How does XMTP establish a secure relationship between two identities that cannot be spoofed?

Wallets sign and advertise a set of regularly rotated keys that can be used to establish a shared secret for encryption using another wallet’s keys. These keys attest to the authenticity of both wallets and are required in order to add messages to their conversation. No third-party clients or relayers are involved in this process.