Security

At Kryptify, we prioritise the security and confidentiality of your data. Our advanced security measures are designed to protect your files, maintain privacy, and ensure compliance with the highest standards of data protection.

Platform security

Password security

Strong password enforcement: All users are required to create passwords with a minimum of 12 characters, including a mix of uppercase and lowercase letters, numbers, and symbols, to safeguard accounts from unauthorised access.

Password encryption: We use bcrypt with adaptive hashing to securely store user passwords, ensuring that even in the unlikely event of a breach, your credentials remain protected.

Permissions and access control

Customisable role-based access controls (RBAC) allow you to define and manage who can access, edit, or share files. This granular control helps protect sensitive data and prevents unauthorised access.

Two-factor authentication (2FA)

2FA adds an extra layer of security by requiring a second authentication factor, such as a mobile device, to verify user identity before granting access to accounts.

Network security

Data hosting and management

Our services are hosted on ISO 27001-certified cloud platforms with industry-leading security practices. Production environments are accessible only to authorised personnel, with strict logging and monitoring in place.

Data backups and disaster recovery

We perform regular, encrypted backups of all data to ensure availability and recoverability in the event of an incident. Disaster recovery protocols are in place to minimise downtime and ensure business continuity.

Data encryption

All data is encrypted both in transit and at rest using AES-256 and TLS 1.3 protocols. This ensures that your files remain secure during storage and transfer.

File security

End-to-end encryption

Files are encrypted on your device before being uploaded to our servers, and only you hold the decryption keys. This ensures that no one—not even Kryptify—can access your files. Files are stored as fragmented datapackets, making them unreadable without the decryption key.

Neither Kryptify nor any of our subprocessors can view or access the contents of your files, guaranteeing total security and privacy.

Password-protected file sharing

Share sensitive files securely by setting unique passwords, expiration dates, and download limits. Protect your shared data while maintaining full control over access permissions.

Audit logs

Track and monitor all account activities, including login attempts, file access, and sharing events. Detailed logs give you visibility and control over your data’s security.

Additional security measures

Zero-knowledge architecture

Kryptify employs a zero-knowledge approach, ensuring that we cannot access your files, encryption keys, or metadata. Your data remains entirely private and under your control.

Employee security training

Our team undergoes continuous security training to stay updated on the latest threats and best practices, ensuring that all aspects of our service remain secure.

Confidentiality agreements

All employees sign strict confidentiality agreements to safeguard any sensitive information they might handle during their work.

Regular security audits

We conduct regular security audits and vulnerability assessments to identify and mitigate potential risks proactively.

Partnership with Darkshield

Kryptify collaborates with Darkshield, a leading cybersecurity firm, to strengthen our security posture. Darkshield provides periodic penetration testing, security assessments, and expert guidance, helping us proactively address emerging threats and ensure the highest standards of protection for your data.

Security inquiries and reporting vulnerabilities

Kryptify is committed to maintaining the highest standards of security. If you have any questions about our security practices or would like to report a potential vulnerability, please contact our security team at [email protected].