Skip to main content

GUIDE · ENCRYPTED FILE DROP

Share a file while keeping its key separate.

Encrypted file drop is for sending files or folders when you want the recipient to receive the decryption key through a different channel.

What is encrypted?

Your browser first creates a ZIP archive (including folders) and encrypts it with AES-GCM in 8 MiB chunks before upload. Chunk processing keeps memory use bounded. The decryption key never leaves the browser. Soroltech keeps the encrypted archive and the delivery metadata needed to serve it, but cannot decrypt the archive without the separately shared key.

How to create a drop

Select and name

Sign in, open Encrypted file drop, select files or a folder, and give the resulting archive a recognisable name.

Set delivery controls

Choose the retention period and, if needed, a download limit. An empty limit allows downloads until the drop expires; a limit of one makes it single-use.

Share separately

Send the download URL to the recipient, then send the displayed decryption key through another trusted channel. Keep the key out of the URL and its surrounding message.

Receiving a file

Enter the key

Open the download URL, paste the key received from the sender, and choose to decrypt and save. Without the key, the stored archive is unreadable.

Use a current browser

Large downloads need a browser that supports saving directly to a file. Use a current desktop browser when sharing or receiving large archives.

Share safely

Anyone who has both an active URL and its key can open the archive. Use two separate trusted channels, verify the recipient when the file is sensitive, and choose the shortest practical retention period and download limit.