Blog
How TruMint is built, and why you can check the claims.
1 August 2026 · 9 min read
Where encryption stops: the limits of our own privacy claim
Part 3. The doors that encryption at rest does not close — the AI features, the administrator who can still take over an account, and the metadata we leave readable. Including the two claims we had to mark FALSE.
Read →
1 August 2026 · 8 min read
The key that refuses to talk to us
Part 2. Binding a decryption key to a measured image rather than to a service account — and an honest account of what that measurement does not prove.
Read →
1 August 2026 · 9 min read
What we can and cannot read: TruMint’s encryption design
Part 1. Exactly which bytes are ciphertext, which stay readable so the database can work, and why we rewrote this post after taking our own claim apart.
Read →