Skip to content

Standard di Crittografia

Le tue informazioni restano protette in ogni fase — TLS 1.2+ in transito e AES-256-GCM a riposo, con misure di sicurezza standard del settore di cui puoi fidarti.

Protezione dei dati in transito

Tutti i dati trasmessi tra il tuo browser e i nostri server restano protetti tramite TLS.

  • Solo TLS 1.2 e 1.3
  • Suite di cifratura robuste (AES-GCM)
  • HSTS attivo con preload
  • Perfect Forward Secrecy

Protezione a riposo

I dati sensibili memorizzati nel nostro database sono crittografati tramite AES-256-GCM.

  • Cifrario AES-256-GCM
  • Chiavi separate per ogni utente
  • Supporto rotazione chiavi
  • Archiviazione sicura delle chiavi

Cosa Viene Crittografato?

Sempre Crittografato

  • Tutte le comunicazioni API
  • Chiavi crittografiche
  • Credenziali utente
  • Token di sessione

Crittografato a Riposo

  • Materiale della chiave utente
  • Token API
  • Segreti 2FA
  • Codici di backup

Mai Memorizzato

  • Il Suo testo originale
  • Contenuto elaborato
  • Contenuti dei documenti
  • PII rilevato

How Your Data Is Protected

  1. 1

    Encrypted connection

    Every request travels over TLS 1.3 with Perfect Forward Secrecy. No plaintext ever crosses the wire.

  2. 2

    In-memory processing only

    Presidio AI analyzes and anonymizes text entirely in RAM. Your original content is never written to disk or stored in a database.

  3. 3

    Keys derived with Argon2id

    User encryption keys are derived from your password using Argon2id — the winner of the Password Hashing Competition — before being wrapped with AES-256-GCM.

  4. 4

    Zero-Knowledge key storage

    Your wrapped key is stored encrypted. The server never sees your plaintext key or password. Only you can unwrap it.

  5. 5

    Asymmetric option with RSA-4096

    For multi-party workflows, RSA-4096-OAEP encapsulates a session key so only the private key holder can deanonymize output.

Encryption Standards Reference

StandardUse CaseKey / Strength
TLS 1.3Data in transitECDHE + AES-GCM
AES-256-GCMData at rest256-bit
XChaCha20-Poly1305Zero-knowledge key storage256-bit
Argon2idPassword key derivationPHC winner
RSA-4096-OAEP-SHA256Asymmetric key encapsulation4096-bit

Scopra di Più sulla Sicurezza

Visualizzi la nostra documentazione completa sulla sicurezza.