Ethereal / Experiment 003
WHAT IF A CONVERSATION DIDN’T HAVE TO LAST FOREVER?
The Right to Fade · Status: Early research
Digital communication is commonly copied, backed up, forwarded and retained long after its original purpose has passed.
The Right to Fade investigates whether people could have greater control over who reaches them, what remains and when communication ends—without removing a recipient’s ability to preserve evidence of harm.

Research question: can digital communication be private, temporary and consensual without allowing abuse to escape accountability?
The impossible promise
CAN A MESSAGE DISAPPEAR COMPLETELY?
Not with an absolute guarantee.
Once information is visible to another person, they may photograph the screen using another device, remember it, transcribe it or reproduce it elsewhere. A responsible system should therefore distinguish between:
- Preventing ordinary digital capture
- Discouraging unauthorised copying
- Deleting controlled copies
- Limiting future access
- Promising the impossible
A message can be designed to fade. It cannot be guaranteed to have never been remembered or recorded.
What technology can do
Capabilities, directions and limits
Each of these may be possible where supported. Each requires testing. None is guaranteed.
End-to-end encryption
Possible direction
Keep message content between authorised endpoints
Limit
Does not control what a recipient does after viewing
Timed deletion
Possible direction
Remove controlled application copies
Limit
Cannot guarantee removal from screenshots, cameras or exports
Screenshot blocking
Possible direction
Available in some native operating-system contexts
Limit
Not universal across devices, browsers and external cameras
Screen-recording response
Possible direction
Detection or concealment may be possible in some native contexts
Limit
Platform-dependent
Forwarding restrictions
Possible direction
Prevent forwarding inside the originating application
Limit
Cannot stop manual reproduction
Watermarking
Possible direction
Deter leaks and associate a viewed copy with a recipient
Limit
Does not physically prevent capture
Connection consent
Possible direction
Control who can request access
Limit
Cannot prevent every attempt through new or fraudulent identities
Evidence preservation
Possible direction
Allow recipients to retain selected harmful material
Limit
Conflicts with an absolute disappearance promise
The ethical conflict
PRIVACY FOR WHOM?
The right to fade
Embarrassing, intimate or context-specific communication should not automatically become a permanent searchable record.
The right to prove
A person receiving threats, harassment, coercion or abuse may need reliable evidence.
Can a system reduce unwanted permanence while ensuring that protection never becomes a tool for the powerful or abusive?
This is unresolved. We are not proposing a feature that settles it.
Consensual connection
CONTACT SHOULD BE PERMISSION, NOT POSSESSION.
- Exact invitation
- Mutual approval
- Temporary connection
- Group-only contact
- One-message access
- Time-limited access
- No telephone-number exposure
- No public people directory
- Revocable access
- No private contact simply because two people share a group
Knowing someone’s number should not confer permanent access to their attention.
These are research directions, not currently verified ONE capabilities.
Conversation modes
Three conceptual modes
Ordinary
Persistent, encrypted communication under normal user controls.
Fading
Both participants agree that controlled copies should expire after a defined period.
Protected
Capture-resistant presentation where devices permit it, with explicit limitations.
Protected does not mean impossible to photograph. A second camera defeats every mode.
Safety vault
IF SOMETHING MUST FADE, WHO MAY CHOOSE TO KEEP IT?
- Recipient deliberately preserves selected content
- Sender cannot remotely erase protected evidence
- Recipient chooses whether to disclose it
- Service operators should not receive automatic access
- Export integrity and provenance require specialist research
- Evidence status would depend on law and context
The Safety Vault is a research concept. Quinn Labs does not claim legal admissibility, evidential integrity or production security.
The native device question
What the platform allows
- A browser-based PWA cannot provide universal control over operating-system capture.
- Some Android native applications can request secure-window behaviour that blocks ordinary screenshots and insecure displays.
- Apple platforms offer capture-state and screenshot-related signals, but capability differs.
- No application can stop a second physical camera.
External research references
- Android secure activity guidance
- Apple screen-capture state
- Signal protocol documentation
- Messaging Layer Security RFC 9420
- OWASP cryptographic guidance
Referenced for research only. No endorsement or collaboration is implied.
Research programme
Six workstreams
01 — Human consent
How people understand connection, viewing, expiry and evidence choices.
02 — Cryptography
Recognised protocols, device keys, forward secrecy, group changes and recovery.
03 — Capture resistance
Native operating-system controls, watermarking, previews and external-camera limits.
04 — Safeguarding
Bullying, coercion, grooming, harassment and victim-controlled evidence.
05 — Law and rights
Privacy, deletion, evidence, platform duties, child protection and jurisdiction.
06 — Interaction
How advanced protection remains understandable to somebody who dislikes technology.
No legal conclusions are drawn here.
Potential collaborators
Who this needs
- Cryptographers
- Security engineers
- Safeguarding specialists
- Domestic-abuse organisations
- Youth organisations
- Digital-rights researchers
- Legal scholars
- Platform engineers
- Human-computer interaction researchers
- Universities
- Victim-support organisations
No organisation is named, shown or implied to be participating.
ONE connection
FROM RESEARCH TO PRODUCT—CAREFULLY.
ONE is a Quinn Labs communication experiment exploring simpler, more intentional messaging.
The Right to Fade may inform future consent, connection and safety principles within ONE.
No security capability should move from research into public product claims without:
- Specialist implementation
- Threat modelling
- Safeguarding review
- Legal assessment
- Independent penetration testing
- Independent cryptographic audit
- Published limitations
Grand challenge
THE AIM IS NOT A MESSAGE THAT MAGICALLY NEVER EXISTED.
THE AIM IS COMMUNICATION THAT DOES NOT TAKE MORE PERMISSION, ATTENTION OR PERMANENCE THAN PEOPLE INTENDED.
Open questions
Still unanswered
- Who controls expiry?
- Should both people have to agree?
- Can a recipient always preserve evidence?
- What happens when devices are offline?
- What happens when somebody joins or leaves?
- Can backups honour the same agreement?
- How should capture attempts be communicated?
- Does watermarking protect or intimidate?
- How can children understand these choices?
- Could fading communication increase abuse?
- What evidence should a service provider retain?
- How is metadata minimised?
- What does meaningful consent look like under pressure?
Contribute a research question
Concept disclaimer
The Right to Fade is an independent Quinn Labs research concept.
It does not represent a production security system, legal solution, safeguarding service or guarantee that communication can be made impossible to capture.
Any implementation would require specialist engineering, platform-specific development, extensive safety work and independent review.