NDA & confidential projects

File sharing that actually matches what your NDA promises.

An NDA is a contract. Client-side encryption is an enforcement mechanism. DRIVUNO gives you both on the same files.

Sign the NDA. Then make it technically true.

For creative studios, m&a and legal teams, product and r&d groups, and every contractor bound by confidentiality clauses.

Built for confidentiality

Confidential by default

There is no 'public folder' concept. Every object is sealed before upload and shared through explicit, revocable grants.

Per-recipient key envelopes

Access is granted by sealing the folder key to a recipient's public key — not by flipping a boolean in a database.

Revocation with rotation

Removing access rotates the folder key, so a copied envelope no longer opens future content.

Expiring external delivery

External reviewers receive links capped at 24 hours, optionally protected by an Argon2id passphrase.

Immutable audit log

Grants, revocations, sessions and downloads are recorded in an append-only log you can export.

No AI scanning

No model, reviewer or classifier reads your content. There is nothing readable to feed one.

The gap between a clause and a control

Most NDA breaches are not dramatic. A file lands in a consumer cloud, a link is forwarded, an account is compromised, an admin exports a workspace, or a provider's automated system flags and reviews content. None of that is prevented by the contract you signed; all of it is constrained when the provider cannot decrypt the file.

A workflow reviewers accept

Confidential delivery fails when it is annoying. DRIVUNO keeps the experience close to what your counterparties already expect: browser previews, galleries, ZIP downloads, comments in an encrypted room next to the files, and no plugin to install.

Proof you can show a client

Our published architecture, threat model, subprocessor list, incident-response policy and release notes let you answer a security questionnaire with documents instead of adjectives.

Frequently asked questions

Is Google Chat end-to-end encrypted?

+

No. Google Chat encrypts messages in transit and at rest with keys Google manages, so Google can access message content; client-side encryption is limited and not the default. DRIVUNO Rooms is end-to-end encrypted by design: room keys are sealed per member with X25519 and messages with XChaCha20-Poly1305, so we store ciphertext only.

Is Microsoft Teams end-to-end encrypted?

+

Only for one-to-one calls, and only when enabled. Channel messages, group chats and files in Teams remain readable by the platform. In DRIVUNO Rooms there is no unencrypted mode for channels, DMs or attachments — PSTN phone calls and SMS in the Call & SMS Center are the documented exception and are not end-to-end encrypted.

Can DRIVUNO read our messages or files?

+

No. Messages and files are encrypted on the device before they are sent. DRIVUNO Rooms seals every message with XChaCha20-Poly1305 under a room key that is itself wrapped per member with X25519. Servers relay and store ciphertext only.

Can we prove who accessed a delivery?

+

Yes. Access and share events are logged immutably with timestamps and actor identifiers, while the content itself is never logged.

Does this replace our NDA?

+

No. It enforces it technically. The contract still governs obligations; the encryption removes the provider from the set of parties able to read the material.

Related

Your sensitive files deserve more than a traditional cloud.

Start free with 1 GB. Zero-knowledge encryption from the first upload — no admin override, no AI scanning, no plaintext on the server.

1 GBfree vault
End-to-end encrypted