NDA & confidential projects

File sharing that actually matches what your NDA promises.

An NDA is a contract. Client-side encryption is an enforcement mechanism. DRIVUNO gives you both on the same files.

Sign the NDA. Then make it technically true.

For creative studios, m&a and legal teams, product and r&d groups, and every contractor bound by confidentiality clauses.

Built for confidentiality

Confidential by default

There is no 'public folder' concept. Every object is sealed before upload and shared through explicit, revocable grants.

Per-recipient key envelopes

Access is granted by sealing the folder key to a recipient's public key — not by flipping a boolean in a database.

Revocation with rotation

Removing access rotates the folder key, so a copied envelope no longer opens future content.

Expiring external delivery

External reviewers receive links capped at 24 hours, optionally protected by an Argon2id passphrase.

Immutable audit log

Grants, revocations, sessions and downloads are recorded in an append-only log you can export.

No AI scanning

No model, reviewer or classifier reads your content. There is nothing readable to feed one.

The gap between a clause and a control

Most NDA breaches are not dramatic. A file lands in a consumer cloud, a link is forwarded, an account is compromised, an admin exports a workspace, or a provider's automated system flags and reviews content. None of that is prevented by the contract you signed; all of it is constrained when the provider cannot decrypt the file.

A workflow reviewers accept

Confidential delivery fails when it is annoying. DRIVUNO keeps the experience close to what your counterparties already expect: browser previews, galleries, ZIP downloads, comments in an encrypted room next to the files, and no plugin to install.

Proof you can show a client

Our published architecture, threat model, subprocessor list, incident-response policy and release notes let you answer a security questionnaire with documents instead of adjectives.

Frequently asked questions

Can DRIVUNO read our messages or files?

+

No. Messages and files are encrypted on the device before they are sent. DRIVUNO Rooms seals every message with XChaCha20-Poly1305 under a room key that is itself wrapped per member with X25519. Servers relay and store ciphertext only.

How is this different from Slack or Microsoft Teams?

+

Slack and Teams encrypt data in transit and at rest, but the provider holds the keys, so administrators, automated systems and legal requests can reach message content. DRIVUNO is designed so that this is technically impossible on our side: we never hold a key that opens your content.

What happens when someone leaves the team?

+

Removing a member revokes their sealed copy of the room or folder key and triggers a key rotation, so future content is sealed under a key they never had.

Can we prove who accessed a delivery?

+

Yes. Access and share events are logged immutably with timestamps and actor identifiers, while the content itself is never logged.

Does this replace our NDA?

+

No. It enforces it technically. The contract still governs obligations; the encryption removes the provider from the set of parties able to read the material.

Related

Your sensitive files deserve more than a traditional cloud.

Start free with 1 GB. Zero-knowledge encryption from the first upload — no admin override, no AI scanning, no plaintext on the server.

1 GBfree vault
Encrypted on your device · upload in 1 click
Upload