• boredsquirrel@slrpnk.net
      link
      fedilink
      English
      arrow-up
      0
      ·
      edit-2
      4 months ago

      Some way to encrypt the decryption key.

      This could also mean TPM + Pin. Or using a Nitrokey, externally, which stores the password to decrypt the decryption key.

      That is how user account unlocking (on GrapheneOS with Pixel phones) is done.