Saturday, May 22, 2021
End to End Encryption (E2EE) for chats
From the beginning, LibraryH3lp has been designed as a privacy-first application. Guests chat anonymously as there is no requirement or option for guests to enter any sort of identifying information such as email address or name to begin a chat. As a customer, you are the main custodian of your subscription data and control your internal users, queues, and transcript retention (which is an opt-in feature). In this vein, we are excited to offer a new optional feature for web-based chats -- end-to-end encryption.
Released as follows:
- Canada: May 22, 2021
- Europe: May 29, 2021
- Singapore: May 29, 2021
- Main (North America): June 20, 2021
What is end-to-end encryption (E2EE) and off the record messaging (OTR)?
End-to-end encryption (E2EE) means that only the two parties (ends) participating in a chat can read the messages. No one else (including LibraryH3lp support personnel) can read the messages because the messages are encrypted. The specific cryptographic protocol used to encrypt chat messages is Off the Record Messaging (OTR).
As a further proof against man-in-the-middle (MITM) eavesdropping, operators answering chats in the webclient for staffing can optionally provide the private key from a Digital Signature Algorithm (DSA) key pair so that the guest's chat box (which has the matching public key fingerprint) can confirm that the answering operator is authorized to communicate with the guest.
Note: E2EE/OTR is not available nor planned for SMS (texting) chats.
Wait. Aren't chats encrypted by default?
Yes. Even without setting up E2EE, guest chat boxes use HTTPS by default and the operator's webclient for staffing always uses HTTPS. With HTTPS, chat messages are encrypted in transit over the network. However unlike with E2EE chats, these chat transcripts can also be read by authenticated users that have appropriate permissions in Chat History while a chat is active, and also after a chat has ended if transcript storage has been enabled. Chat transcript retention provides the ability for later access and can be useful for things like training, data assessment/analysis, and personnel review.
![]() |
| Even though this OTR chat is active, its transcript cannot be seen in Chat History. |
If my chats are already encrypted, why would I want to set up E2EE/OTR?
Actually we anticipate that most customers will not set up E2EE/OTR, since messages are encrypted in transit via HTTPS and the ability for later transcript review is an important part of quality assurance, assessment, and training for many organizations.
However customers in countries with very strong data privacy regulations or any customer with stringent privacy requirements might be interested in E2EE. For example, if E2EE is configured, then there is no way for LibraryH3lp support staff to access chat transcripts, and that can be an important feature.
Generally how does OTR work?
How do I enable OTR for my chat box skins?
Friday, January 15, 2021
Updates to the Chat Box for Guests
We recently announced a new emoji set for the chat box that guests use on your website and teased that there were more changes to come. We've made good on that promise with even more chat box improvements.
These improvements are being rolled out progressively across our service regions.
- sg.libraryh3lp.com: released January 15, 2021
- ca.libraryh3lp.com: released January 29, 2021
- eu.libraryh3lp.com: released January 31, 2021
- libraryh3lp.com (main server): coming soon!
Simplified Mobile Experience
Previously, we offered two separate layouts for the chat box -- one layout was shown to guests chatting using a desktop or laptop and one layout that was shown to guests using smaller mobile devices like phones. Now guests will see the same chat box layout no matter what device they choose to use to chat with you.
The history behind the two layouts stems from the early days of mobile where there was spotty support for chat box features such as file upload and even reliably getting the Enter button to send a message. These days mobile devices are much more sophisticated and support for all the chat box features is commonplace.
Bug Fixes
1) The chat box should clearly identify the sender of an uploaded file or image. It used to be that the upload was always attributed to the operator. One caveat with this bug fix is that on occasion the guest may still encounter the original behavior within Chrome; we expect that Chrome will iron out that remaining wrinkle with a future update.
2) When a guest pops out the chat box on a web page (like you can do with our support chat box in the sidebar of this blog) into a separate window, the conversation will update in real time in both places. It used to be that only the operator's messages updated in real time in both places. Now the messages from the guest will also appear.
![]() |
| Embedded chat box screenshot showing the pop-out button |
Even more to come!
Thursday, December 31, 2020
Updates to Chat Box and Webclient for Staffing
On the heels of recent updates to the webclient, 3mail, and admin dashboard, we're updating the chat box for guests too! We have more changes to the chat box in the works, but to kick things off we've modernized and expanded the emoji available to guests and operators during a chat.
The new emoji set is being rolled out progressively across our service regions.
- sg.libraryh3lp.com: released December 31, 2020
- eu.libraryh3lp.com: released January 8, 2021
- ca.libraryh3lp.com: released January 8, 2021
- libraryh3lp.com (main server): January 16, 2021
Emoji for Chat Box
On the guest's side, the new emoji (as with the old emoji) can be inserted into a chat via shortcuts typed as part of a chat message.
Emoji in Webclient
On the operator's side, the new emoji (as with the old emoji) can be inserted into a chat via shortcuts typed as part of a chat message or via the emoji selector in the webclient for staffing (screenshots below).




