Zero-knowledge encryption explained
Zero-knowledge, simply explained: your files are encrypted on your device with a key Everabyte never holds, and we store only encrypted data.
The term “zero-knowledge” describes how Everabyte protects your files at the deepest level. In simple words: the platform keeps your data safe without ever being able to look inside. This article explains what that means in practice and what it implies for you.
In short
Zero-knowledge means your files are encrypted on your device with a key Everabyte never holds. We store only ciphertext — encrypted data — and cannot read it, in any deployment, including white-label.
A locked box you keep the only key to
Imagine a locked box. Before sending your files to us, you place them in the box and lock it. Only you keep the key. Everabyte stores the box, protects it and backs it up — but cannot open it. That is the essence of zero-knowledge storage: the service keeps the safe, the customer keeps the key.
What happens on your device
Your files are encrypted on your device before they reach our infrastructure. The encryption key stays with you: Everabyte does not hold customer encryption keys. On our side, files exist only as ciphertext — encrypted data that is unreadable without your key.
Why it matters
Because the key never reaches us, Everabyte has no technical means to read customer files. An attacker who obtained stored data would still face encrypted files. We operate on ciphertext, not on your content, which also limits what we can see about your data.
The same model everywhere
This zero-knowledge design applies across the storage platform, including white-label deployments. If you use Everabyte through a white-label brand, the underlying protection is the same.
The responsibility it places on you
Zero-knowledge has one important consequence: if you lose your key, nobody can recover your files for you — not even Everabyte. There is no master key and no back door. That is why protecting your key matters so much.
Important — Zero-knowledge also means Everabyte cannot recover your files if you lose your key. See Lost encryption key and How to protect your encryption key.
Common issues
Is zero-knowledge the same as end-to-end encryption?
The two terms overlap: in both cases, data is encrypted before it leaves your device. What defines Everabyte’s model is that the key stays with you — we never hold customer encryption keys.
Does zero-knowledge apply to shared files?
The design applies across the platform. Sharing settings control who can access shared content; see our sharing best practices.
Is client-side encryption optional?
Client-side encryption is part of the platform design, not an optional layer: files are encrypted on your device with a key Everabyte does not hold.
Where can I read about the security layers around it?
See How we protect your files for TLS 1.3, AES-256-GCM, backups and more.
Was this article helpful?
Thanks for your feedback.
Still need help?
Can't find what you're looking for? Our support team can help.