# Lunatask

**URL:** https://discuss.privacyguides.net/t/lunatask/31794
**Category:** Tool Suggestions
**Created:** 2025-09-29T09:46:12Z
**Posts:** 37

## Post 1 by @anon57862721 — 2025-09-29T09:46:12Z

### Website

> **[Encrypted to-do list, life-tracking, journaling and notes app | Lunatask](https://lunatask.app/)**
>
> Encrypted to-do list, habit tracker, journaling, life-tracking and notes app

### Short description

Lunatask is an all-in-one encrypted to-do list, reminder list, habit tracker, journaling, life-tracking and notes & knowledge management app.

### Why I think this tool should be added

If used well and as intended with all features and functionality provided, this tool can manage your life better than you think it can - no more fragmented notes, to-do’s, and info in calendars in several places. The app keeps you organized really well and keeps your life from being overwhelmed. They explain it well on their own website here [Tasks | Lunatask](https://lunatask.app/docs/features/tasks/overview).

It is an equally good if not a better tool for what a notebook has the potential to be for all your knowledge management needs. Lunatask works as you want it to and for what you need it. It has a unique way to ensure you set up the app with your info that is practical in the format of a workflow so you’re not distracted by everything that needs to be done - whether it be for your tasks, writing, or notes management.

It is also private and secure in nature by design as it has E2EE. It is best explained on its website:

Lunatask uses Curve25519, XSalsa20, and Poly1305, together with argon2id as a key derivation function. To ensure there are no implementation mistakes, encryption is delegated to an open-source NaCl networking and cryptography library – specifically this independently audited implementation ([GitHub - dchest/tweetnacl-js: Port of TweetNaCl cryptographic library to JavaScript](https://github.com/dchest/tweetnacl-js)). Where client-side encryption is not possible (i.e. when using server-side integrations), server-side encryption is done using Ruby bindings for libsodium ([https://doc.libsodium.org/](https://doc.libsodium.org/)).

This more than enough should meet privacy and security conscious people’s needs for how well such a tool should be made especially with all that it can do.

Lunatask has garnered a very good reputation for all that it offers and how. And these are my reasons why I think it should be added to Privacy Guides as an official recommendation.

### Section on Privacy Guides

Notebooks

---

## Post 2 by @anon57862721 — 2025-09-29T09:52:35Z

Another section where I think this tool can go is in a new section called “Knowledge Management” if not for Notenooks.

---

## Post 3 by @Anvil — 2025-09-29T12:20:09Z

This doesn’t meet the minimum requirements for the notebooks section as it is not open source

---

## Post 4 by @anon57862721 — 2025-09-29T12:50:55Z

1Password is not open source either. Clearly, exceptions are made or should be for reasons.

---

## Post 5 by @Anvil — 2025-09-29T13:01:27Z

1Password is not in the notebooks section

---

## Post 6 by @anon63378630 — 2025-09-29T13:28:38Z

> No in-app product analytics or tracking  
> Don’t just take our word for it: 2,900,000+ Tracked tasks

Hello?

---

## Post 7 by @anon57862721 — 2025-09-29T13:32:46Z

Well, I can write to them to clarify how they meant this.

---

## Post 8 by @anon63378630 — 2025-09-29T13:36:45Z

> [@anon57862721](#):
>
> write

easier to just use FOSS :slightly_smiling_face:  
I prefer plain text files in a git repo synced across my machines with Syncthing

---

## Post 9 by @anon57862721 — 2025-09-29T13:45:32Z

Well.. I recommended because it’s a great tool and is privacy respecting, your other point notwithstanding.

I have no dog in this race.

---

## Post 10 by @anon57862721 — 2025-09-29T13:49:14Z

So?

---

## Post 11 by @Anvil — 2025-09-29T13:53:34Z

So it has different minimum requirements. Have you read the section of the website you’re recommending this tool for?

If you want to change the minimum requirements, that would be a separate issue.

---

## Post 12 by @anon57862721 — 2025-09-29T14:29:51Z

> [@Anvil](#):
>
> If you want to change the minimum requirements, that would be a separate issue.

True. But I’ve always thought, there should always be exceptions if its a proven product while not being FOSS. Do I want to debate this in full? No.

---

## Post 13 by @anon63378630 — 2025-09-29T14:31:32Z

> [@anon57862721](#):
>
> a proven product

I see nothing that affirms this.

---

## Post 14 by @anon57862721 — 2025-09-29T14:32:04Z

I’m in touch with their team. I’ll get back with what they say. Let’s find out together. They’ve already responded once. But I’ve asked a follow up question so waiting on that.

---

## Post 15 by @anon42475305 — 2025-09-29T14:42:47Z

1Password was listed a long time ago, and it’s not clear it would be added to the site if it were nominated today (given its closed-source nature and diminishing lead UI and feature-wise).

