Most privacy promises are about protection: better locks, stronger walls, more careful handling of the data a company holds about you. Those things matter. But there is a simpler idea underneath all of it, and it is the one Zerolog is built on.
The safest data is the data that was never collected.
You cannot lose what you do not hold. You cannot be forced to hand over what you never gathered. You cannot leak, sell, or misplace what does not exist in the first place. This is not a clever slogan — it is the design principle behind every decision we make.
Data Minimization Is the Whole Strategy
Most apps collect first and protect later. They gather as much as they can — who you talk to, when, from where, on what device, using which contacts — and then promise to guard that pile responsibly. Every one of those promises depends on the company keeping the pile safe, forever, against breaches, insiders, buyers, and legal demands.
Zerolog takes the opposite path. We ask a harder question before collecting anything: do we actually need this to make the app work? Usually the answer is no.
So here is what Zerolog does not collect:
- No advertising ID.
- No location.
- No contact lists.
- No analytics or behavioral tracking.
- No message content — ever.
Your phone number is used only to verify that you are a real person, and it is not stored afterward. Your encryption keys stay on your device. When two devices are close, your messages travel directly over Bluetooth Low Energy and the local network, with no server in between. When peers are far apart, messages travel over the internet with end-to-end encryption, so servers carry only sealed content they cannot read. You can see how this fits together on our how it works page.
Every piece of data we choose not to collect is a piece of data that can never be breached, subpoenaed, or sold. Minimization is not a limitation we work around. It is the point.
Why the Business Model Matters More Than the Policy
Here is something the industry rarely says out loud: a privacy policy is only as trustworthy as the business model behind it.
When a messaging app is free and the company still needs to make money, the math usually points in one direction. Your attention, your behavior, and your data become the product. Even with good intentions, the incentive is always to collect a little more, keep it a little longer, and find one more way to use it. The policy might promise restraint, but the business model quietly pushes the other way.
Zerolog is free, and it does not run on advertising. There is no ad-tech engine underneath that needs to know who you are, what you like, or who your friends are. That single fact changes the incentives completely. We do not profit from watching you, so we built an app that cannot watch you. Our interests and yours point the same direction: collect less, keep less, know less.
This is why we say the business model matters more than the promise. A promise can be broken quietly. A design that never gathers the data in the first place cannot be quietly reversed.
What "Nothing Left Behind" Means in Practice
Our tagline — whispers between devices, nothing left behind — is not poetry for its own sake. It describes concrete behavior.
Messages in Zerolog are ephemeral. Each one carries a time-to-live and disappears when its timer ends, on both devices, with no hidden archive to recover it from. Nothing is kept for later analysis. When a conversation is over, it is genuinely over.
In practice, "nothing left behind" means:
- No permanent chat history sitting on a server waiting to be exposed.
- No profile of your habits being built quietly in the background.
- No web of who-knows-whom assembled from your contacts.
- No trail of where you were when you sent a message.
We also gave you a hard stop for the moments that need one. Panic wipe erases everything on the device instantly — a single action for when you need to be sure nothing remains. It is the physical embodiment of the whole philosophy: the ability to end up with nothing, on purpose.
Privacy as a Default, Not a Setting
A lot of apps treat privacy as an advanced option — a menu you have to find, understand, and switch on. We think that gets it backwards. Privacy should be the starting state, not a reward for the diligent.
So Zerolog asks for minimal permissions. It works without an account tied to your identity beyond a one-time verification. It can operate entirely offline, over BLE and the local network, with no internet at all. Pairing is approval-based, so no one can message you until you agree — protection from harassment built into the foundation rather than added as a filter. You do not have to configure any of this. It is simply how the app behaves out of the box.
A Standard We Hold Ourselves To
Being built in Türkiye, Zerolog is designed to meet both KVKK and GDPR expectations. But compliance is a floor, not a ceiling. Regulations tell you how to handle the data you collect. Our philosophy is to avoid collecting it in the first place, so that there is far less to handle.
That is the whole idea, and it is refreshingly simple. We can't leak what we never collect. We can't sell what we never gathered. We can't lose what was never there.
If you want to see how this philosophy shows up in specific protections, visit our security page, or read more about our approach on the privacy page.
Whispers between devices. Nothing left behind.