The task manager that can’t read your tasks.

Plan tasks, notes, and team work in a familiar workspace. Readable workspace content is encrypted before sync; account and operational metadata remain visible to the service.

Everything you need. Readable content stays client-encrypted.

Sensitive workspace content used by these features is end-to-end encrypted. Operational fields such as timing, status, relationships, counts, and event metadata remain server-visible.

  1. Task Management

    Owners, priorities, due dates, and progress.

  2. Kanban & List Views

    Plan visually, then switch to a focused list whenever it fits the work.

  3. Private Search

    Instant results that run in your browser.

Live encryption demonstration

Don't trust the claim. Inspect the ciphertext.

Seal a harmless sample with the same client-side encryption path SealTask uses. Nothing is sent or saved.

Security that satisfies your auditors.

SealTask is designed so the service cannot decrypt readable workspace content. The documented architecture also identifies the metadata the service still processes.

Read the full architecture
  • End-to-End Encryption

    ChaCha20-Poly1305 AEAD — the modern cipher trusted by Signal and Google.

    ChaCha20-Poly1305

  • Zero-Knowledge Architecture

    SealTask cannot decrypt readable workspace content, including in response to a legal demand; server-visible metadata can still be disclosed.

    OPAQUE PAKE

  • GDPR data-minimization support

    Client-side encryption reduces the amount of readable workspace content SealTask processes.

    GDPR-aligned

  • No content mining

    Workspace content is not analyzed, sold, or used for advertising.

    No content scanning

  • Two-Factor Authentication

    Optional authenticator-app sign-in codes (TOTP) with one-time backup codes protect account login on top of client-side content encryption.

    TOTP 2FA

Private work, without leaving the terminal.

Use sealtask with the same encrypted projects, tasks, notes, comments, and attachments you use on the web. Readable output for people; versioned JSON for scripts and coding agents, plus a first-party Agent Skill for reliable SealTask workflows.

  • Client-side crypto
  • Tables and JSON
  • First-party Agent Skill

Build from tagged source today. Signed binaries and package-manager installs are not advertised yet.

A human session, then a machine-readable query

sealtask v0.2.1

sealtask auth loginsealtask listssealtask --json --non-interactive tasks list --all

Plain terminal output is the default. Add --json and --non-interactive when another process is driving.

Transparent pricing for individuals and teams.

Start on Free. Upgrade to Personal or Team when you need project sharing, more projects, or more storage. No hidden security tiers.

Free.

Free forever

Solo workspace · no card required

€0 / month
  • 2 projects
  • 100 MB encrypted attachments
Start on Free

Personal.

Most popular

Individual billing · sharing included

€5.90 / month
  • Unlimited projects
  • Project sharing

Team. €4.90/ seat / month

Pricing

Free is active by default. Self-hosted is sold on an annual contract.

Questions, answered.

Still uncertain? Talk to a human.

Start protecting your work today.

Whether it’s just you or your whole team, get end-to-end encryption from day one. No credit card required.

Forgot your password? A one-time backup key restores your access; SealTask still does not hold the keys needed to decrypt readable workspace content.