Hacker News new | ask | show | jobs
by laurent123456 2784 days ago
For the record, I'm using SJCL [0] for encryption based on the parameters they suggest, and whenever random numbers are needed I use cryptographically secure ones, so overall I think it should be reasonably secure. I would welcome any third-party audit though. There's some more info about E2EE in Joplin there - https://joplin.cozic.net/spec/

[0] http://bitwiseshiftleft.github.io/sjcl/