Security

Only the people you choose can open what you share.

This page explains how files are stored, how links are protected, and which controls you have.

How your files are protected.

Encryption

Files are encrypted with AES-256 where they are stored and travel over TLS between your browser and our servers.

Infrastructure

Files are stored in AWS data centres, in the region you choose. You can also connect your own cloud storage.

Access control

Protect any link with a password and an expiry date, and switch it off whenever you want.

Your files stay yours

We do not sell your data or show your files to anyone you have not shared them with.

Storage that is closed to the internet.

Nobody can reach a file by guessing its address. Every download goes through our API first.

No public access
Storage buckets block every public read and write request.
Deny by default
Access is denied unless a rule explicitly allows it, and an explicit deny overrides every other permission.
Only our application can reach storage
Storage accepts requests from our application servers only.
Short-lived download links
Files are served through signed URLs that our API creates for each request and that expire soon after.

Controls you can use.

Password on a link

The person opening the link enters it once before they see anything.

Expiry date

Choose the day a link stops working.

Off switch

Deactivate any link from the dashboard, even after it has been sent.

Watermark

Show photos with your watermark until you release the final files.

Teams and groups

Keep each team’s files with the people who should see them.

Activity log

See what was shared, changed and downloaded in your account.

Share with a password and an expiry date.

Create a free account and try both on your next link.