Every trust and compliance signal in one place.
This hub bundles everything you need to assess Erseni Vault: how we secure your secrets, how we handle data, the measures we take, who processes data on our behalf, our live status and the limits we are honest about.
Jump straight to the detailed pages behind each trust signal.
Every security claim linked to the AGPL-3.0 source file, plus what the design does not protect against.
Our privacy policy: what data we process, on which legal basis and for how long.
DPA under Art. 28 GDPR including technical and organisational measures and our deletion concept.
Live operational metrics: active secrets, deployed build SHA, cryptography details and rate limits.
A step-by-step walkthrough of the zero-knowledge encryption flow.
The machine-readable manifest of the deployed build, so you can verify what is running.
Our security contact and vulnerability disclosure details, per RFC 9116.
The legal entity behind Erseni Vault and how to reach us.
Free for personal use plus EU-hosted paid plans for teams. See all tiers.
The core measures that protect secrets handled by Erseni Vault.
External providers that may process data on our behalf while operating the service.
Mail, analytics and error tracking run on instances we operate ourselves, with no third party involved:
Full list of subprocessors with purpose, region and privacy notices: Subprocessors
The complete and authoritative list of subprocessors is maintained in our Privacy Policy
Using Erseni Vault with an account is entirely optional and changes only which metadata we keep, never the content.
We would rather be honest about the limits than overclaim. These are the ones you should be aware of.