HR

HR documents are the most sensitive internal data a company holds.

Salaries, reviews, grievances, medical notes and exit agreements — usually stored in the same suite everyone else uses, protected by folder permissions.

Personnel data readable only by the people who must read it.

For people teams, hr managers and founders handling employment records and sensitive internal cases.

Built for confidentiality

Case- and person-scoped spaces

Keys sealed per participant, so an HR case is cryptographically closed to everyone else.

Rotation on change

When someone leaves a case or the company, removal rotates remaining keys and is recorded.

Protected external sharing

Send an offer or an agreement with a passphrase, an expiry within 24 hours maximum and revocation.

Encrypted case discussion

Investigation notes stay out of a chat product whose history the vendor can read.

Access evidence

An append-only trail showing exactly who accessed a personnel file and when.

Retention control

Deliberate deletion with a 30-day trash, so records do not persist past their purpose.

The permissions problem in HR

In a conventional suite, IT administrators can typically reach HR folders, and permission mistakes are common because HR structures change constantly. Cryptographic scoping means an administrator without a key envelope cannot read a personnel file, whatever the permissions say.

Investigations require genuine confidentiality

A grievance or misconduct case fails the moment participants suspect it can be read by colleagues. Encrypted case spaces with explicit membership and an access trail are what makes a promise of confidentiality credible to the people involved.

Data-protection obligations

Employment records are personal data with strict expectations around access, minimisation and retention. Per-person keys support access control, the audit trail supports accountability, and deliberate deletion supports retention limits — while your own policies and records remain your responsibility.

Frequently asked questions

Can IT administrators read HR files?

+

Not unless they hold a key envelope for that space. Administration of accounts and billing is separate from the ability to decrypt content.

Can we share an offer letter with a candidate?

+

Yes, through a protected link with a passphrase and an expiry, without the candidate creating an account.

Can DRIVUNO read the files I transfer?

+

No. Files are encrypted on your device with XChaCha20-Poly1305 before the upload starts, using keys derived locally with Argon2id. Our servers hold ciphertext only, so there is no preview, no scanning and no staff view of your transfer.

Does the recipient need an account?

+

No. They open the link in any browser, type the passphrase you shared separately, and the file is decrypted locally on their machine. Nothing to install, nothing to sign up for.

How long do share links last?

+

Public share links always expire within 24 hours at most, and you can make them shorter, limit the number of views, or revoke them instantly. Expiry is enforced by the system, not by a reminder.

How big can a transfer be?

+

Uploads are chunked, resumable and verified after upload, so multi-gigabyte transfers survive a dropped connection, a closed laptop or a hotel network. You resume instead of starting again.

Is there a free plan?

+

Yes. The free plan includes 1 GB with exactly the same zero-knowledge architecture as paid plans, so you can test a real client hand-off before paying anything.

What happens if I lose my password?

+

Because we cannot read your data, we cannot reset it for you. Each account creates a Recovery Kit — a printable PDF with a QR code — to store offline. That is the same property that keeps anyone else, including us, out of your account.

Related

Your sensitive files deserve more than a traditional cloud.

Start free with 1 GB. Zero-knowledge encryption from the first upload — no admin override, no AI scanning, no plaintext on the server.

1 GBfree vault
Encrypted on your device · upload in 1 click
Upload