Last updated: June 2025
MnemonX encrypts your context data on your device, with AES-256-GCM, before it ever reaches our servers. Decryption is limited to specific, authorized code paths tied to your own requests — your signed-in session, and apps or API keys you've explicitly connected — never ad hoc access by MnemonX staff. See our Data Processing Agreement for the exact scope of when and how decryption occurs.
Your encrypted wallet is stored in the region closest to you at signup. Encrypted content never crosses regional boundaries.
Supabase us-east-1 (AWS Virginia)
Default region · US, Canada, global users
Supabase eu-central-1 (AWS Frankfurt)
EU, EEA, UK, Gulf · GDPR Art. 44 + SCCs
Found a security vulnerability? We take security seriously and appreciate responsible disclosure. Please email [email protected] with a description of the issue. We will acknowledge within 48 hours and work with you to address the problem before any public disclosure. Please do not publicly disclose vulnerabilities until a patch is live.