Message Apps With a Password — and the One Flaw Every Lock Shares
Putting a password on your messages is easier than it has ever been — per-chat locks, app locks, locked folders. Every one of them has the same tell. Here's what each lock protects, and what each one admits.
You can password-protect messages today. WhatsApp Chat Lock puts individual chats behind your fingerprint or face, iOS 18 can require Face ID to open a whole messaging app, and Samsung's Secure Folder locks a separate workspace on Android. All of them protect the content while confessing the existence — an onlooker sees a lock, a folder, a prompt. The other model is Hush: the "password" is a 6-digit code per contact, typed on a bare keypad, and a wrong entry opens nothing, shows nothing, and admits nothing.
WhatsApp Chat Lock and Secret Code — the closest mainstream analog
Chat Lock is the nearest thing mainstream messaging has to per-conversation privacy. Lock a chat and it leaves the main list for a Locked Chats folder that opens only with your fingerprint, face, or phone passcode. Notifications from locked chats stop showing the sender's name and the message text. That's genuinely good design, and for plenty of people it's enough.
Secret Code, an optional layer on top, goes further: set a custom code and you can make the Locked Chats folder disappear from the chat list entirely. It resurfaces only when you type that code into WhatsApp's search bar — hidden until summoned, which is why it deserves credit as the closest mainstream feature to invisible messaging. Two honest caveats remain. It's one code for the whole folder, so revealing it — or being made to — reveals every locked chat at once. And the feature lives inside WhatsApp, an app whose lock is widely known to exist; anyone who's read an article like this one knows exactly what to type into that search bar next.
Whole-app locks: iOS 18 Face ID and Android's Secure Folder
iOS 18 — Require Face ID for an entire app
On iOS 18 you can long-press most apps and choose to require Face ID (or Touch ID, or your passcode) before they open, and optionally hide an app in a locked, hidden section of the App Library. It's app-level and all-or-nothing: you're locking every conversation in a messaging app, not one thread. When someone taps the icon, iOS asks for your face — politely, visibly, in front of whoever's watching.
Android — Secure Folder and app pins
Samsung's Secure Folder is a separate, locked workspace that holds second copies of your apps: a messaging app inside it keeps its own data behind the folder's own PIN, pattern, or biometric check. Several other Android makers ship an app-lock equivalent that pins individual apps the same way. Both work as advertised. Both are also visible — a Secure Folder icon in the drawer, a lock screen standing where a chat list should be.
Side by side: what each lock shows an onlooker
| App / feature | Locks what | What an onlooker sees |
|---|---|---|
| WhatsApp Chat Lock | Individual chats, one by one | A "Locked Chats" folder in the chat list |
| WhatsApp Secret Code | The whole Locked Chats folder | Nothing — until one code reveals every locked chat at once |
| iOS 18 Require Face ID | An entire app | A Face ID prompt the moment the icon is tapped |
| iOS 18 Hide App | An entire app, off the Home Screen | A locked Hidden section in the App Library |
| Samsung Secure Folder | A separate workspace of apps | The Secure Folder icon and its lock screen |
A lock that shows a lock proves there's a door
Every method above shares one property: it announces itself. The locked folder is labeled. The Face ID prompt fires exactly when the wrong person taps the icon. The Secure Folder wears a padlock on its face. Each protects what's inside while confirming there is an inside — and to anyone with leverage over you, a confirmed door is an invitation to demand the key.
Master keys make it worse. WhatsApp's Secret Code un-hides the entire Locked Chats folder in one stroke — every locked conversation, one reveal. And a biometric prompt in front of the wrong person isn't protection at all; your face is right there. It's a confession with extra steps. Decoy apps carry the same structural flaw from the other direction — why calculator-disguise apps get caught is the story of locks that dress up instead of disappearing.
How Hush answers a wrong code with nothing
Hush replaces the visible lock with a blank surface. The home screen is a numeric keypad — no chat list, no locked folder, no badge. "One code, one person. No master key. Wrong code — nothing happens." The right 6-digit code opens exactly one conversation: the contact you assigned it to. A wrong one leaves the keypad sitting there — no error, no shake, no clue — while the attempt is quietly logged to Security Alerts, a 48-hour record only you see.
- Install Hush — free on iOS and Android — and pick a username. No phone number, no email.
- Add your contact by username or invite link. Requests only go through when they're accepted.
- Choose a 6-digit code for that contact. Every contact gets their own; a second person means a second, unrelated code. No master password exists to set, forget, or surrender.
- Type the code to open the chat — leave it to hide it. The conversation exists while it's open, and the app is a bare keypad again the moment you leave.
- Have the other person set up their side. They accept the request and pick their own code — yours and theirs never need to match, and the chat shows no lock on either phone.
Six digits is a million combinations, and the failure mode is the point: a guess costs the guesser nothing visible but tells you everything, because it lands in your alert log. There's no folder to demand open and no master code whose surrender ends the story — each code is worth exactly one person.
- A visible lock proves there's a door — Hush's answer is to have no visible door. But the app itself is still named Hush on your home screen. Someone can suspect; they just can't prove — the keypad gives away nothing about who, if anyone, is behind it.
- Forgotten codes are unrecoverable, by design. There's no reset flow to socially engineer — which also means no safety net. "I can't open it" can be literally true.
- Hush is invisibility, not encryption. It protects the existence of chats from someone holding your phone, and moves messages over the standard transport security (TLS) modern apps use — it makes no end-to-end encryption claim. If content-level protection is your worry, apps like Signal end-to-end encrypt message content; that's a different problem, solved elsewhere.
Common questions
Is there a master password for Hush?
No — deliberately. A master password is a single point of surrender: whoever obtains it gets everything, and whoever knows it exists knows exactly what to demand. In Hush each contact hides behind their own 6-digit code, so no code proves any other chat exists, and nothing opens all of them.
Are 6 digits enough for a lock like this?
Six digits is 1,000,000 combinations, and the math is only half of it. A wrong entry fails silently — nothing opens, nothing errors — and every attempt is written to Security Alerts for 48 hours. This lock isn't defending a server against software; it's defending a screen against a person with your phone in hand and limited time.
Can someone brute-force the keypad?
They can keep typing, in theory. In practice each wrong try shows them nothing, teaches them nothing, and lands in your alert log — and guessing blind through a million combinations while holding someone else's phone is not a quiet activity. Even a lucky hit would expose exactly one contact, never a folder of them.
Can I put a password on iMessage itself?
Not per conversation — iOS offers no per-chat password for Messages. App-level Face ID locking on iOS 18 is the nearest thing, and it locks everything or nothing. If the goal is one private conversation rather than a locked phone, the practical route is moving that conversation somewhere built for it; the rest of the ways to hide text messages on an iPhone are compared in their own guide.