push.tt / Company

The company behind push.tt

push.tt is built by RoamGO LLC. We make one thing: push-to-talk for working teams, engineered so that the company running the service cannot listen to it.

Why this exists

Two-way radio has a property nobody puts on the box: anybody within range with a scanner hears your traffic. Digital radio moved the bar slightly — conventional DMR is decoded with equipment that costs less than a handset. Meanwhile every push-to-talk app that replaced radio moved the same conversations onto somebody else's servers, in the clear.

  • On private and org channels, the key is created on member devices and never sent to us
  • Our servers relay ciphertext they cannot read, and do not transcode encrypted audio
  • We would rather ship a limitation we have documented than a badge we cannot support

What we ship

A native Android app for the people doing the work, and a web management console for the people running the operation. An iOS client is in development, and desktop and browser clients follow it.

  • Android handset app — live voice, channels, history, emergency, on-device transcription
  • Management console — provisioning, org posture, audit trail, retention archive
  • iOS, desktop and a browser command centre — in development, and labelled that way on this site
The current push.tt talk screen on Android, showing the push-to-talk ring

How we build it

A small number of decisions we have refused to trade away, because each one is the kind that is impossible to retrofit later.

  • Native clients. Push-to-talk is an audio-latency product; a cross-platform wrapper was considered and rejected
  • One crypto spec, three implementations. TypeScript, Kotlin and Swift must produce byte-identical output, and a test proves it rather than a comment claiming it
  • A boring cipher suite. X25519, HKDF-SHA256 and AES-256-GCM — native on every platform, with nothing exotic to go wrong
  • Consent the server enforces. The switches that weaken privacy return an error until an administrator has acknowledged what they do; the warning is not decoration
The management console settings page, showing the consent-gated org posture switches

What we do not claim

The same list appears on our security page, because a company page that omits it is marketing and the security page becomes the small print.

  • No forward secrecy in v1 — a channel key that is later compromised would open past traffic captured on that channel
  • Public channels are protected in transit and at rest, not end-to-end. The app labels which is which
  • The AI assistant reads plaintext. It is off by default, quarantined to one clearly-marked conversation, and gated on consent
  • Retention is the organisation's choice, and members are shown a notice in retained scopes rather than finding out later

If any of these matter to your deployment, ask us before you buy rather than after. We would rather lose the sale than argue about it in an incident.

Company details

push.tt is a product of RoamGO LLC, a Delaware limited liability company.

Mailing address

RoamGO LLC
1111B S Governors Ave.
Suite 98660
Dover, DE 19904
United States

Telephone

+1 (302) 608-0756

General enquiries

hello@push.tt

Questions before you commit?

Ask them now. We will tell you what push.tt does not do as readily as what it does, because the alternative is finding out during an incident.