> There's also no server at all besides a free Cloudflare static site. The encrypted bundles of passwords and photos are in Cloud Kit. Sign-in/identity is a passkey Face ID/Touch ID or a Hardware Key. It's all Crypto Kit, so there's no dependencies required.
To me, this clearly implies that there’s a server involved… Apple’s server. Am I wrong?
> What is not done
Rewrite this Readme without Claude?
Also
> There's also no server at all besides a free Cloudflare static site. The encrypted bundles of passwords and photos are in Cloud Kit. Sign-in/identity is a passkey Face ID/Touch ID or a Hardware Key. It's all Crypto Kit, so there's no dependencies required.
To me, this clearly implies that there’s a server involved… Apple’s server. Am I wrong?
> If you don't log into the app for months
> After 90 days of countdown, 21 days of warnings, and 14 days of grace, the envelope opens
vs
> it needs that company to still exist and be honest on the day it matters
> there's no company in the middle
which is it?
there's no middleman, but also I need to log in to your app regularly to avoid being declared dead?
> the keys never leave the phones, and the record of who did what can be checked with a script that has no Seal in it.
What happens if someone loses their phone or buys a new phone? What happens if they forget to tell you that they need a new key?