I don’t appreciate how Lunatask labels themselves an open platform when what they mean is that they have an extensible platform. These are not the same thing and should not be conflated with each other.

I also think it’s worth considering the fact that Obsidian isn’t recommended (AFAIK) solely because of its closed-source nature, despite the fact that it works with fully open markdown files. Lunatask, in contrast, is not only closed-source but also uses proprietary formats. Admittedly, they have some sort of export function, but even assuming that works perfectly, it’s still a disadvantage compared to open formats like markdown, etc.

---

## Post 16 by @anon57862721 — 2025-09-29T14:44:14Z

I’ll relay this message in the email thread I have going with them to see what they say.

---

## Post 17 by @wshark — 2025-09-29T20:22:25Z

> [@anon63378630](#):
>
> easier to just use FOSS :slightly_smiling_face:  
> I prefer plain text files in a git repo synced across my machines with Syncthing

That sounds like a nice idea!  
Do you sync just between desktops/notebooks or also mobile devices? Then I would be curious about your used apps :slight_smile:

---

## Post 18 by @hashcatHitman — 2025-09-29T21:25:31Z

Syncthing is unofficially available on Android: [Syncthing | Downloads](https://syncthing.net/downloads/)  
Standard Notes is available on Android and iOS: [Features | Standard Notes](https://standardnotes.com/features)  
Notesnook is available on Android and iOS: [Download online notepad for private notes | Notesnook](https://notesnook.com/downloads/)  
Joplin is available on Android and iOS: [Installation | Joplin](https://joplinapp.org/help/install/#mobile-applications)  
Cryptee is available on Android and iOS: [https://crypt.ee/](https://crypt.ee/)

---

## Post 19 by @wshark — 2025-10-01T05:07:14Z

Thanks. Question specifically was about how to integrate a synced _git repo_ (via Syncthing) into mobile workflow.  
At least Joplin doesn’t seem to be able to directly access/sync from git repo. Is that possible with one of the other tools?

---

## Post 20 by @Regime6045 — 2025-10-01T14:31:00Z

> If you use a degoogled Android distribution, search for Lunatask on the Aurora Store. Distribution via an APK is not possible.

I mean I could live with that (as long as Aurora doesn’t break), but why is it not “possible”?

---

## Post 21 by @hashcatHitman — 2025-10-02T00:52:16Z

I think I might have misunderstood the question? The post you had replied to was using Syncthing to sync plain old text files in a git repo. Hence linking Syncthing. The other items linked were other means of syncing notes in general between devices (that supported mobile, since that seemed to be of concern to you), in case it better fit your usecase.

If you were wondering about how to deal with git on mobile, I can’t speak from experience, but I’d assume you’d want to use Termux or one of the many git clients on android (seen plenty on F-Droid, never used any myself).

Sorry for the misunderstanding!

---

## Post 22 by @wshark — 2025-10-02T11:30:28Z

All fine, thanks for your help!

> [@hashcatHitman](#):
>
> The post you had replied to was using Syncthing to sync plain old text files in a git repo.

I actually read it like “use plain text files in a git repo and sync that _whole repo_ over Syncthing”, not just those plain files.

This made me curious, as it would allow to have complete versioning system of all notes at your hands on all devices, without using yet another external tool/app etc. Just plain git and markdown files on every device incl. mobile.

Now that I read @anon63378630 's post again, it’s probably me who misunderstood :wink:

(I think for git repo + notes in general it would make more sense to use git push/pull instead of Syncthing. But git support for mobile/apps seems rather limited apart from Termux .)

---

## Post 23 by @object2598 — 2025-11-03T11:29:40Z

I think previous answers are missing the point of this app (I say this respectfully). It’s contribution for privacy is not as a note taking app or as a journaling app, for which there are FOSS alternatives widely available. **The main contribution is as a cross platform Task manager and Habit tracker.**

I have spent countless months trying FOSS and non FOSS but E2EE apps, and ended up settling with Lunatask even if it’s not open source. If they can get audited (and it’s in their plans!) this would still be miles ahead of the competition.

For reference, I tried : [Tasks.org](http://Tasks.org) on android + [Planify](https://github.com/alainm23/planify/) or Apple reminders in desktop, synced with [EteSync](https://www.etesync.com/) (this is extremely buggy, after a few weeks I couldn’t stand anymore the problems syncing contacts, calendar and tasks); [Super Productivity](http://super-productivity.com/) (FOSS, optionally e2ee, second best alternative in my opinion), 2Do (not E2EE, but syncs with caldav; they deprecated their android client though), [Amazing Marvin](https://amazingmarvin.com/) (they have the option of offline sync, and you could sync the folder with the data with syncthing or rclone crypt, but many things break), [Legend](https://legendapp.com/) (e2ee, not FOSS; has a big focus on integrations with calendar, but only accept Google Calendar and Outlook).

---

## Post 24 by @privateuser — 2025-11-03T15:30:50Z

Yeah, I almost got it, but the lack of open source was the one reason I didn’t.

