TaskNote uses AES-GCM (256-bit) client-side encryption. This is the gold standard for securing data at rest and in transit. Your notes, tasks, and reminders are encrypted on your device before they ever touch our servers.
Privacy Guarantee: Only you hold the decryption keys. This guarantees mathematical privacy—we couldn't read your notes even if we wanted to.
We don't use just "encryption". We use AES-256-GCM (Galois/Counter Mode).
We don't rely on slow, third-party JavaScript libraries. TaskNote is built on the native Web Crypto API (audited by browser vendors like Google & Mozilla), delivering hardware-accelerated security that doesn't slow you down.
In most cloud apps, the service provider holds the keys. If they get hacked (or subpoenaed), your data is exposed.
With TaskNote, encryption keys never leave your device. This means you have absolute ownership.
"If you can't read it, you can't sell it."
Since we don't have a copy of your key, there is no "Forgot Password" button that can decrypt your data. This is a feature, not a bug.
If you are unsure about any term used above, check the full Glossary
Your Responsibility: Save your key safely (e.g., in a password manager). As long as you have your key, your data is yours forever, accessible only by you.
No. Due to our Zero-Knowledge architecture, your encryption keys never leave your device.
We use AES-256-GCM encryption on the client side to protect notes, tasks, and folder names. This ensures both confidentiality and integrity.
Yes. Every piece of content—including titles, tasks, reminders, and folder structures—is encrypted before syncing.
No. We do not have your private key. It is mathematically impossible for us to read your content.
Because we use the Web Crypto API. While others use slow JavaScript math, we use your device's native hardware acceleration to encrypt data instantly.