Open ferristocrat opened 1 year ago
@ferristocrat - Add @boshevski designs to this
Why is the "simple management"="store your encryption phrase on our servers" should be default? I would add a confirmation from the user, that they are understand, that they will remove their ownership of data, opting-in to STORE their PRIVATE KEYS ON OUR SERVERS.
We should make sure we add documentation to this to make sure it's clear what we do and don't do. We'll want to look at the E2E and SS encryption sections.
Also, we should look at the ToS to make sure the change is consistent with the ToS or identify if the ToS need to change. Als this impacts the Disclosures page.
@AlexeyALeonov
Why is the "simple management"="store your encryption phrase on our servers" should be default?
This was just an initial design. We discussed this with Tome, and decided to change the design so that no option is selected by default, and the user is required to explicitly select the option they want. Hopefully this is satisfactory.
@jggleeson
We should make sure we add documentation to this to make sure it's clear what we do and don't do. We'll want to look at the E2E and SS encryption sections. Also, we should look at the ToS to make sure the change is consistent with the ToS or identify if the ToS need to change. Als this impacts the Disclosures page.
Ticket created: https://github.com/storj/storj/issues/6980
Seeking feedback on the new design concept for the encryption preference step in account onboarding (see screenshot).
Key points:
Presents two options: Storj Managed Encryption (recommended) and Self-Managed Encryption
Aims to communicate choices clearly and help users make informed decisions
Balances simplicity and essential information
Please provide feedback on:
Clarity and usability
Visual appeal
Copy effectiveness
Thanks for your input to help refine the design.
cc @AlexeyALeonov
updating Estimated completion sprint to 46; we are finishing up QA work on this feature.
updated the estimated completion sprint to 49. we are finalizing some admin items to deploy to production.
In progress.
Working on last-minute config changes. Exec team going to work on strategy for secret management during the offsite next week.
Updated estimated completion sprint to 53.
Background
What is the problem/pain point?
Many users find managing encryption passphrases for account security and data encryption challenging and would prefer these aspects to be managed automatically. The current requirement for direct user management of passphrases can lead to a negative experience, with risks of passphrase loss or account lockouts.
Who is impacted?
What is the impact?
Manual passphrase management can lead to user frustration, increased support tickets, and security risks if users opt for simpler, less secure passphrase practices. An automated system would significantly enhance user satisfaction and security.
Why now?
With the increasing demand for user-friendly security solutions, automating passphrase management is key to providing an intuitive, secure experience.
Requirements
User Story
As a Storj user, I want an intuitive and secure system for managing encryption passphrases, giving me the choice to opt-in or opt-out easily, so that my experience is tailored to my security preferences and needs.
Acceptance Criteria
Designs See https://storj.github.io/vuetify-storj for the latest source of truth.
Success Metrics