Quick question for the author in case they are here
> encryption key is derived from the password > One can use the passphrase in case password is lost
What does this really means? is the password encrypted with these pass phrases instead of being hashed?
nvm, looks like the encryption key is derived from password, stored on the server side encrypted with these passphrases