Facebook starts testing opt-in end-to-end encryption in Messenger; chats visible on one device on each end, messages can self-destruct after a pre-set time
but there's a catch Evan Selleck / iPhone Hacks : Facebook Messenger Testing Secret Conversations with End-to-End Encryption Adrian Diaconescu / Pocketnow : Facebook Messenger kicks off end-to-end encryption trial run Carly Page / Inquirer : Facebook Messenger is getting end-to-end encryption István Fekete / iPhone in Canada Blog : Facebook Messenger Starts Rollout of Encrypted Conversations Andrew Grush / Android Authority : Facebook begins testing end-to-end encryption option Mike Masnick / Techdirt : Facebook Experiments With End To End Encryption In Messenger Iyaz Akhtar / CNET : Facebook adds encryption to Messenger Barb Darrow / Fortune : Facebook Secret Conversations Will Shield Messages from Prying Eyes Ben Lovejoy / 9to5Mac : Facebook testing end-to-end encryption in Messenger, branded Secret Conversations Joseph Keller / CrackBerry.com : Facebook starts testing ‘secret conversations’ in Messenger with end-to-end encryption Ian Paul / TechConnect : Facebook brings end-to-end encryption to Messenger with ‘secret conversations’ Alexandra Vaidos / Softpedia News : Facebook Testing End-to-End Encryption on Messenger Tweets: Kevin Gauthier / @kvgauthier : Messenger adds encrypted conversation. Paves the way for banking #chatbots to do #convcomm http://www.facebook.com/... http://twitter.com/... Nate Cardozo / @ncardozo : WhatsApp going full e2e was HUGE. I understand why FB didn't go e2e-by-default in Messenger, but I don't agree. http://gizmodo.com/... Fenrir / @semibogan : Having encryption “on some messages” is like having tourniquets on some limb losses. Alex Stamos / @alexstamos : @csoghoian @lorenzoFB So you can have 1) Opt-In (FBM) 2) No verification (iMessage) 3) Out-of-band key sync (Signal). No magic bullet.
Context & Ripple Effects
Facebook is bringing Signal-style encryption to its biggest chat surface, but as an opt-in 'Secret Conversations' mode rather than a default — Motherboard's reporting attributes that choice to the inability to store keys in browsers and reluctance to make big UX changes (why it isn't on by default). The design details matter: chats are visible on only one device per end, and messages can self-destruct after a pre-set time.
The arc runs long: this test precedes a full rollout of Secret Conversations to all 900M+ users that October, and five years later Facebook extends the same playbook to end-to-end encrypted voice and video calls plus Instagram DMs. The test is the first step in making encryption a feature you enable rather than a property of the network.
First-order effects
- Messenger users gain per-conversation encrypted threads tied to a single device on each end, with optional self-destruct timers — but only if they find and enable the mode.
- Facebook keeps plaintext access everywhere else: because keys can't be stored in browsers and the company won't force a UX break, the default Messenger experience stays unencrypted.
Second-order effects
- WhatsApp, which already encrypts by default within the same company, becomes the internal benchmark — Messenger's opt-in framing highlights how far behind Facebook's largest messenger sits relative to its own acquisition.
- Rival messengers face pressure to match the feature set (device-bound sessions, disappearing messages) without necessarily matching WhatsApp's default-on posture, keeping encryption a differentiator rather than table stakes.
Third-order effects
- If the pattern holds — opt-in text in 2016, encrypted calls and Instagram DMs by 2021 — Facebook normalizes encryption as an expandable option layered onto ad-supported platforms, preserving server-side flexibility for everything users don't explicitly encrypt.
- The browser key-storage limitation points toward a structural split in secure messaging: native apps able to hold keys versus web clients that cannot, shaping which surfaces can ever be fully encrypted.
The trend: Consumer messaging platforms are rolling out end-to-end encryption incrementally as an opt-in feature before extending it across text, calls, and adjacent apps — with defaults lagging years behind capability.