|
|
|
|
|
by jlongster
2698 days ago
|
|
Yes, you are right. First of all, we're not talking about things like banking passwords or even account numbers, only transactions that you've been charged. But most importantly: this is completely opt-in. If you don't trust me yet, you shouldn't use syncing until I encrypt everything end-to-end. If you only use a single local app, all of your data is entirely local to your device. All other apps that host your data in the cloud have access to it, whether it's encrypted internally or not. What encryption buys you is the case if a hacker happens to get some of your data, they might not be able to decrypt it. But considering that the backend of the app itself must be able to read the data, the backend must be able to decrypt it, so a hacker could probably end up decrypting the data anyway. End-to-end encryption in Actual will be better than all other cloud apps: I, even as someone with full access to the server, will not be able to read your messages. Only your device can. It sounds like what you're really worried about is storing banking passwords unencrypted. We don't do anything like that at all. |
|