PurpleToupee Thank you for reaching out with your concerns about encryption. I understand your confusion. "End-to-end encryption" means that decryption is done on the client side—your PC in this case. This ensures that no one from our server can read the contents of your journal. However, once the data is decrypted on your PC, it is stored in the desktop app using IndexedDB, and we cannot change the storage or encryption methods of this component.
We do not perform decryption at runtime as it does not align with the definition of end-to-end encryption, and doing so could slow down your computer. Additionally, encrypting the database on your device could potentially limit future features, such as client-side search for encrypted entries, while still being susceptible to decryption if someone hacks your computer.
To ensure your data remains secure, I recommend using a PC that's password protected. If you're still uncomfortable with this setup, you might consider using the Mac Catalyst app or our web app (decryption at runtime) for your entries.
I hope this helps clarify things for you! If you have any more questions or need further assistance, feel free to reach out.