All postsGuides

How Cepe Keeps Your Documents Secure

HTTPS/TLS in transit, account isolation, Cepe Cloud access, and CAI that only sees what you send — how Cepe Paper protects work on the web and desktop.

Cepe Team15 min read

Share this article

How Cepe Keeps Your Documents Secure — Cepe blog cover

Security is part of how Cepe Paper is built — not a slogan on a pricing card. This article explains the controls we can actually show in the product, our Privacy Policy, and our public documentation. It is not a certification list. No method of transmission or storage is 100% secure, and we will not pretend otherwise.

Cepe Paper is a document studio for writing, slides, spreadsheets, and PDFs. You can work locally on every plan, including Free. Cloud storage, Cloud Sync, Cepe Sign, Cepe AI (CAI), and team features unlock on the plans that include them. The sections below describe what those features do with your data.

How to read this article

Use it as a map of the product, not as a substitute for the policies. If this page and a legal document disagree, the legal document wins.

It covers:

- Connections, sign-in, sessions, and optional MFA - What we collect and which processors we name - Account-scoped files, Cepe Cloud, local desktop files, and Cloud Sync - CAI, sharing, Cepe Sign, activity data, cookies, and deletion - What you can do if a device is lost or a link should not have been sent

It does not cover every table, every header, or every environment. A control that exists in production today can still be described as “where applicable.”

What this article does not claim

We do not claim encryption at rest as a Cepe Paper feature. We do not publish certification badges we have not earned. We do not say MFA is on for every account. We do not say submitted CAI text is unused for model training. That promise is not in our Privacy Policy. We do not publish a platform disaster-recovery guarantee with RPO or RTO numbers.

Our Privacy Policy states we do not sell your personal information. That is a Privacy Policy statement, not a marketing slogan.

Secure connections

Production traffic between cepe.io, the member dashboard, the web editor, and our APIs uses HTTPS/TLS. The website also sends HSTS and upgrade-insecure-requests so browsers prefer HTTPS after the first visit.

That means account pages, file downloads, and API calls travel over an encrypted connection in transit. It does not mean a file is encrypted in a special way on your disk, and it does not mean we claim a specific TLS version or cipher suite.

If a browser warning appears, stop and check the address bar. Do not enter a password on a look-alike site.

Authentication and account protection

Cepe accounts use Supabase Auth — the same provider named in our Privacy Policy. You can create an account with email and password or sign in with Google. We do not store full payment card numbers. Subscriptions go through our payment provider (Stripe).

Passwords are handled by the authentication provider. We do not keep plaintext passwords in Cepe Paper. Desktop license keys are stored as hashes so a leaked key string is not enough to impersonate a license. Paid desktop seats also apply device limits the way other installed software does — a hashed key is not a casually shared installer.

You can add optional authenticator-app MFA (TOTP) from the member dashboard. MFA is not required for every account. A workspace owner can require MFA for members of that organization. If your team turns that on, you will need an authenticator before you can use member file APIs.

The member dashboard keeps its session in HTTP-only cookies with SameSite controls. On the marketing site, the signed-in session is stored in the browser. From the dashboard you can sign out of other sessions. Use that if you lose a laptop or see a sign-in you do not recognize.

What we collect

The Privacy Policy lists the categories. In short:

- Account information — email, display name, profile photo if your identity provider sends one, and authentication identifiers through Supabase. - Content you create — documents, presentations, spreadsheets, PDFs, templates, and files you upload or save to Cloud. - Usage and device data — such as IP address, browser type, app version, and license activation, used to operate and secure the Services. - Payment information — processed by Stripe. We do not store full card numbers on our servers. - CAI requests — the text and context you submit when you use CAI. - Activity Tracker metadata — if your plan includes it and it is enabled: sign-in, attendance, and document work. Activity Tracker does not collect webcam, microphone, or screen recordings. It records usage metadata such as sign-in, attendance, and document work.

We use that information to run your account, store and sync Cloud files you chose to put there, process billing, send service email, detect abuse, and improve the Services. Marketing email is opt-in.

Processors we name

We share data with service providers that help run Cepe. The Privacy Policy names:

- Authentication and database hosting (Supabase) - Payment processing (Stripe) - Cloud storage and infrastructure - AI model providers, when you use CAI - Email delivery providers

Those processors receive what they need to operate the Service. They are not a public dump of your file list.

Account-level data access

Member profiles and Cepe Cloud files are scoped to your account. Our database uses row-level security (RLS) so a signed-in user can only read the rows those policies allow.

