Overview
Enigm Server provides customer-level control over a dedicated private messaging environment. It supports:- Dedicated private messaging environments for individual users or organizations.
- Server purchase and creation from Enigm Command.
- User-selected geographic deployment region.
- Server ID based join requests.
- Administrator review and approval of join requests.
- Server membership control.
- Removal of approved users from the server environment.
- Simple role separation between the server administrator and server users.
- Server-scoped content lifecycle controls.
- Message and media availability control.
- Deletion of server-hosted encrypted objects according to policy.
- Deletion of server-scoped encrypted messages and multimedia according to policy.
- Deletion of encrypted content generated by a specific user within the server environment.
- Deletion of all encrypted content within the dedicated server environment.
- Full server content deletion where ownership and policy allow.
- Server lifecycle management.
- Server audit visibility where appropriate.
Purchase And Ownership Model
Enigm Server is purchased and created through Enigm Command. The ownership model supports:- Individual users.
- Teams.
- Organizations.
- Enterprise customers.
Enterprise And Procurement Model
Enigm Server is designed for customers that require a dedicated private messaging environment with controlled membership and server-scoped lifecycle management. Enterprise-relevant properties include:- Dedicated server-scoped messaging environment.
- User-selected public region category.
- Administrative ownership through Enigm Command.
- Server ID based access requests.
- Administrator approval before membership activation.
- Simple role model with administrator and users.
- Server-scoped encrypted content lifecycle controls.
- Separation between administration and message confidentiality.
- Audit visibility for lifecycle and membership events where appropriate.
What Enigm Server Is
Enigm Server is a dedicated private messaging environment for users, teams, and organizations that require a controlled server-scoped context inside the Enigm ecosystem. It is designed to support:- Customer-controlled private messaging environments.
- Dedicated server lifecycle management.
- Server owner or authorized administrator control.
- Server ID based join request workflows.
- Administrator approval for users requesting access to a server-scoped environment.
- Membership review and removal.
- Simple membership roles: administrator and users.
- Server-scoped lifecycle controls for messages and multimedia.
- Reduced exposure of server membership and activity metadata.
- Separation from global Enigm App message spaces.
What Enigm Server Is Not
Enigm Server is not:- The VPN Service.
- The Proxy Network.
- The Tor Gateway.
- A network gateway.
- A replacement for Enigm App secure messaging.
- A bypass around end-to-end encryption.
- A mechanism for administrators to read private message plaintext.
- A mechanism for administrators to receive attachment plaintext.
- A mechanism for administrators to receive user communications.
- A mechanism for administrators to receive cryptographic keys.
- A replacement for Device Trust or protected key material.
Relationship With Enigm App
Enigm remains the primary private messaging product and the core user-facing app experience. Approved Enigm users access server-scoped messaging environments through Enigm App when account state, Device Trust, server membership, and server policy allow it. Enigm App controls remain applicable inside Enigm Server environments:- Secure messaging.
- Secure calls according to product policy.
- Protected key material.
- Trusted devices.
- Multi-device workflows.
- Message expiration.
- Verification workflows.
- Content confidentiality.
Relationship With Enigm Command
Enigm Command is the web control panel and administrative surface for Enigm Server. Enigm Command supports:- Enigm Server purchase and management.
- Dedicated server creation.
- Geographic deployment region selection.
- Server lifecycle management.
- Server ID visibility for user join requests.
- Join request review and approval.
- User access management for dedicated servers.
- Server membership control.
- Content lifecycle controls inside dedicated servers.
- Remote deletion workflows for server-owned content.
- Deletion of encrypted content generated by users within that server environment.
- Deletion of all encrypted content belonging to a specific user within that server environment.
- Deletion of all encrypted content within the dedicated server environment.
- Deletion of the entire server environment.
- Server audit visibility where appropriate.
Dedicated Server Lifecycle
The Enigm Server lifecycle is managed through Enigm Command. Lifecycle stages include:- Server purchase or provisioning request.
- Dedicated server creation.
- Geographic deployment region selection.
- Server owner or administrator assignment.
- Server ID availability for approved joining workflows.
- User join request review.
- Membership activation after administrator approval.
- Server-scoped policy management.
- Content lifecycle management.
- Server suspension, deletion, or retirement according to policy.
Geographic Region Selection
Enigm Server supports user-selected geographic deployment region selection. Region selection is intended to support:- Customer control over server placement.
- Latency and operational requirements.
- Regulatory or contractual considerations.
- Server-scoped policy planning.
- United States.
- Europe.
- Asia.
