It doesn't matter. Web-based cryptography is always snake oil https://web.archive.org/web/https://www.devever.net/~hl/webc...
Agree, but a significant point missed in the article is that of data vulnerability. with E2EE the company db is useless to an external attacker. For some companies (eg facebook, google, tiktok) i would be mostly worried about the company itself being untrustworthy. For others I would be mostly worried about the company being vulnerable.
Depends on who is defined as the other end, it may be that the company db is the other end.