@pschwede
The admin of almost ANY system can read your data. It wouldnt be able to display your information to you if the system itself didnt have the ability to decrypt it. Therefore even if it were encrypted the admin would still have the means to decrypt it. So thats simply not a problem that can be solved server-side in this case.