Join Requests And Membership
Enigm Server uses a server ID based membership workflow. The server administrator can share the server ID with intended users. Users request access to the dedicated server environment, and the administrator reviews and accepts the request before membership is activated. The server ID is a join-request locator, not an access credential. Possession of a server ID does not grant membership, does not bypass administrator approval, does not establish Device Trust, and does not provide access to encrypted content. The server owner or authorized administrator can:- Share the server ID with intended users.
- Review pending join requests.
- Accept or reject join requests.
- Remove approved users.
- Control server membership.
- Restrict future access according to server policy.
Role Model
Enigm Server uses a simple role model. The role model includes:- Administrator: the server owner or authorized administrator responsible for server lifecycle, join request review, membership control, and server-scoped encrypted content lifecycle controls.
- Users: approved Enigm users who participate in the dedicated server environment according to server policy.
Server-Scoped Content Lifecycle
Enigm Server supports server-scoped content lifecycle controls. These controls are intended to manage encrypted content availability inside the dedicated server environment. They can include:- Server-owned content lifecycle controls.
- Encrypted content deletion.
- Message and media availability control.
- Removal from the server environment.
- Deletion of server-hosted encrypted objects.
- Deletion of server-scoped encrypted messages.
- Deletion of server-scoped encrypted multimedia.
- Deletion of encrypted content generated by users within that server environment.
- Deletion of all encrypted content belonging to a specific user within that server environment.
- Deletion of all encrypted content within the dedicated server environment.
- Lifecycle deletion according to policy.
Message And Media Deletion
The server owner or authorized administrator can delete server-scoped encrypted content according to policy and ownership boundaries. Deletion workflows can include:- Deletion of server-scoped encrypted messages.
- Deletion of server-scoped encrypted multimedia.
- Deletion of encrypted content generated by users within that server environment.
- Deletion of all encrypted content belonging to a specific user within that server environment.
- Deletion of all encrypted content within the dedicated server environment.
- Removal of server-hosted encrypted objects.
- Remote deletion workflows for server-owned content.
Full Server Deletion
Enigm Server supports full server deletion where ownership and policy allow. Full deletion is intended to support:- Server retirement.
- Customer-initiated environment closure.
- Removal of server-scoped encrypted objects.
- Server membership and join request lifecycle closure.
- Reduction of unnecessary retention after the server is no longer required.
- Deletion of the entire server environment.
Administrative Boundaries
Enigm Server administration and content confidentiality are separate trust domains. Administrative authority allows lifecycle control. It does not provide message visibility, cryptographic authority, attachment plaintext access, user communication access, or message plaintext access. Administrators can:- Invite users.
- Remove users.
- Manage server membership.
- Manage the lifecycle and availability of server-scoped encrypted content.
- Delete server-scoped encrypted content.
- Delete server-scoped encrypted messages.
- Delete server-scoped encrypted multimedia.
- Delete encrypted content generated by users within that server environment.
- Delete all encrypted content belonging to a specific user within that server environment.
- Delete all encrypted content within the dedicated server environment.
- Delete the entire server environment.
- Server administration is separate from Enigm App message plaintext.
- Server lifecycle control is separate from private key material.
- Server membership management is separate from Device Trust.
- Server ownership is separate from plaintext access to user content.
- Enigm Command authorization is separate from end-to-end encryption.
- Administrative deletion controls operate on encrypted content objects and lifecycle state.
- Administrative controls do not grant access to message plaintext, attachment plaintext, user communications, or private key material.
Privacy Considerations
Enigm Server follows Enigm privacy-first architecture. Privacy considerations include:- Minimize server membership exposure.
- Minimize server lifecycle metadata.
- Use Privacy-Preserving Device Handles for device correlation where device state is required.
- Separate server-scoped metadata from protected message content.
- Limit administrative visibility to required lifecycle and policy context.
- Avoid treating server membership as proof of message content.
- Retain server records only for defined operational, security, legal, or compliance purposes.
- Encrypt server metadata according to the applicable product and storage domain, except for operational identifiers required to route, authenticate, authorize, and maintain the server environment.
Security Limitations
Enigm Server reduces exposure and provides customer-level administrative control, but it does not eliminate all risk. Important limitations:- Authorized members may disclose information they receive.
- Compromised endpoints may expose content after authorized local access.
- Misconfigured server policy can affect access behavior.
- Server membership may still require limited metadata.
- Administrative removal affects future access but cannot ensure removal of content already accessed by an authorized participant.
- Server-scoped content deletion affects availability and lifecycle, not historical external disclosure.
- Enigm Server does not replace end-to-end encryption, Device Trust, secure onboarding, or user security awareness.