• boredsquirrel@slrpnk.net
      link
      fedilink
      English
      arrow-up
      15
      ·
      edit-2
      19 days ago

      Some way to encrypt the decryption key.

      This could also mean TPM + Pin. Or using a Nitrokey, externally, which stores the password to decrypt the decryption key.

      That is how user account unlocking (on GrapheneOS with Pixel phones) is done.