Loxnote’s privacy isn’t a policy you have to believe — it’s an architecture that makes the alternative impossible. Here’s exactly how it works.
This table is the whole product. Every endpoint we ship is reviewed against it.
Held only on your devices, under keys we never receive.
A breach of our servers yields ciphertext and counters — nothing readable.
We design for the bad day — a breach, a subpoena, a lost laptop. Here’s the outcome of each.
Modern, audited, crypto-agile — with reproducible builds and a public bug bounty.
Every object carries its algorithm IDs, so we can rotate ciphers and migrate to post-quantum without re-encrypting your life.
Argon2id stretches your password to a master key that never leaves the device. The server holds no master key, and no backdoor.
Published external audit before GA, an ongoing bug bounty, CRA-compliant disclosure and a periodic transparency report.
A detection order to scan your notes is something we are technically unable to satisfy — because we cannot read content in the first place.
You don’t have to take our word for any of this. Our clients are open-source, our builds are reproducible, and independent auditors check our cryptography before every major release.
Each release ships with a signed checksum and an audit attestation you can check yourself.
EU company, EU servers, EU sub-processors. No Schrems II asterisks, no transfer-risk footnotes.
Art. 32 by design · DPA on request
Cyber-Resilience disclosure ready
Frankfurt + Helsinki only
Type II in progress · evidence pack
Start free, or talk to us about a DPA, audit pack and EU data-residency guarantees for your organisation.