Security is not optional

Your files are protected by the same encryption standards used by governments and financial institutions worldwide.

AES-256 Encryption
SOC 2 Type II
GDPR Compliant
Zero-Knowledge Architecture
How We Protect You

Security at every layer

Encryption at Rest

Every file is encrypted with AES-256 before being written to disk. Encryption keys are managed by a dedicated KMS with automatic rotation every 90 days.

Encryption in Transit

All data in transit is protected by TLS 1.3 with perfect forward secrecy. Certificate pinning prevents man-in-the-middle attacks on mobile and desktop clients.

Zero-Knowledge E2EE

When enabled, files are encrypted on your device before upload. We never see your decryption keys — even we cannot read your data.

Audit Logging

Every access, download, share, and modification is logged immutably. Export logs to your SIEM or review them in our dashboard in real time.

Access Controls

Role-based permissions, IP allowlists, mandatory 2FA, and session management ensure only the right people access your files.

Incident Response

Our security team operates 24/7. We maintain a structured incident response plan with <1hr notification SLA for any suspected breach.

How your data flows

Your Device
E2E Encrypt
TLS 1.3
Global CDN
AES-256 Storage

Certifications & Compliance

SOC 2

Type II certified. Annual audit by independent third parties.

GDPR

Full compliance with EU data protection regulations.

ISO 27001

Information security management system certification.

HIPAA

BAA available for healthcare organizations on Enterprise plans.