LOL fair enough.

Indeed you're correct, but I can think of a few reasons why I'd go with belt and suspenders.

First, not everybody follows the best practices. As the topic of at-rest encryption has been quite debated (including by myself) I doubt everybody takes this precautionary measure (i.e whole disk encryption). Thus I felt like sharing another way to protect Joplin's data especially as VeraCrypt is often mentioned as the "go to" solution. I felt tomb could be a nice(r) alternative.

Then, I like my data to be portable and potentially available offline. An encrypted container is a good way to make this possible.

Finally for backup purposes. Even though I use encrypted zero-knowledge cloud solutions I always backup my data in an encrypted format whenever possible. You may think it's an overkill, but I'm crazy like that :slight_smile:

Anyway it's just a tip or an howto if you wish, it's up to you to do it or not.

Update: I forgot a very important point indeed, may be the most important one. On many system, full disk encryption is only possible during the installation process but not later on. I don't know many computers sold with an encrypted hard drive. Even I only reinstall from scratch only once in a while. Some other systems may not be powerful enough to support encryption seamlessly (I have a bunch of raspberry pi that aren't encrypted for instance). Long story short I believe most people actually don't have an encrypted hard-drive.

2 Likes