How to evaluate private file sharing tools: encryption model, metadata, link controls, business model and the questions that expose marketing language.
Three private surfaces. Same zero-knowledge architecture.
Server-side encryption at rest. Protects against a stolen disk. The provider still decrypts on demand for previews, indexing and features.
Provider-managed "customer keys". Better governance, same fundamental capability if the provider can use the key on your behalf.
Client-side, zero-knowledge. Plaintext exists only on endpoints. The provider serves bytes it cannot interpret.
Only the last model changes who is capable of reading your files.
A tool claiming perfect privacy with none of these consequences is describing something impossible.
Three private surfaces. Same zero-knowledge architecture.