For Cloud files, that usually means: you own the file, you belong to a workspace that can see it, or someone shared it with you. Public share links are not granted by a browser JWT alone. The server checks the link and then issues a short-lived download.

A profile is not a public directory. Other members do not get your file list because they share a product.

RLS is an access control. It is not encryption at rest, and it is not a promise that every table in every environment has the same policy.

Cepe Cloud storage

Cepe Cloud is the file layer behind Cepe Paper. Every signed-in account includes a starter storage quota. The Free plan includes 500 MB for files you choose to put in Cloud. Paid plans include more. Current limits are on Pricing.

Cloud files are not sitting in a public bucket. The dashboard and editor talk to our APIs. Downloads use short-lived signed URLs. That is access control, not a claim that objects are encrypted at rest by Cepe Paper itself. We do not document an app-level at-rest encryption implementation, so we do not advertise one.

You are not required to fill the quota. Local projects stay local until you save or link them to Cepe Cloud.

Desktop and local files

The desktop app and the browser editor can both open local projects on every plan, including Free. A file you keep on disk is not uploaded because you opened Cepe Paper.

A file reaches Cepe Cloud when you save or link that project to Cloud — or when you upload it from the dashboard. Until then it stays on the device.

The desktop app stores its own cache in application data, not in your Documents folder. License tokens use the operating system keychain on supported platforms.

The desktop app checks for updates when you launch it and again about every four hours. In-app updates are verified with the Tauri updater signature before they install. If an updater prompt appears, install it from Cepe — not from an email attachment or a third-party mirror.

See Download for current desktop builds, and Cepe Paper web vs desktop if you are choosing a window.

Cloud Sync

Storage and Sync are not the same thing.

Cepe Cloud storage is the quota for files you have uploaded or saved to Cloud. Automatic cross-device Cloud Sync starts on Creator. On Free, files you put in Cloud do not sync across devices automatically.

Sync applies to Cloud-linked projects. A typical path is: you edit, the app saves locally, then a Cloud checkpoint follows for that linked file. If the network is down, keep working locally and sync when you are back.

Linking a file is still a choice. Opening a local invoice does not publish it to every device on your account.

More detail: Introducing Cepe Cloud.

CAI and AI processing

CAI is available on Professional and above. You can use Cepe Paper without it.

CAI only receives the content you explicitly send in a request. That includes the prompt, the selection, and the context you attach. That request may be processed by third-party AI providers to generate a response. Those providers have their own terms. We do not claim that submitted text is never used to train a public model. That promise is not in our Privacy Policy.

Do not paste passwords, API keys, government IDs, or full card numbers into CAI.

Cloud CAI indexing — searching Cloud files with AI — is opt-in. Nothing silently indexes your whole library. You can leave AI off and still write, calculate, and export.

Read the AI Disclaimer before you rely on a draft. AI can be wrong. You still own the last sentence.

File sharing and permissions

A Cloud file is private to your account until you share it or put it in a team workspace.

Shares use roles such as viewer, commenter, and editor. Owners keep manage rights. You can restrict a link, add a password, set an expiry, or revoke access. Team workspaces and shared folders start on Business.

Treat a share link like a key. Anyone who has the link and passes the checks can open what you allowed. Do not paste live links into a public forum if the file is confidential.

We keep a share audit trail for Cloud shares so you can see when access was created or used. That is an activity record, not a legal hold.

Cepe Sign

Cepe Sign is on Creator and above. It is not on Free.

Sign sends a time-limited review link. Recipients can comment and sign without a Cepe account when the link is valid. You can expire or revoke a link. Signed PDFs can include an audit trail.

Sign is for written acceptance when you need a record. It is not a substitute for every legal process, and it is not encryption of the underlying file on your disk.

Activity and audit information

Activity Tracker, where your plan includes it, records product metadata: sign-in and sign-out, document opens, edits, exports, and shares. Activity Tracker does not collect webcam, microphone, or screen recordings. It records usage metadata such as sign-in, attendance, and document work.

Professional includes personal activity tracking. Business and Enterprise add team visibility and, on Business and above, product audit logs for Cloud administration. If an organization enables Activity Tracker, administrators are responsible for workplace notices required by law.

Share events and Sign events have their own audit trails. Those are not the same as a company-wide SIEM, and they are not a promise that every click in the editor is retained forever.

Cookies and similar technologies

The marketing site and signed-in surfaces may use cookies, local storage, and similar technologies to keep you signed in, run the site, remember preferences, measure traffic, and attribute an affiliate visit when you have agreed.

