{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,26]],"date-time":"2026-07-26T14:04:50Z","timestamp":1785074690842,"version":"3.55.0"},"reference-count":69,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,9,1]],"date-time":"2026-09-01T00:00:00Z","timestamp":1788220800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,6,19]],"date-time":"2026-06-19T00:00:00Z","timestamp":1781827200000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Array"],"published-print":{"date-parts":[[2026,9]]},"DOI":"10.1016\/j.array.2026.101030","type":"journal-article","created":{"date-parts":[[2026,6,24]],"date-time":"2026-06-24T15:27:14Z","timestamp":1782314834000},"page":"101030","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["Eliminating trust in the cloud: Design, implementation and evaluation of an end-to-end encrypted Git service"],"prefix":"10.1016","volume":"31","author":[{"given":"Leif","family":"Rogell","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Truong","family":"Ho-Quang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2806-9694","authenticated-orcid":false,"given":"Raja Khurram","family":"Shahzad","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5656-9253","authenticated-orcid":false,"given":"Rodi","family":"Jolak","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.array.2026.101030_b1","first-page":"122","article-title":"An overview of cloud computing and leading cloud service providers","volume":"15","author":"Borra","year":"2024","journal-title":"Int J Comput Eng Technol (IJCET)"},{"key":"10.1016\/j.array.2026.101030_b2","doi-asserted-by":"crossref","first-page":"57 792","DOI":"10.1109\/ACCESS.2021.3073203","article-title":"A systematic literature review on cloud computing security: threats and mitigation strategies","volume":"9","author":"Alouffi","year":"2021","journal-title":"IEEE Access"},{"key":"10.1016\/j.array.2026.101030_b3","series-title":"2020 IEEE international conference for innovation in technology","first-page":"1","article-title":"Cloud storage security risks, practices and measures: A review","author":"Syed","year":"2020"},{"key":"10.1016\/j.array.2026.101030_b4","doi-asserted-by":"crossref","first-page":"30 907","DOI":"10.1109\/ACCESS.2024.3369906","article-title":"A review of recent advances, challenges, and opportunities in malicious insider threat detection using machine learning methods","volume":"12","author":"Alzaabi","year":"2024","journal-title":"IEEE Access"},{"key":"10.1016\/j.array.2026.101030_b5","series-title":"2021 third international conference on intelligent communication technologies and virtual mobile networks","first-page":"136","article-title":"Secure data storage in cloud using encryption algorithm","author":"Pronika","year":"2021"},{"key":"10.1016\/j.array.2026.101030_b6","first-page":"44","article-title":"Comparing several encrypted cloud storage platforms","volume":"2","author":"Manthiramoorthy","year":"2024","journal-title":"Int J Math Stat Comput Sci"},{"key":"10.1016\/j.array.2026.101030_b7","series-title":"NIST SP 800-152","article-title":"A profile for U.S. Federal cryptographic key management systems","author":"Barker","year":"2015"},{"issue":"5","key":"10.1016\/j.array.2026.101030_b8","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1109\/MITP.2010.128","article-title":"Establishing trust in cloud computing","volume":"12","author":"Khan","year":"2010","journal-title":"IT Prof"},{"key":"10.1016\/j.array.2026.101030_b9","series-title":"IEEE security & privacy","article-title":"Analysing cryptography in the wild: A retrospective","volume":"vol. 22","author":"Albrecht","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b10","series-title":"2021 international conference on communication information and computing technology","first-page":"1","article-title":"Protonmail: Advance encryption and security","author":"Saxena","year":"2021"},{"key":"10.1016\/j.array.2026.101030_b11","series-title":"IEEE symposium on security and privacy","first-page":"146","article-title":"MEGA: Malleable encryption goes awry","author":"Backendal","year":"2023"},{"key":"10.1016\/j.array.2026.101030_b12","series-title":"Advances in cryptology","article-title":"A formal treatment of end-to-end encrypted cloud storage","volume":"vol. 14921","author":"Backendal","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b13","series-title":"IEEE international conference on cloud