Skip to content

MC/C2: Per-user server export/import with defined restore semantics #308

Description

@kafkade

Seq 14/17 · Priority P2 · Blocked by: — · Tracked in #312

Add authenticated per-user server export/import (stream that user's encrypted blobs + snapshot manifest) plus an admin per-user export. Ciphertext-only, zero-knowledge.

Do

  • Use keyed integrity (not a bare hash).
  • Define restore semantics: replace vs merge; cursor/vector-clock reset; stale-device replay; anti-rollback/freshness; duplicate-id conflicts; whether a new account is registered and rebound.
  • This is also the portability path for "export and self-host later."

Components: server/web/docs · Size: L.

Metadata

Metadata

Assignees

No one assigned

    Labels

    area/syncCross-device sync, conflict resolutionpriority/P2-mediumv1.4 backups + self-host polishsecuritySecurity-related issuetype/featureNew feature

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions