How we protect your files
How Everabyte protects your files: TLS 1.3 in transit, AES-256-GCM at rest, client-side encryption, immutable backups and 6+3 erasure coding.
Security is a foundation of Everabyte, not an add-on. Your files are protected through several independent layers, from the moment they leave your device to the copies kept in our datacenters. This article explains each layer and why it matters for your data.
In short
Everabyte protects your files with encryption in transit and at rest, client-side encryption, immutable replicated backups, event monitoring and regular penetration testing. Data is stored with 6+3 erasure coding across 7 Tier III+ datacenters.
Encryption in transit and at rest
Data is protected in transit and at rest using modern cryptographic standards. Everabyte uses TLS 1.3 for transport security: when a file travels between your device and our infrastructure, it is encrypted on the way. Stored data is protected with AES-256-GCM, a modern authenticated encryption standard.
Encryption starts on your device
Files are encrypted on your device before they reach our infrastructure. This client-side encryption is the base of our zero-knowledge design: Everabyte stores and protects your encrypted data, but does not hold the key needed to read it. You can read more in Zero-knowledge encryption explained.
Immutable, replicated backups
Backups are protected with immutable WORM-style retention controls, which help preserve data integrity and reduce the risk of deletion or tampering. They are also replicated across multiple datacenter locations, so your data has more than one protected copy.
Resilient storage architecture
Everabyte stores data with 6+3 erasure coding across 7 Tier III+ datacenters, with tested failover. Erasure coding splits data into redundant fragments, so a file remains available even if some fragments are unavailable.
Logging and monitoring
Security-sensitive actions are logged to support traceability, operational review and incident response. Security-relevant events are monitored to support operational visibility, anomaly detection and incident response.
Regular testing and responsible disclosure
Our defenses are tested on a regular basis. Everabyte runs annual penetration testing with a responsible disclosure program, dependency scanning and code review. This helps identify weaknesses before they can be exploited.
Tip — Want the full technical picture? Read our security architecture page.
Common issues
Does Everabyte have access to my encryption keys?
No. Everabyte does not hold customer encryption keys and has no technical means to read customer files. See Can Everabyte read my files?.
What happens if a datacenter becomes unavailable?
Data is stored with 6+3 erasure coding across 7 Tier III+ datacenters with tested failover, and backups are replicated across multiple locations. This design helps keep your data available.
Is the security of my data tested?
Yes. Everabyte runs annual penetration testing with a responsible disclosure program, along with dependency scanning and code review.
Was this article helpful?
Thanks for your feedback.
Still need help?
Can't find what you're looking for? Our support team can help.