Portal

An encrypted client portal where access is a key, not a checkbox.

Client portals usually mean a login in front of a database the provider can read. This one is built the other way round: membership means holding a sealed key.

Access granted cryptographically, removed cryptographically.

For firms that need a persistent, professional and genuinely confidential client-facing space.

Built for confidentiality

Per-member sealed keys

Each participant holds their own X25519-sealed envelope of the space key; removal rotates the rest.

Messaging and approvals

Encrypted discussion and sign-off next to the documents they concern.

Versions and trash

Version history and a 30-day trash for recovering an earlier draft without provider access.

Notifications without content

Clients are told something arrived; the notification carries no readable content.

Audit trail

Grants, revocations, link lifecycle and access events, append-only and exportable.

Clean termination

Ending a relationship revokes access, rotates keys and records the change in one action.

Logins versus keys

In a conventional portal, an access-control list decides who may read, and the server can always read. In a zero-knowledge portal, the ability to decrypt is the access control, so a permission bug, a misconfiguration or a compromised admin account does not produce readable documents.

What clients notice

They notice a clean space with their documents in it, notifications when something is ready, and the fact that they never have to hunt through email. The cryptography stays invisible, which is the only way non-technical clients adopt anything.

Multiple contacts on the client side

Add each person individually rather than sharing one login. Every participant then has their own key envelope and their own audit entries, which is what makes an access record meaningful.

Frequently asked questions

Can we have several clients without them seeing each other?

+

Yes — each client space has its own key, so separation is cryptographic rather than a matter of folder permissions.

What does the client need?

+

A browser. A free account gives them persistent access, notifications and history.

Can DRIVUNO read the files I transfer?

+

No. Files are encrypted on your device with XChaCha20-Poly1305 before the upload starts, using keys derived locally with Argon2id. Our servers hold ciphertext only, so there is no preview, no scanning and no staff view of your transfer.

Does the recipient need an account?

+

No. They open the link in any browser, type the passphrase you shared separately, and the file is decrypted locally on their machine. Nothing to install, nothing to sign up for.

How long do share links last?

+

Public share links always expire within 24 hours at most, and you can make them shorter, limit the number of views, or revoke them instantly. Expiry is enforced by the system, not by a reminder.

How big can a transfer be?

+

Uploads are chunked, resumable and verified after upload, so multi-gigabyte transfers survive a dropped connection, a closed laptop or a hotel network. You resume instead of starting again.

Is there a free plan?

+

Yes. The free plan includes 1 GB with exactly the same zero-knowledge architecture as paid plans, so you can test a real client hand-off before paying anything.

What happens if I lose my password?

+

Because we cannot read your data, we cannot reset it for you. Each account creates a Recovery Kit — a printable PDF with a QR code — to store offline. That is the same property that keeps anyone else, including us, out of your account.

Related

Your sensitive files deserve more than a traditional cloud.

Start free with 1 GB. Zero-knowledge encryption from the first upload — no admin override, no AI scanning, no plaintext on the server.

1 GBfree vault
Encrypted on your device · upload in 1 click
Upload