Particle.news

Ring Makes TAKE Its Default Encryption for Camera Cloud Features

The new MLS-based system aims to let Ring run cloud features by holding short-lived keys in an AWS Nitro Enclave that the company says it deletes within 24 hours.

Overview

  • Ring published a technical white paper on Wednesday and said it will begin a phased global rollout of TAKE in September, making the system the default setting for customers worldwide.
  • TAKE uses the IETF Messaging Layer Security standard and creates unique encryption keys that rotate roughly every five minutes and are stored temporarily in an AWS Nitro Enclave.
  • Ring says it will delete its copy of those enclave-held keys within 24 hours so the company only has short-term access to footage and can re-request keys from a customer’s device to retrieve older videos.
  • The company argues TAKE preserves cloud-only features like Smart Alerts, Video Search, and Video Descriptions that full end-to-end encryption would block, while keeping E2EE available as an option on newer, on-device-encrypting cameras.
  • Privacy observers and reporters note TAKE is not full E2EE because Ring built and controls the key-disposal process, so independent audits or third-party verification will be needed to resolve remaining trust and law-enforcement access questions.