Harbor holds more about you than anything else you use.
That is only reasonable if it is sealed to you. Here is exactly how that works, in plain words, and exactly where it stops.
What we promise
Everything Harbor holds is encrypted with AES-256 — on the way in, where it sits, and on the way back to you.
including every backup and every replicaWhat you keep in Harbor is sealed with a key of your account's own, which is never stored beside it. Your recovery key opens it with no Memriq service at all. While you are away, Harbor's agent works only from a de-identified copy — names, addresses, numbers and handles replaced before it leaves your session.
a copy of the database without the master key opens nothingYour material is shared between you and your Harbor agent. It is not shared with another company, not sold, and not used to train anything.
no third-party analytics on any Harbor screenThe only way anything goes outward is a channel you set up yourself — an emailed brief, a Slack message you asked for. Every one is listed on one screen, with who else can read it.
turn the last one off and nothing leaves at allWhat that costs you, said plainly
A key of your own is why this is sealed to you. It is also why we cannot get your recovery key back for you. Harbor shows you a recovery key once, at the start.
Lose it and the data is gone. That is not a gap in the design — it is the design.
What Harbor never reads
Anything in an area you marked private — not for any answer outside it, and not to write to anyone.
Workspaces, mailboxes and folders you did not connect. There is no discovery pass.
Channels and direct messages you have not switched on, even in a workspace that is connected.
Anything before the earliest message Harbor has read.
Leaving, and taking it with you
JSON plus the original files · readable without Harbor
Downloadits messages, documents and decisions · the area stays
Choosepermanent · download first, this cannot be undone
DeleteEach one is on your Trust screen, once you are signed in.