engineering","first-page":"218","article-title":"Analyzing privacy policies of zero knowledge cloud storage applications on mobile devices","author":"Baalous","year":"2018"},{"issue":"3","key":"10.1016\/j.array.2026.101030_b14","doi-asserted-by":"crossref","first-page":"100","DOI":"10.1109\/MS.2012.61","article-title":"Git","volume":"29","author":"Spinellis","year":"2012","journal-title":"IEEE Softw"},{"key":"10.1016\/j.array.2026.101030_b15","series-title":"The history of version control","first-page":"5","volume":"Vol. 35","author":"Ruparelia","year":"2010"},{"key":"10.1016\/j.array.2026.101030_b16","series-title":"Network and distributed systems security symposium","article-title":"How bad can it git? Characterizing secret leakage in public github repositories","author":"Meli","year":"2019"},{"key":"10.1016\/j.array.2026.101030_b17","series-title":"Hawaii international conference on system sciences","first-page":"5310","article-title":"Analysis of implementations to secure git for use as an encrypted distributed version control system","author":"Shirey","year":"2015"},{"key":"10.1016\/j.array.2026.101030_b18","series-title":"Network and distributed system security symposium","article-title":"Rethinking trust in forge-based git security","author":"Yelgundhalli","year":"2025"},{"key":"10.1016\/j.array.2026.101030_b19","series-title":"International conference on emerging eLearning technologies and applications","first-page":"217","article-title":"Performance comparison of ipsec and tls based vpn technologies","author":"Kotuliak","year":"2011"},{"key":"10.1016\/j.array.2026.101030_b20","doi-asserted-by":"crossref","first-page":"681","DOI":"10.1016\/j.future.2017.09.025","article-title":"Taming energy cost of disk encryption software on data-intensive mobile devices","volume":"107","author":"Hu","year":"2020","journal-title":"Future Gener Comput Syst"},{"key":"10.1016\/j.array.2026.101030_b21","doi-asserted-by":"crossref","DOI":"10.1016\/j.jnca.2020.102864","article-title":"A trust game model of service cooperation in cloud computing","volume":"173","author":"Sun","year":"2021","journal-title":"J Netw Comput Appl"},{"key":"10.1016\/j.array.2026.101030_b22","article-title":"Trust model considering uncertainty and dynamics in cloud computing","author":"Wang","year":"2024","journal-title":"IEEE Access"},{"key":"10.1016\/j.array.2026.101030_b23","doi-asserted-by":"crossref","DOI":"10.1038\/s41598-024-69134-8","article-title":"Trust value evaluation of cloud service providers using fuzzy inference based analytical process","volume":"14","author":"John","year":"2024","journal-title":"Sci Rep"},{"key":"10.1016\/j.array.2026.101030_b24","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2020.102117","article-title":"Hardware-based solutions for trusted cloud computing","volume":"103","author":"Demigha","year":"2021","journal-title":"Comput Secur"},{"issue":"6","key":"10.1016\/j.array.2026.101030_b25","first-page":"17","article-title":"An overview of git","volume":"3","author":"Ghodke","year":"2024","journal-title":"Int J Sci Res Mod Sci Technol"},{"key":"10.1016\/j.array.2026.101030_b26","series-title":"gittuf: Secure supply chain toolkit for git repositories","author":"gittuf","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b27","series-title":"Git as an encrypted distributed version control system","author":"Shirey","year":"2015"},{"key":"10.1016\/j.array.2026.101030_b28","series-title":"git-crypt","author":"AGWA","year":"2012"},{"key":"10.1016\/j.array.2026.101030_b29","series-title":"2019 IEEE international conference on multimedia and expo","first-page":"772","article-title":"Enforcing access control in distributed version control systems","author":"Xu","year":"2019"},{"key":"10.1016\/j.array.2026.101030_b30","series-title":"git-remote-gcrypt","author":"McVittie","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b31","doi-asserted-by":"crossref","first-page":"668","DOI":"10.1109\/TDSC.2023.3251365","article-title":"Gringotts: An encrypted version control system with less trust on servers","volume":"21","author":"Xu","year":"2023","journal-title":"IEEE Trans Dependable Secur Comput"},{"key":"10.1016\/j.array.2026.101030_b32","series-title":"International conference on signal processing, communication, power and embedded system","first-page":"278","article-title":"Performance analysis of encryption algorithms for