You can review categories and change non-essential cookies from Cookie settings. The Cookie Policy explains what we use and why. Preference cookies and analytics cookies are not the same as putting a document in Cepe Cloud.

Public forms

Contact, newsletter, sign-in, and sign-up forms include bot checks. When Cloudflare Turnstile is configured, you complete that check before the form is accepted. We also reject empty-looking automated submits. Those controls exist to cut spam. They are not a promise that every message is from a person you know.

Do not put passwords or card numbers in the contact form. Use the category that matches the request — Security Report for a vulnerability.

Backups and recovery

Version history on Creator and above can restore an earlier Cloud draft you meant to keep. Trash can restore a Cloud file you deleted, until that item is permanently removed.

Those are product recovery tools. They are not a documented, proven platform disaster-recovery guarantee. We do not publish RPO or RTO numbers for members, and we will not claim that every file is snapshotted on a schedule you can audit from this article.

If a file is only on one laptop, that laptop is the backup. Export a PDF or keep a Cloud-linked copy when the work has to survive a lost disk.

Deleting your data

Cloud files you delete go to Trash first. You can restore them from there. After a limited time — which depends on your plan — Trash items can be permanently deleted. You can also permanently delete an item yourself.

Deleting a local file on your computer is your operating system. Cepe Paper does not reach out and erase a document you never uploaded.

If you delete your account or request deletion, we delete or anonymize personal data within a reasonable period, except where we must keep data for legal, security, or backup purposes. That is the Privacy Policy rule. There is not a one-click public “erase everything this second” control that bypasses those exceptions.

Your rights

Depending on where you live, you may have rights to access, correct, delete, or export your data, object to or restrict processing, and withdraw consent. Contact us to exercise those rights. You may also lodge a complaint with your local data protection authority.

The Services are not directed to children under 16. We do not knowingly collect personal data from children. Contact us if you believe a child has provided data.

Your data may be processed in countries other than your own. The Privacy Policy and the processor list describe who receives it.

Three common situations

You left a browser signed in on a shared computer. Sign in on a device you control, sign out of other sessions from the member dashboard, and change your password if you are not sure who used the machine. Turn on optional authenticator-app MFA if you have not already.

You sent a Cloud share that should not stay open. Open the share, revoke or expire the link, and check the share audit trail. If the file also went as an email attachment, that copy is outside Cepe. Ask the recipient to delete it.

You used CAI on a draft that includes a client name. CAI only receives the content you explicitly send in a request. You cannot unsay a request that already went to a provider. For the next draft, send only the paragraph you want rewritten. Keep secrets out of the prompt.

Security best practices for users

Use a strong, unique password for Cepe. A password manager is better than reuse.

Turn on MFA in the member dashboard if you can. If your organization requires it, enroll before you need a file in a hurry.

Lock your devices. A signed-in browser on a shared computer is a share you did not mean to create. Sign out of other sessions if a device goes missing.

Share the smallest thing that works. Prefer a viewer link with an expiry over an editor link with no end date. Do not send the live file and the password in the same email if you can avoid it.

Keep the desktop app updated. Ignore installers from people who are not Cepe.

Do not put secrets into CAI. Treat a CAI draft like a first pass, not a cleared document.

Reporting a security issue

If you think an account was accessed without permission, change your password, sign out of other sessions, and tell us.

To report a vulnerability or a security concern, use the contact form and choose Security Report. Describe what you saw. Do not include passwords. For sensitive follow-up we will reply through that channel.

Report a security issue

We aim to reply on business days. Urgent security reports are prioritized. This is not a bug-bounty program description, and it is not an invitation to test systems you do not own.

Read the policies

This article is a product explanation. The legal documents control if anything conflicts.

Privacy Policy — what we collect, how long we keep it, and your rights.

Cookie Policy — cookies, local storage, and how to change non-essential cookies.

Terms of Service — the contract for using Cepe.

AI Disclaimer — what CAI may do with what you send.

Acceptable Use — what you may not do with the Services.

FAQ — short answers on accounts, Cloud Sync, Sign, and data protection.

Contact — product support, billing, and security reports.

If you are new to the studio, start with What Is Cepe Paper? and How to Get Started.

Share this article

Copy the link or post it to a network you use.

Try Cepe Paper yourself

Create your first document in minutes.

Create free account

Stay in the loop

Subscribe for Cepe product updates, new features, templates, and announcements. No spam — unsubscribe anytime.

By subscribing, you agree we may email you about Cepe products and updates. See our Privacy Policy.