Trust
Written for a procurement or security review. Every claim here is checkable in the SDK’s published documentation or in this console’s source. Where the answer is “not yet,” the page says so.
Report privately: use Report a vulnerability on the SDK repository’s Security tab, or write to security@open-e2ee.dev. Do not open a public issue. Send a reproduction against a test identity, not message plaintext, private keys, or customer data.
The console has no database. It authenticates an account and reads the current entitlement from Stripe when a page or record is generated. OpenE2EE Relay stores only the encrypted delivery and operating state that its managed service requires.
This list covers the hosted website, documentation, console, and OpenE2EE Relay. A self-hosted SDK adapter uses infrastructure that the customer selects and operates instead. The two paths have separate trust roots, credentials, storage, and product scopes.
A security review, a questionnaire, or an enterprise evaluation starts on the contact page.