Corporate messaging built for privacy.
Self-hosted — your server, your data.
Fast, private messaging with the tools teams use every day — running entirely on infrastructure you control.
A persistent outbox, idempotent delivery and a monotonic cursor mean a dropped connection never loses a message — it resumes exactly where it stopped.
1:1 and group calls over WebRTC, relayed through your own TURN server with UDP, TCP and TLS transports for restrictive networks.
Employees sign in with the credentials they already have. Accounts are provisioned on first login — or created by an admin when there is no directory.
Manage users and groups, force a sign-out, reset a password. Every administrative action and every sign-in attempt is logged, with CSV export.
Share any file type up to 60 MB, record voice messages, and search the entire history. Files are encrypted on disk and streamed back on demand.
Scheduled database and file backups with off-site copy and retention. Restoring is drilled, not assumed — measured at roughly six seconds.
No vendor cloud, no third-party servers. Hexeris runs where you tell it to.
One docker compose up on your own machine, behind your domain. Self-hosted from the first minute — no vendor cloud.
Connect Active Directory and people sign in with the credentials they already have — or create accounts from the admin panel when there is no directory. Public sign-up stays off by default.
Messaging, groups, calls, files and search — synced across every device, installable as an app on desktop and mobile.
Because it's your server, security isn't a promise from a vendor — it's a setting you control.
Message bodies are encrypted in the database with AES-256-GCM and files on disk with AES-256-CTR. The key lives on your server and nowhere else.
This is not end-to-end encryption, and that is a deliberate choice: compliance archiving, audit and lawful internal review all require it. If you need E2EE instead, Hexeris is the wrong tool and we will say so.
Successful and failed sign-ins are logged with account, IP, user agent and reason. It answers the first question any security team asks, and explains why a rate limiter locked someone out.
Message and audit retention are yours to set. The sign-in log is personal data, so it is purged on its own schedule — even when general retention is switched off.
Every number below comes from a test we can re-run. The conditions are stated because numbers without conditions mean nothing.
The known limitations, in the same detail as the strengths: a single application instance is a point of failure, there are no native mobile apps yet, and no external penetration test has been carried out. A file link works for any authenticated user who has it.
We publish this because you will find it anyway during technical review — and because a vendor whose weaknesses you have to discover yourself is the more expensive kind.
A clean, focused interface your team will actually enjoy using — on desktop and mobile.
A typical SaaS chat app puts your conversations on someone else's servers. Hexeris doesn't.
Deploy Hexeris on your own infrastructure in minutes — no vendor lock-in, no per-seat billing.