Remote access, with servers in Turkey
With most remote access tools, sessions are set up through cloud infrastructure abroad. With SkyyDesk, both the ID server and the relay server run in ELPO Bilişim's data centre in Turkey. This page answers the questions organisations ask when they have to document where their data travels.
Where session traffic goes
The two devices first find each other through the ID server. If the networks allow it, the connection is made directly between the devices and the screen image passes through no server at all. If a direct path cannot be made, traffic goes through the relay server, which only forwards encrypted bytes and cannot decrypt the content.
Encryption
- NaCl / libsodium: XSalsa20-Poly1305 symmetric encryption, Curve25519 key exchange
- A separate key is generated for every session; keys exist only at the two ends
- The server's Ed25519 public key is built into the client, so the client will not connect to an impostor server
What the server keeps, and what it does not
- Connection records
- Which ID connected to which, when, and from which IP address. Kept to set up sessions and detect abuse, for at most 12 months.
- Account and device records
- Name, email, device name, operating system and app version, for as long as the account stays open.
- Not kept
- The screen image, audio, keyboard and mouse input of a remote session, and the content of transferred files. The apps contain no analytics or ad tracking.
The full list, legal basis and your rights are in the Privacy policy.
Infrastructure
The servers run on ELPO Bilişim's own physical machines with Debian 12, not on virtual machines. SkyyDesk apps connect to no service other than ELPO Bilişim's own servers.