Free
100 MB
Personal notes and trying out Cloud Sync.
- All local features
- Unlimited Vaults on your machine
- Cloud Sync for encrypted notes
- Conflicts kept, never overwritten
Cloud Sync is an optional feature for people who want to use the same Vault across devices. Content is encrypted locally before it leaves the device with XChaCha20-Poly1305, and plan limits are measured as encrypted data stored in the cloud.
Using TextSandbox entirely locally does not require any of these plans. With Cloud Sync off, the app still encrypts and autosaves everything on your device.
100 MB
Personal notes and trying out Cloud Sync.
1,000 MB
Everyday work and multiple projects.
10,000 MB
Large libraries and multi-device use.
Cloud storage is the only difference between the plans — every local feature and the entire encryption stack are identical on all of them, including Free.
| Plan | Encrypted data | Best for |
|---|---|---|
| Free | 100 MB | Personal notes and trying out Cloud Sync |
| Lite | 1,000 MB | Everyday work and multiple projects |
| Pro | 10,000 MB | Large libraries and multi-device use |
Vaults, documents, version history and attachments are all encrypted with XChaCha20-Poly1305 — even if you never subscribe to a cloud plan.
After the first sync, later runs upload only the encrypted blocks that changed — saving quota and bandwidth.
If two devices change the same document, the conflicting version is kept for you to review instead of being silently overwritten.
What to know before turning syncing on.
No. Using TextSandbox entirely locally does not require any of these plans. Cloud Sync is only an option when you need the same Vault on several devices.
Limits are measured as encrypted data stored in the cloud, including synced document content and attachments. Encrypted data carries some metadata and an authentication tag, so it is slightly larger than the original text.
No. Cloud Sync stores encrypted data only and never receives the Master Password, Recovery Key or readable content — so the service has no key to decrypt anything. A cloud account does not replace the Master Password.
On your machine. The encryption key is derived locally from your Master Password with Argon2id, then content is encrypted with XChaCha20-Poly1305 before it is saved or synced. The cloud only ever receives the encrypted result.
The local Vault remains your main workspace when offline. Autosave keeps encrypting and writing changes to the Vault on your machine; syncing resumes when the connection is back and the workspace is in a safe state to sync.
TextSandbox can detect newer versions from other devices and pulls data when the workspace is in a safe state to sync, so in-progress changes are not lost.
Download TextSandbox, create your first encrypted Vault, and only enable Cloud Sync when you genuinely need more than one device.