How we protect your files

How Everabyte protects your files: TLS 1.3 in transit, AES-256-GCM at rest, client-side encryption, immutable backups and 6+3 erasure coding.

Security is a foundation of Everabyte, not an add-on. Your files are protected through several independent layers, from the moment they leave your device to the copies kept in our datacenters. This article explains each layer and why it matters for your data.

In short

Everabyte protects your files with encryption in transit and at rest, client-side encryption, immutable replicated backups, event monitoring and regular penetration testing. Data is stored with 6+3 erasure coding across 7 Tier III+ datacenters.

Encryption in transit and at rest

Data is protected in transit and at rest using modern cryptographic standards. Everabyte uses TLS 1.3 for transport security: when a file travels between your device and our infrastructure, it is encrypted on the way. Stored data is protected with AES-256-GCM, a modern authenticated encryption standard.

Encryption starts on your device

Files are encrypted on your device before they reach our infrastructure. This client-side encryption is the base of our zero-knowledge design: Everabyte stores and protects your encrypted data, but does not hold the key needed to read it. You can read more in Zero-knowledge encryption explained.

Immutable, replicated backups

Backups are protected with immutable WORM-style retention controls, which help preserve data integrity and reduce the risk of deletion or tampering. They are also replicated across multiple datacenter locations, so your data has more than one protected copy.

Resilient storage architecture

Everabyte stores data with 6+3 erasure coding across 7 Tier III+ datacenters, with tested failover. Erasure coding splits data into redundant fragments, so a file remains available even if some fragments are unavailable.

Logging and monitoring

Security-sensitive actions are logged to support traceability, operational review and incident response. Security-relevant events are monitored to support operational visibility, anomaly detection and incident response.

Regular testing and responsible disclosure

Our defenses are tested on a regular basis. Everabyte runs annual penetration testing with a responsible disclosure program, dependency scanning and code review. This helps identify weaknesses before they can be exploited.

Tip — Want the full technical picture? Read our security architecture page.

Common issues

Does Everabyte have access to my encryption keys?

No. Everabyte does not hold customer encryption keys and has no technical means to read customer files. See Can Everabyte read my files?.

What happens if a datacenter becomes unavailable?

Data is stored with 6+3 erasure coding across 7 Tier III+ datacenters with tested failover, and backups are replicated across multiple locations. This design helps keep your data available.

Is the security of my data tested?

Yes. Everabyte runs annual penetration testing with a responsible disclosure program, along with dependency scanning and code review.

Still need help?

Can't find what you're looking for? Our support team can help.