Show HN: Encryption as a Service

(rypt.dev)

3 points | by levidurfee 7 hours ago ago

2 comments

  • annrap1d 4 hours ago ago

    This is really nicely done. One question. Since you state 'this is not zero-knowledge' because plaintext briefly hits your API over HTTPS, what precise architectural isolation protects that plaintext in memory while it is being encrypted?

    • levidurfee 2 hours ago ago

      That's an excellent question! It's currently running on Google Cloud Run, which to my knowledge, doesn't offer any encrypted memory options. So, as of now, there isn't any architecture in place to protect the plaintext.

      It's definitely something we've thought about. And something we may pursue.