|
|
|
|
|
by btown
1402 days ago
|
|
Encryption keys could themselves be encrypted with a password that the user would type, that is only ever saved in browser local storage, or even only in memory and needs to be retyped on each pageload. There's nothing preventing the government from forcing Meta to implement a backdoor that exfiltrates the unencrypted key, of course, but that's true of non-web-based systems as well. |
|
Genuinely asking as I would love to implement something for my customers which gives them control over their data while it resides on my servers.