Given the fact that the most of zero click 0-day exploits were targeting iMessage, I'd disagree with your statement.
They have the decryption keys
https://telegram.org/faq#:~:text=To%20protect%20the%20data%2....
But the comment that kicked off the thread was the one about privacy.