Client for Lavabit‘s Encrypted Proxy
About this app
The Lavabit encrypted proxy service is a simple to use, super fast, completely secure service. The service is a completely free public service. No user account or personal information required. It's simply our way ensuring you no longer have any excuse to let anyone log and bog you (down with ads).
Why should you use the Lavabit Encrypted Proxy?
* We do not record anything about how you use the Internet * We do not invade your display with ads * We do not sell, give or share your data with anyone * We do not have any limits on how much or how fast you can download * We do not require a user account * We do not charge anything for this free service * We use fully encrypted physical servers to provide you with the best service • We safely mask IPv4 and IPv6 traffic * We use strong encryption to provide PERFECT FORWARD SECRECY for your surfing sessions.
How does Lavabit Encrypted Proxy work?
With the Lavabit Encrypted Proxy, we use Virtual Private Networking (VPN) technology to provide an encrypted pipeline for all your Internet traffic. It's a secure tunnel between your computer and the Internet backbone. Right past any peepers that might be up to no good. From our servers, you can access the Internet without censorship, or surveillance. What's more, the websites and servers you access will no longer see your identity, or rather your IP address, but will instead see the generic proxy address we provide.
Using a Lavabit Encrypted Proxy is a great first step toward protecting your privacy, and taking backing control over what personal information you share, and with whom.
Note, both the app and backend services have been built using F/OSS software, however this specific app variant is tied specifically to the VPN servers operated by Lavabit.
Licensed under GPL-3.0-only, by Lavabit LLC.
What's New in v1.0.2
Imported from the F-Droid repository index.
Version history
Apr 23, 2022 · 19.8 MB · Android API 16–30 · code 202
Imported from the F-Droid repository index.
SHA-256 700d0cdc53eea321cfb2da25ca01707ba9a508d35419ea0877d520148a6fb906
May 5, 2021 · 19.4 MB · Android API 16–30 · code 201
Imported from the F-Droid repository index.
SHA-256 c091f6b50318c4cfb8d2edc175264cd82e03b9e2469889f8bbb9467bc2d405a2
Will it run on your device?
87%
- Runs on a broad range of modern Android versions.
- Multiple CPU architectures are covered.
Installation Guide
Open Settings on your Android device
Go to Security → Unknown sources (or Install unknown apps)
Enable "Allow from this source" for your browser or file manager
Open the downloaded APK file from your Downloads folder
Tap "Install" and wait for installation to complete
Launch the app from your home screen
Make sure to re-enable Unknown Sources restrictions after installation for security.
How to install this safely
How to verify the file you downloaded
Before you install anything, confirm the file is the one described here. On a computer, run shasum -a 256 your-download.apk (macOS or Linux) or certutil -hashfile your-download.apk SHA256 (Windows), then compare the output character-for-character with the SHA-256 on this page. If a single character differs, the file is not the build we recorded — delete it.
What the signing certificate proves
Every Android app is signed with a private key that only its developer holds. The fingerprint on this page is a hash of the matching public certificate, and it proves continuity rather than identity: it tells you a build came from whoever signed the earlier ones. Android enforces this at install time — if a package claiming to be com.lavabit.pahoehoe is signed with a different key, the system will refuse to install it over your existing copy. A fingerprint that changes between releases is worth pausing on, because a repackaged app that has been modified by someone else cannot keep the original signature.
How to roll back to an earlier version
If the current release misbehaves, 1.0.1 is the last build before it. Android will not install an older version code over a newer one, so you must uninstall Lavabit Encrypted Proxy first — which clears its local data unless you have a backup. Reinstall the older APK only if its signing fingerprint matches the build you already trust, and check the API range: an older release may target an Android version your device has moved past.
Why we list sources instead of hosting everything
The official store channel is almost always the right choice: it updates automatically and carries the publisher's own distribution guarantees. A direct APK is useful when a device has no store access, when a rollout has not reached your region, or when you need a specific version — and only when the publisher has authorized that copy. APKBrowse does not list pirated, cracked, or unauthorized rebuilds of Lavabit Encrypted Proxy, and a listing is removed when the evidence for it stops holding up.
Get Lavabit Encrypted Proxy
Every source we list for com.lavabit.pahoehoe is legality-reviewed. Pirated or cracked builds are never offered.
Other sources
F-Droid listing
officialF-Droid builds this app from source and signs it. This is its official listing, with older builds and full release notes.
Source code
verified publisherThe upstream repository this build is compiled from.
We check legality and signature continuity, but device behaviour still varies. Install at your own discretion.
App Information
Security Verification
We record provenance; we do not run malware scans. Verify the hash yourself before installing.
SHA-256 Hash
700d0cdc53eea321cfb2da25ca01707ba9a508d35419ea0877d520148a6fb906
Signing certificate
b929841e46033943c7d08222012d6f85c175e03109c044916dbd074677ce8d07
Permissions Required
Previous Versions
The signing certificate fingerprint for this release is on record, so a build that does not match it did not come from this publisher.
Report a problem with this listing
A listing is only as good as its corrections. If a source is broken, a signature looks wrong, or this app should not be here, tell the moderation team.