Server-side search, previews and link graph: state the trade #69
Labels
No labels
area:docs
area:identity
area:ops
area:plugin
area:server
channel:community
channel:direct
channel:owned
channel:press
channel:social
e2ee-constrained
gate:at-ga
gate:pre-ga
marketing
parity
relay:absent
relay:planned
relay:requested
relay:supported
risk:additive
risk:contract
risk:none
usability
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set
Reference
Nectenda/nectenda#69
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Part of #37. Not a gap to close — a trade to state.
What Relay does
Their server reads plaintext, so server-side search, previews, a link graph and
cheap permission checks are all available to them. Their docs are candid about
the cost: cloud hosting is "traditional SaaS software without end-to-end
encryption", and "we could be compelled to (eg by a court)".
What we can never do
Our server stores opaque ciphertext under HMAC'd document names and never
materialises a document. Server-side search is impossible by construction,
not unimplemented.
Why this is an issue rather than a note
Because it will be asked, and the answer needs to be written down once and
consistently.
docs/positioning.mdalready has the shape for the read-onlyversion of this argument: "the reason we cannot offer cheap read-only roles is
the same reason we cannot read your notes." The same sentence works here.
Local search in Obsidian is unaffected — the vault on disk is plain markdown.
What is lost is search across devices you have not synced, which is a narrower
loss than it first sounds and should be described precisely rather than waved
away.
Action
A section in
docs/security-model.mdand a line indocs/positioning.md.No code.
Moved to the Vikunja board as NEC-45: https://projectron.nerchure.com/tasks/45