AES-256-GCM with hardened key derivation
The encrypted device vault uses AES-256-GCM with PBKDF2-HMAC-SHA256 key derivation at 240,000 iterations. Session metadata, transcript segments, full transcript, structured notes, structured note JSON, session snapshots, Theia conversation messages, the session index, and any retained audio are all encrypted inside the vault.