The Security Vault

The Arka Vault is the engine that enables background processing while maintaining Zero-Trust security. It acts as a bridge between your encrypted data and our secure automation worker.

How to Setup

Initializing your vault is a critical one-time setup for advanced features.

  • Initialization: Navigate to Settings or try to enable an integration. You'll be prompted to re-enter your password.
  • Key Wrapping: Arka uses your password to generate a secure bridge that wraps your workspace keys for the vault worker.
  • Secure Activation: Once verified, your vault becomes active, signified by the 'Secure Sync' badge in your Integrations Hub.

Background Sync & AI

Why you need the vault active for modern workflows.

  • Offline Access: When enabled, your vault allows Arka to sync changes in the background even if your browser is closed.
  • AI Processing: Background AI tasks, like automated summaries and semantic indexing, require the vault for secure data access.
  • Auto-Sync: Keep your external integrations like Google Calendar updated 24/7 without needing to be online.

Zero-Trust Architecture

The vault is designed for uncompromising privacy.

  • Isolation: The vault worker operates in a separate, highly secure environment with no access to your master password.
  • Asymmetric Encryption: Content is protected using RSA public keys. Even the vault worker can only access the data you explicitly authorize.
  • Revocation: You can revoke vault access at any time from the Integrations Hub, instantly purging your keys from the secure worker.

Step-by-Step: Operating the Vault

Maintain Zero-Knowledge privacy while enabling advanced features:

  • Navigate to Settings -> Security -> Vault Initialization.
  • Unlock: Enter your Master Password. This unwraps your encryption keys locally in your browser.
  • Stay Active: Look for the Shield badge in the status bar to ensure your session is ready for sync.
  • Integrate: Once unlocked, you can now enable Google Calendar or AI Automations that require background data access.
  • Revoke: Click 'Lock Vault' to immediately purge keys from the active session for maximum security.