Keys generated on your device
Encryption keys are generated locally and protected by your password. Nothing sensitive ever leaves your machine unprotected.
Shield Desk creates a private, encrypted tunnel for your business communications, so only the right people ever see the right information. Files are encrypted on your device before they reach us. We operate blind.
Most secure platforms encrypt your files but hold the keys themselves. That means their staff, their subprocessors, and any third party that reaches their systems can ultimately access your data. Shield Desk is built differently.
Encryption keys are generated locally and protected by your password. Nothing sensitive ever leaves your machine unprotected.
Every file is encrypted in your browser before it is sent to us. What lands on our servers is ciphertext, unreadable without your key.
We host, scale, and secure the platform. We cannot decrypt your files, read your messages, or recover your data without your key. Neither can anyone who compels us to try.
Content is already ciphertext before it leaves your device, then travels over TLS. Most platforms rely on transport encryption alone, which means the data is readable the moment it arrives.
Stored as ciphertext in encrypted object storage, under keys derived from your passphrase. We hold the wrapped blobs and cannot open them.
There is no point in our pipeline where your data exists in the clear. Decryption happens in your browser, under your key. Our servers process ciphertext and nothing else.
Most vendors can tell you your data is encrypted. We can tell you we are unable to read it.
Architected to support
Design alignment with the frameworks these industries operate under. This describes how the architecture is built, not a certification we hold.
SOC 2 Type I and ISO 27001 are on our roadmap. We will publish audit dates and reports when they are complete.
Most collaboration platforms are optimised for convenience, not confidentiality. Messages, files, and call data often sit decrypted in provider environments, copied across integrations, and exposed in logs you never see.
For security-critical teams, that creates an unnecessary attack surface, complex compliance questions, and a constant risk that internal conversations leak beyond your control.
Shield Desk is not just about what it prevents. It is about what it enables: secure collaboration designed around how legal, financial, and executive teams actually operate.
Controlled sharing
Share sensitive documents with external parties in tightly controlled, audited environments. Set expiry, restrict downloads, and revoke access instantly, without relying on a shared folder or an email thread.
External collaboration
Give clients a dedicated, encrypted space to exchange files, sign documents, and communicate, without pulling them into general internal tools or exposing your wider workspace.
Policy enforcement
Maintain hard information barriers between teams, matters, or departments. Enforce access policies that prevent accidental or intentional cross-contamination of sensitive work.
Compliance-ready
Every access event, document view, and permission change is logged in a tamper-evident audit trail. Demonstrate control to regulators and respond to incidents faster.
Shield Desk wraps your critical conversations in a privacy-preserving layer designed to limit who can ever see message content. Encryption is applied at the point of creation, keys are tightly controlled, and access is governed by your policies, not ours.
Your team collaborates at full speed while dramatically reducing how much of that activity is visible to anyone else, including your service provider.
Shield Desk is built from the ground up around modern cryptography, data minimisation, and clear operational boundaries, so you know exactly what is and is not exposed.
Messages are protected in transit and at rest using strong, modern encryption. Where the workflow allows, decryption keys are controlled by you, not by the service operator.
Access to protected data is governed by your identity provider and fine-grained roles. Keys and permissions follow users, groups, and workspaces.
We design features to minimise how much data we retain and where it lives. Message content, metadata, audit logs, and integration data are each handled according to their sensitivity.
Clear audit trails for access, configuration changes, and administrative actions, so you can demonstrate control without exposing message content.
Messages, files, and other sensitive content are encrypted using strong cryptography before storage. Decryption is limited to authorised users and services, not the platform operator.
Limited metadata and system logs are retained to run, secure, and support the service. We avoid storing raw message content in logs and document what we keep, for how long, and why.
When you enable integrations or AI-driven features such as summarisation, they operate under explicit, scoped permissions, and only on the data you choose to expose to them.
Book a demo and our team will walk you through the architecture, map it to your compliance requirements, and help you scope a pilot.