title": "Independent audit",
      "weight": 2,
      "answer": "partial",
      "evidence": "https://keybase.io/docs-assets/blog/NCC_Group_Keybase_KB2018_Public_Report_2019-02-27_v1.3.pdf",
      "note": "A full NCC Group report is public but is older than three years."
    },
    "transparency_report": {
      "title": "Transparency report",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "user_notice": {
      "title": "Tells users about requests",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "tls": {
      "title": "TLS configuration",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "security_headers": {
      "title": "Security headers",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "web_standards": {
      "title": "Modern web standards",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "e2ee_default": {
      "title": "End-to-end encrypted by default",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://book.keybase.io/docs/chat/crypto",
      "note": "All chats and team chats are end-to-end encrypted with per-device keys."
    },
    "no_phone_number": {
      "title": "No phone number needed",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://keybase.io/docs/privacypolicy",
      "note": "The privacy policy states Keybase never requires a phone number or an email address."
    },
    "metadata_protection": {
      "title": "Metadata protection",
      "weight": 2,
      "answer": "no",
      "evidence": null,
      "note": "The central server sees which accounts and teams exchange messages."
    },
    "decentralized": {
      "title": "Decentralized",
      "weight": 1,
      "answer": "no",
      "evidence": null,
      "note": "One central service run by Keybase; the server is not published for self-hosting."
    }
  },
  "tests": {
    "ssllabs": null,
    "observatory": null,
    "internetnl_web": null,
    "internetnl_mail": null,
    "trackers": [],
    "tested_at": "2026-10-01T07:00:47.515Z"
  },
  "last_modified": "2026-10-01T07:44:20Z"
}