Storing encryption secrets for each user

@dan.woda Yes, the user should be the only party with access to that data.