This is really nicely done. One question. Since you state 'this is not zero-knowledge' because plaintext briefly hits your API over HTTPS, what precise architectural isolation protects that plaintext in memory while it is being encrypted?
It's definitely something we've thought about. And something we may pursue.