Name the attacker before choosing AES or a keychain.A process that can read both ciphertext and an adjacent key sees no meaningful same-UID boundary.

Four facts must stay separate.

Reference

Settings carry a name, not the provider key.

Browser

Describe is value-free and writes are one-way.

Disk

The managed rc.8 document is owner-only plaintext.

Agent

Same-UID tools may still read user-owned files.

Choose a boundary that matches the threat.

Backup theftencrypted envelope

Useful only when ciphertext and key authority separate.

Interactive desktopOS keychain broker

Verify access policy and whether tools can invoke it.

Untrusted Agentseparate identity

Use a dedicated account, VM, or container with a limited short-lived key.

Encryption does not revoke exposure.

If a bearer key may have been read, stop the runtime and revoke it at the provider before migrating storage.

Primary evidence.

Protect the whole resolution path.

The complete guide includes a threat matrix, current rc.8 controls, adjacent-key limitations, keychain requirements, operating patterns, safe migration, incident response, and fifteen acceptance gates.

Read the complete guide