Security, in plain words.
What Kintaya guarantees, what is in place, and where to find the proofs.
The server sees nothing
No secrets, no shares, no keys. Everything is encrypted in your browser.
Safe by the maths
Quorum sharing offers unconditional security for small secrets, and quantum-resistant encryption for large ones.
Without Kintaya
Reconstruction is public and works even if we disappear.
Trust and assurance
Data hosted in the European Union (Neon).
Strict CSP and continuously-enforced zero-knowledge guard.
Application-level encryption of the watch registry; master key held out of the database, backed up by offline threshold sharing.
Independent external audit, then aiming for CSPN certification.
Open source and reproducible builds.
Our self-assessments are stated as such, never presented as a third-party audit.
Time lock: a secret placed under a time lock depends, for its opening at the chosen date, on a third-party public network (drand), not on Kintaya. .
Guarded delivery: Kintaya watches activity, never content, and keeps, encrypted, an opening code that is mute on its own: it opens nothing without the file delivered to its recipient on day one. Relaying the code depends on Kintaya; with a guaranteed opening date, the lock lifts on that date and the recipient can open on their own. .
Report a vulnerability
Good-faith research is welcome: no prosecution, indicative timelines, no reward.
A PGP key is referenced in security.txt.
Key fingerprint: B187 40A3 79E2 1B1F 711C CC8D CBF7 842B FD5B 46E7