The short version: your files are end-to-end encrypted on your device. We cannot read, scan, decrypt, or sell your file contents — not for ads, not for AI, not on request. We hold ciphertext only.
File contents, filenames, and folder structure are encrypted client-side before they reach us. We have no technical ability to access them. Your encryption keys are derived on your device and never transmitted.
We do not sell or rent your data. We do not use your files to train AI. We do not run advertising.
We share data only with our payment processor (to take payment) and where required by law. Because we cannot decrypt your files, we cannot disclose their contents to anyone, including under legal process.
We use only essential storage (e.g. to keep you signed in). We do not use third-party advertising or tracking cookies.
You may delete your stored data at any time (performed cryptographically and by removing ciphertext). For payment records held by our processor, contact us and we will assist with access or deletion requests as required by applicable law (e.g. GDPR/CCPA).