The RecordLegal Compulsion

Lavabit shut down rather than surrender its master SSL keys

When the U.S. government demanded the encryption keys that would have exposed all users to get at one account, Snowden's email provider chose to shut down instead.

01What actually happened

In 2013, the U.S. government obtained a warrant demanding Lavabit hand over its private SSL keys to access the account of a prominent user, reported to be Edward Snowden. Founder Ladar Levison objected that the keys would expose all of the service's roughly 400,000 customers, and rather than comply, he suspended the service entirely in August 2013. It is widely cited as the first tech firm to shut down rather than grant the U.S. government such access.

02Why it matters

When a provider holds keys that can unlock users, the state can demand them — and the only true defense may be not holding such keys at all. Cipher's zero-access design means the operator does not possess keys that decrypt user content, so there is no master key to compel; that protects content, not a seized, unlocked device.

Sources

We describe only what these sources report. If you think we've framed something inaccurately, tell us — accuracy is the whole point.

Cipher is built for exactly this gap: zero-access encryption, no phone number, on-device AI, and minimal metadata — so the failure in this story can't happen the same way.

See how the architecture works

Get on the list. Be early.

Join the waitlist and be among the first invited when Cipher opens.