This is why we need WebAuthn[1] supporting browser-side encryption using passkeys (or any other secure enclave)[2]. Relying on servers to encrypt data for you will be seen as comical 5 years from now.
[1]: https://blog.millerti.me/2023/01/22/encrypting-data-in-the-b...