---

## Post 25 by @Erebo — 2025-11-03T16:09:26Z

[Anytype](https://anytype.io/) is a good alternative which I’m using. It’s actually open code than open source. I dont know when they will actually open source this

---

## Post 26 by @anon57862721 — 2025-11-03T16:28:25Z

New folks commenting here:

Just wanted to remind everyone that one should not conflate anything being open source with it being the absolute best with privacy and/or security. Only publicly released third party security audits and its reports tell you that. Just because something is open source doesn’t by default (or in and of itself) mean it is now better than any other app in the same product category. There’s more to an app being open that one should account for when one is trying to evaluate the quality of the product that respects its users. There is some nuance here that should be considered in any evaluation.

---

## Post 27 by @farmwithme021 — 2025-11-04T15:07:13Z

I tried out Lunatask for a bit. Looks quite promising, but the functionality is still limited and given its almost unusable properly without premium license, I find it too expensive.

That being said, I disagree with Seconts “Notebooks” as well as “Knowledge Management”.

While is has some Notebook capability, in the first place it is really a Task Manager, Habit Tracker with Journaling and CRM. Its a really cool concept to be honest.

Maybe there could be a spoiler/hidden view for non FOSS software too, because sometimes non FOSS is a really good option.

---

## Post 28 by @TheRipper — 2025-11-04T17:02:51Z

Not open-source?

---

## Post 29 by @anon57862721 — 2025-11-04T17:15:19Z

No. But this tool I still trust based on what’s know and the developer.

---

## Post 30 by @Libre_Software_Enjoyer — 2025-11-04T17:53:01Z

> [@Anvil](#):
>
> This doesn’t meet the minimum requirements for the notebooks section as it is not open source

> [@anon57862721](#):
>
> 1Password is not open source either. Clearly, exceptions are made or should be for reasons.

software that can connect to the internet and handles privacy relevant data, should be at least be source available, otherwise their privacy claims can’t be audited independently.

> [@farmwithme021](#):
>
> Maybe there could be a spoiler/hidden view for non FOSS software too, because sometimes non FOSS is a really good option.

I think applications without source code are only acceptable if they can work entirely offline.

---

## Post 31 by @anon57862721 — 2025-11-04T17:59:02Z

I’m pretty sure an audit by a security company can still be done even if the software is closed source. There will however be a report with limited info so that I think would be the only difference.

---

## Post 32 by @farmwithme021 — 2025-11-04T18:08:13Z

i was going to answer that. closed source =\ cant be independeny audited.

however of course it does mean you cannot audit yourself, which for the vast majority of people is the case anyways, either due to lack of k owledge or time.

i do get (and agree) with political reasons for FOSS, but while privacy or even security can be enhanced with FOSS for widely used and maintained apps, it is not dependant on it

---

## Post 33 by @object2598 — 2025-11-04T19:56:13Z

There are no good FOSS alternatives for Task Manager apps.

Task managers are **productivity** apps, which also means they have some constraints for people who are struggling with productivity. Here, small details such as the UI and friction matter **a lot**. An unpolished app can quickly lead someone with ADHD to drop the app and go for a very bad alternative (in terms of privacy) such as Todoist or Things 3.

It is also a type of app for which the sync must be extremely reliable, since it deals with timely notifications. Additionally, open standards such as VTODO are extremely lacking and do not support encryption well.

Looking at the speed of the commits / changelog from the projects I mentioned before, and the features missing, I’d make the arbitrary prediction that closed source E2EE task managers are 5 years away from their non encrypted competitors, and FOSS task managers are at least 15 years away. And this is assuming the non encrypted apps will not make any improvements in the meantime, which is obviously untrue.

---

## Post 34 by @Libre_Software_Enjoyer — 2025-11-06T19:42:30Z

> [@anon57862721](#):
>
> I’m pretty sure an audit by a security company can still be done even if the software is closed source. There will however be a report with limited info so that I think would be the only difference.

Maybe.

Another good alternative would be if any syncing capabilities would be outsourced a FOSS app that also uses E2EE.  
This could be done by giving the closed source app no network permission but permission to access a specific folder which can also by accessed by the FOSS E2EE Sync app which handles encryption and server connection in an audible way

---

## Post 35 by @Libre_Software_Enjoyer — 2025-11-06T19:43:40Z

> [@object2598](#):
>
> There are no good FOSS alternatives for Task Manager apps.

Agrred, the only viable option at the moment is to use an app that can work without network permission

---

## Post 36 by @farmwithme021 — 2025-11-06T23:06:20Z

hmmm, im not sure if that is the case, seeing how many new ai coded apps spring up and many of them even not being bad.

biggest constraint will likely always be integration with other services

---

## Post 37 by @novisin — 2026-09-12T07:13:41Z

I can get behind closed source encryption, but does anyone have any update regarding it getting audited? Its only reservation I have against the service.
