Perhaps to help others extract info: for me most of this I know or is sort of common sense at this point with the one exception of page 39: "do the encryption in your app".
I'm not saying I have ever used pgcrypto but it is important to be mindful that pg is logging stuff.
I'm not saying I have ever used pgcrypto but it is important to be mindful that pg is logging stuff.