Skip to main content

Security insights

Encryption, Privacy and Secure Sharing

Long-form writing on how encryption actually works, what the common claims mean, and how to move sensitive information around without leaving copies behind. Written by the people who build the product being described.

Security writing on the open web has a quality problem. A great deal of it is produced at volume by writers who have read specifications but never shipped the thing being described, and it shows: the advice is defensible in principle and useless in practice.

Everything here is written or technically reviewed by someone who has worked on the relevant code, checked against primary sources, and dated so you can judge whether it has gone stale. The process is documented on our editorial policy page.

All articles

Read Why Chat History Is a Long-Term Security Liability
11 min read

Why Chat History Is a Long-Term Security Liability

Every message you keep is an asset today and a liability later. Why retention is a security decision, and how to work out what your archive is actually holding.

By Inkrypt Editorial

Read article
Read Why You Should Never Send Passwords Over Slack or Chat
10 min read

Why You Should Never Send Passwords Over Slack or Chat

A pasted credential does not sit in one place. It sits in four, each with its own retention rule — and deleting your copy reaches exactly one of them.

By Inkrypt Editorial

Read article
Read Why Authenticated Encryption Matters More Than Key Size
10 min read

Why Authenticated Encryption Matters More Than Key Size

Key length decides whether an attacker can read your data. The cipher mode decides whether they can change it unnoticed — and only one of those fails silently.

By Inkrypt Security Team

Read article
Read What Is a Salt, and Why Does Every Record Need Its Own?
9 min read

What Is a Salt, and Why Does Every Record Need Its Own?

A salt is not a secret and does not make one password harder to guess. What it does is destroy the economics of cracking many at once. A worked example.

By Inkrypt Security Team

Read article
Read PBKDF2 vs Argon2: Choosing a Key Derivation Function
10 min read

PBKDF2 vs Argon2: Choosing a Key Derivation Function

Why memory-hardness is the real difference between PBKDF2 and Argon2, what each costs an attacker, and when the older function is still the right answer.

By Inkrypt Security Team

Read article
Read How the Web Crypto API Works in the Browser
11 min read

How the Web Crypto API Works in the Browser

What window.crypto.subtle actually does, the four calls between a password and stored ciphertext, and the mistakes that survive code review.

By Inkrypt Security Team

Read article
Read How to Judge an Encrypted Note Service
Isometric illustration of an encrypted note being inspected: a plaintext panel and a key rest on a glass platform, while the same note reappears as ciphertext behind a magnifying lens
11 min read

How to Judge an Encrypted Note Service

How to evaluate an encrypted note tool: the recovery question, a one-minute browser test, where the key travels, and what deletion actually means.

By Inkrypt Security Team

Read article
Read How to Share Passwords Securely Online
Diagram illustrating the process of how to share passwords securely online using encrypted links and password managers
18 min readUpdated September 2, 2026

How to Share Passwords Securely Online

The safest ways to share passwords online, why plain text credentials in email or chat are risky, and how secure sharing tools help protect your data.

By Inkrypt Editorial

Read article
Read Self-Destructing Notes vs Encrypted Email: Which Is Safer?
Comparison graphic showing self-destructing notes versus encrypted email for secure communication
17 min readUpdated September 2, 2026

Self-Destructing Notes vs Encrypted Email: Which Is Safer?

Learn the difference between self-destructing notes and encrypted email, when to use each for sensitive information, and how to protect confidential data.

By Inkrypt Editorial

Read article
Read AES vs RSA Encryption: Why We Encrypt Notes With AES-256-GCM
Diagram comparing AES symmetric encryption to RSA asymmetric encryption showing how encryption keys protect data
12 min readUpdated September 2, 2026

AES vs RSA Encryption: Why We Encrypt Notes With AES-256-GCM

AES vs RSA encryption explained, then the decision itself: why Inkrypt encrypts note content with AES-256-GCM, and why RSA was the wrong tool for it.

By Inkrypt Security Team

Read article
Read Client-Side vs Server-Side Encryption: What Is the Difference?
Diagram comparing client-side encryption versus server-side encryption, showing where the encryption key lives in each model
15 min readUpdated September 2, 2026

Client-Side vs Server-Side Encryption: What Is the Difference?

Learn the difference between client-side encryption and server-side encryption, how they protect your data, and which option is best for your privacy needs.

By Inkrypt Security Team

Read article
Read Encrypted Notepad Tools With No Signup
Illustration of an encrypted notepad used without signup, showing private notes secured directly in a web browser
23 min readUpdated September 2, 2026

Encrypted Notepad Tools With No Signup

How browser notepads that need no account work: where notes are stored, what happens when the tab closes, and how five real tools compare.

By Inkrypt Editorial

Read article
Read What Is Zero-Knowledge Encryption? How It Protects Your Data
Diagram illustrating how zero-knowledge encryption works — encryption key stays on the user device, only ciphertext reaches the server
15 min readUpdated September 2, 2026

What Is Zero-Knowledge Encryption? How It Protects Your Data

Zero-knowledge encryption explained: what it means, how it works, how it differs from standard cloud encryption, and how to verify a service really uses it.

By Inkrypt Security Team

Read article