One thing I noticed is that even in some zero-knowledge systems, the server still receives an encrypted version of the user’s key.
I'm curious: are there any cloud storage systems where the encryption key never leaves the client device in any form?
Bonus question: what do people think about a system where users can reset passwords without losing access, by separating login credentials from encryption keys?
Would love to hear the community's thoughts.