Zero-Knowledge Architecture

TaskNote uses AES-GCM (256-bit) client-side encryption. This is the gold standard for securing data at rest and in transit. Your notes, tasks, and reminders are encrypted on your device before they ever touch our servers.

Privacy Guarantee: Only you hold the decryption keys. This guarantees mathematical privacy—we couldn't read your notes even if we wanted to.

1. AES-GCM: The Gold Standard

We don't use just "encryption". We use AES-256-GCM (Galois/Counter Mode).

  • Authenticated Encryption (AEAD): GCM not only encrypts your data but also ensures its integrity. This prevents any tampering with your notes on the server.
  • 256-bit Security: The highest level of AES protection standard, trusted by governments and security experts worldwide.
  • Hardware Acceleration: Modern devices (phones and laptops) process AES-GCM natively, ensuring your app stays blazing fast even with thousands of notes.

Technical Specifications: Military-Grade & High Performance

We don't rely on slow, third-party JavaScript libraries. TaskNote is built on the native Web Crypto API (audited by browser vendors like Google & Mozilla), delivering hardware-accelerated security that doesn't slow you down.

  • Encryption Algorithm:AES-256-GCM. The industry standard for confidential data.
  • Key Generation:CSPRNG (Cryptographically Secure Pseudo-Random Number Generator). Ensures keys are unpredictable.
  • Integrity Check:AEAD (Authenticated Encryption with Associated Data). Ensures your notes cannot be tampered with or corrupted unnoticed.
  • Performance:Native Hardware Acceleration. Encryption happens instantly using your device's processor instructions.
  • Key Strength:256-bit keys. It would take a supercomputer millions of years to brute-force a single note.

Zero-Knowledge Flow

Your Device
Key stays here
──────────▶ [Encryption] ──────────▶
TaskNote Server
Sees only encrypted blobs

3. True Data Ownership

In most cloud apps, the service provider holds the keys. If they get hacked (or subpoenaed), your data is exposed.

With TaskNote, encryption keys never leave your device. This means you have absolute ownership.

"If you can't read it, you can't sell it."

4. Key Management

Since we don't have a copy of your key, there is no "Forgot Password" button that can decrypt your data. This is a feature, not a bug.

If you are unsure about any term used above, check the full Glossary

Your Responsibility: Save your key safely (e.g., in a password manager). As long as you have your key, your data is yours forever, accessible only by you.

Frequently Asked Questions

Does TaskNote have access to my Encryption Key?

No. Due to our Zero-Knowledge architecture, your encryption keys never leave your device.

What encryption algorithm does TaskNote use?

We use AES-256-GCM encryption on the client side to protect notes, tasks, and folder names. This ensures both confidentiality and integrity.

Does TaskNote encrypt titles and folder names?

Yes. Every piece of content—including titles, tasks, reminders, and folder structures—is encrypted before syncing.

Can TaskNote read my notes?

No. We do not have your private key. It is mathematically impossible for us to read your content.

Why is TaskNote faster than other encrypted apps?

Because we use the Web Crypto API. While others use slow JavaScript math, we use your device's native hardware acceleration to encrypt data instantly.

Ready to write privately?

Create an account and start using TaskNote.

Create account