CryptPad.fr
Fair 4.7 Easy 3.7 Secure 4.7
| Pillar | Criterion | Score | Evidence |
|---|---|---|---|
| Easy | Day-one UX Can non-technical staff use it without a project? | 4 | Link-based pads are easy for campaigns and boards. Source |
| Easy | Operate Admin burden, updates, backups and language coverage. | 5 | SaaS instance needs almost no admin. Source |
| Easy | Integrate SSO, mail/CalDAV, APIs and common NGO connectors. | 2 | Few NGO connectors; it is a document island. Source |
| Fair | Lock-in / exit Can you leave with your data in open formats, at known cost? | 4 | Client-side encryption; export of pads is available. Source |
| Fair | Sovereignty EU legal entity, EU hosting, and exposure to extra-EU lawful access? | 5 | French company and EU hosting on the public instance. Source |
| Fair | Openness Open source or open standards? Are independent implementations possible? | 5 | AGPL; independent instances exist. Source |
| Secure | IT security Authentication, encryption, patch cadence and independent audit. | 5 | E2E encryption is the core design. Source |
| Secure | User security 2FA, roles, phishing resistance and safe defaults. | 4 | No account password on the server for pad content. Source |
| Secure | Personal data GDPR fit: DPA, residency, sub-processors and Schrems II posture. | 5 | Zero-knowledge design is strong for personal data minimisation. Source |