Encrypted file transfer under your own branded space, stored in the EU. Your clients see you, not us. Everything is encrypted in your browser before it leaves the device, so we hold ciphertext and never need the key.
Nullsend’s architecture means certain things are not just restricted by our own policy, they are constrained by design. That is the entire product.
Files are encrypted in your browser before upload. Our servers see only ciphertext.
You can’t train on what you can’t see. No model, ours or anyone else’s, gets your data.
A legal request returns ciphertext and metadata, not readable content, because we never hold the key.
No thumbnails. No previews. No virus scanning. These trade-offs are the point.
Lose the link, lose the file, for good. By design, because anything else is a backdoor.
The protection lives in the architecture, not in a Terms of Service we could revise next year.
Scroll. The diagram walks the whole journey of a single transfer: the file, the ciphertext, and the key that stays out of our hands. On the normal share path the key is never transmitted; verify it: RFC 3986 §3.5 (Fragment).
When you drop a file in, your browser generates a random 256-bit AES key and encrypts each chunk locally. The plaintext never leaves your device.
Encrypted chunks stream directly to EU-resident storage. Our servers store ciphertext and metadata. We see what you uploaded, not what is in it.
The decryption key lives after the # in the share URL. By web standards, fragments never reach the server. Watch it go around our storage, never through it.
The recipient’s browser reads the key from the fragment and decrypts locally. Only the two devices that need the key ever hold it.
Transfers are set to expire. After the window, the encrypted file is removed from storage. No manual cleanup, nothing left behind.
Everything you would expect from a serious file-transfer tool, with the privacy parts built into how it works rather than promised in a policy.
AES-256-GCM in WebCrypto. Industry-standard authenticated encryption, no custom crypto and nothing rolled ourselves. Our servers see what you uploaded, never what is in it.
The encrypted file is removed automatically after 7 days. No manual cleanup.
Ciphertext stored in EU-Central. A DPA is available before signup.
Anyone you send to opens and downloads in their browser. No Nullsend account, no sign-up.
Transfer size scales with your tier, from 3 GB on Free up to 100 GB.
Nullsend is built for businesses. Start free with a card on file, and move up as your storage and team grow. You are the customer, not the product: we are funded by subscriptions, never by advertising or selling data.
For getting started.
For solo practitioners.
For agencies and small firms.
For mid-size practices.
Ex-VAT. UK and EU billing only at launch. Flat per tier, overage at £0.05/GB, no surprise renewals. Full pricing
Nullsend Enterprise puts your firm’s brand, custom domain, and sender email on the front, with our encryption underneath and a discreet “powered by Nullsend” your clients can trust.
iOS and Android apps in development. The same browser-side encryption, in your pocket. We will let you know the moment they land.
14-day money-back on any tier. Encrypted in the browser from the first upload. No card needed to try the flow.
Get started