security","author":"Panda","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b33","series-title":"2014 international conference on parallel, distributed and grid computing","first-page":"105","article-title":"Performance evaluation of various symmetric encryption algorithms","author":"Kansal","year":"2014"},{"key":"10.1016\/j.array.2026.101030_b34","series-title":"International conference on information and communication technologies","first-page":"84","article-title":"A performance comparison of data encryption algorithms","author":"Nadeem","year":"2005"},{"key":"10.1016\/j.array.2026.101030_b35","series-title":"USENIX security symposium","first-page":"4255","article-title":"Zero-knowledge middleboxes","author":"Grubbs","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b36","series-title":"Empirical software engineering","first-page":"131","article-title":"Guidelines for conducting and reporting case study research in software engineering","volume":"vol. 14","author":"Runeson","year":"2009"},{"key":"10.1016\/j.array.2026.101030_b37","series-title":"git-secret","author":"Sobolev","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b38","series-title":"Encrypted git for everyone","author":"Keybase","year":"2017"},{"key":"10.1016\/j.array.2026.101030_b39","series-title":"ACM SIGSAC conference on computer and communications security","first-page":"468","article-title":"End-to-end encrypted git services","author":"Li","year":"2025"},{"key":"10.1016\/j.array.2026.101030_b40","series-title":"Github documentation","author":"GitHub","year":"2008"},{"key":"10.1016\/j.array.2026.101030_b41","series-title":"Advances in computers","doi-asserted-by":"crossref","DOI":"10.1016\/S0065-2458(08)60206-5","article-title":"Role-based access control","volume":"vol. 46","author":"Sandhu","year":"1998"},{"key":"10.1016\/j.array.2026.101030_b42","doi-asserted-by":"crossref","first-page":"85","DOI":"10.1109\/MC.2015.33","article-title":"Attribute-based access control","volume":"48","author":"Hu","year":"2015","journal-title":"Computer"},{"key":"10.1016\/j.array.2026.101030_b43","series-title":"Github trending repositories","author":"GitHub","year":"2008"},{"key":"10.1016\/j.array.2026.101030_b44","series-title":"Anime: A javascript animation library","author":"Garnier","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b45","series-title":"Awesome llm apps","author":"Saboo","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b46","series-title":"Build your own x","author":"Codecrafters","year":"2018"},{"key":"10.1016\/j.array.2026.101030_b47","series-title":"Gitdiagram","author":"Khaleel","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b48","series-title":"Glance: A self-hosted dashboard that puts all your feeds in one place","author":"GlanceApp","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b49","series-title":"Llama models: Utilities for llama language models","author":"AI","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b50","series-title":"Markitdown: Python tool for converting files and office documents to markdown","author":"Microsoft","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b51","series-title":"IEEE international symposium on software reliability engineering","first-page":"400","article-title":"Switching to git: the good, the bad, and the ugly","author":"Just","year":"2016"},{"key":"10.1016\/j.array.2026.101030_b52","series-title":"Sample size calculations: Practical methods for engineers and scientists","author":"Mathews","year":"2010"},{"key":"10.1016\/j.array.2026.101030_b53","series-title":"Hawaii international conference on system sciences","first-page":"3011","article-title":"Pseudonymization with metadata encryption for privacy-preserving searchable documents","author":"Heurix","year":"2012"},{"key":"10.1016\/j.array.2026.101030_b54","series-title":"Activepieces: An open-source automation tool","author":"ActivePieces","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b55","series-title":"Proceedings of the 2018 on Asia conference on computer and communications security","first-page":"343","article-title":"Can you trust your encrypted cloud? An assessment of spideroakone\u2019s security","author":"Dalskov","year":"2018"},{"key":"10.1016\/j.array.2026.101030_b56","series-title":"Annual international conference on the theory and applications of cryptographic techniques","first-page":"190","article-title":"Caveat implementor! key recovery