OTR Messages

Off-the-record (OTR) messaging is a feature that allows users to exchange temporary, encrypted messages directly with each other. This happens by using the local, non-persistent session storage of their browser rather than storing messages on the Rocket.Chat workspace. After an OTR session ends and the session storage is cleared, the OTR messages are removed and can no longer be restored.

  • This feature is deprecated and will be removed in version 8.0.0

  • This feature is currently in beta. Search operations will not find encrypted messages of encrypted rooms. The mobile apps and multi-DMs may not support the encrypted messages (currently under implementation). File uploads will not be encrypted in this version.

  • You can only use the OTR option in direct messages between two users.

Enable and disable OTR

As an administrator, you can enable/disable OTR for your workspace:

  • Go to Administration > Workspace > Settings > OTR.

  • Enable OTR.

Once this setting is enabled, you can begin OTR sessions in DMs.

Use OTR in a DM

To try this, two users must be online and engaged in a conversation in a DM simultaneously. In the DM room, click the kebab menu at the top-right side and select OTR. Click Start OTR to begin an OTR session with the user. The other user must accept the invite. If it is not accepted, the invite expires in a few seconds, and you can try again. During the OTR chat, the two users have the option to Refresh keys for a fresh session and End OTR.