attacks on mega","author":"Albrecht","year":"2023"},{"key":"10.1016\/j.array.2026.101030_b57","series-title":"Cryptography algorithms: a guide to algorithms in blockchain, quantum cryptography, zero-knowledge protocols, and homomorphic encryption","author":"Bertaccini","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b58","article-title":"A systematic review on the status and progress of homomorphic encryption technologies","volume":"48","author":"Alloghani","year":"2019","journal-title":"J Inf Secur Appl"},{"key":"10.1016\/j.array.2026.101030_b59","series-title":"Proceedings of the 2020 4th high performance computing and cluster technologies conference & 2020 3rd international conference on big data and artificial intelligence","first-page":"179","article-title":"Cryptanalysis of the modified sha256","author":"Cortez","year":"2020"},{"key":"10.1016\/j.array.2026.101030_b60","doi-asserted-by":"crossref","DOI":"10.51584\/IJRIAS.2022.7802","article-title":"Pre-image attack of the md5 hash function by proportional logic","volume":"7","author":"Nkouankou","year":"2022","journal-title":"Int J Res Innov Appl Sci"},{"key":"10.1016\/j.array.2026.101030_b61","series-title":"Proceedings of the seventh international conference on mathematics and computing: ICMC 2021","first-page":"141","article-title":"New records of pre-image search of reduced sha-1 using sat solvers","author":"Bellini","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b62","series-title":"IEEE 41st international conference on distributed computing systems","first-page":"337","article-title":"When delta sync meets message-locked encryption: A feature-based delta sync scheme for encrypted cloud storage","author":"Wu","year":"2021"},{"key":"10.1016\/j.array.2026.101030_b63","series-title":"Computers & security","article-title":"Security-first, security by design, or security pragmatism - strategic roles of IT security in digitalization projects","volume":"118","author":"Guggenmos","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b64","first-page":"13","article-title":"Infrastructures of trust and distrust: The politics and ethics of emerging cryptographic technologies","volume":"36","author":"Bruun","year":"2020"},{"key":"10.1016\/j.array.2026.101030_b65","series-title":"Proceedings of the 2022 symposium on computer science and law","first-page":"167","article-title":"Cryptography, trust and privacy: It\u2019s complicated","author":"Balsa","year":"2022"},{"key":"10.1016\/j.array.2026.101030_b66","series-title":"NIST SP 800-207","article-title":"Zero trust architecture","author":"Rose","year":"2020"},{"key":"10.1016\/j.array.2026.101030_b67","series-title":"Trust in computer systems and the cloud","author":"Bursell","year":"2021"},{"key":"10.1016\/j.array.2026.101030_b68","series-title":"IEEE 9th European symposium on security and privacy","first-page":"828","article-title":"Share with care: Breaking E2EE in nextcloud","author":"Albrecht","year":"2024"},{"key":"10.1016\/j.array.2026.101030_b69","series-title":"Seke","first-page":"374","article-title":"Validity threats in empirical software engineering research-an initial survey","author":"Feldt","year":"2010"}],"container-title":["Array"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S259000562600353X?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S259000562600353X?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,7,26]],"date-time":"2026-07-26T13:59:26Z","timestamp":1785074366000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S259000562600353X"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,9]]},"references-count":69,"alternative-id":["S259000562600353X"],"URL":"https:\/\/doi.org\/10.1016\/j.array.2026.101030","relation":{"is-supplemented-by":[{"id-type":"uri","id":"https:\/\/github.com\/e2git-paper","asserted-by":"subject"}]},"ISSN":["2590-0056"],"issn-type":[{"value":"2590-0056","type":"print"}],"subject":[],"published":{"date-parts":[[2026,9]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"Eliminating trust in the cloud: Design, implementation and evaluation of an end-to-end encrypted Git service","name":"articletitle","label":"Article Title"},{"value":"Array","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.array.2026.101030","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 The Authors. Published by Elsevier Inc.","name":"copyright","label":"Copyright"}],"article-number":"101030"}}