Skip to main content

Customer Control Over Data

Files.com gives customers direct control over how their data is encrypted, where it lives, who can access it, how long it is kept, and how it leaves the platform. The controls described here sit alongside the customer responsibilities defined in the Shared Responsibility Model.

Customer-Controlled Encryption

Customers on Power and Enterprise plans can enable GPG encryption on specific folders and manage their own encryption keys, which gives them full control over file-level encryption.

Storage Location Controls

Customers select where their data is stored from multiple available geographic regions. On supported plans, different folders can be assigned to different storage regions. To meet data residency requirements, customers can disable Global Acceleration so that data is only routed through their chosen storage location.

Data Retention and Deletion

Customers configure custom retention policies, automatically delete expired files, and manually delete content at any time. When files are deleted, Files.com retains backups for a short recovery window before permanently removing the data.

When a customer cancels their account, Files.com deletes all associated data within 7 days of the cancellation notice or termination due to nonpayment.

Access Controls and Authentication

Customers manage their own logical access controls, including user and group permissions, Role-Based Access Control (RBAC), and Two-Factor Authentication (2FA). Customers provision and authenticate users through identity providers including LDAP, Active Directory, Azure, Okta, OneLogin, and Auth0.

Audit Logs and Activity History

Files.com provides detailed audit logs showing who accessed, modified, or deleted files. These logs are accessible through the web interface and the API, and are retained for at least 7 years. Customers can request shorter retention periods. The Files.com CLI and API also export site configuration details, including user, group, and folder permission mappings.

Customers are responsible for logging the activity of their own end users outside of the Files.com platform. See the Shared Responsibility Model for the full split of responsibilities.

Data Portability and Export

Customers export all stored data and account configuration using Files.com tools. The web interface, CLI, and API transfer files and download user and settings information at any time. Files.com does not support bulk import or export using physical media.

Data Classification

Customers classify their own data (for example, Confidential, Protected, Sensitive, or Public) and define the retention schedules that fit their organizational and regulatory context.

Content Scanning and DLP Integrations

Files.com does not scan or analyze the contents of customer-uploaded files, and Content Scanning and DLP functionality are not currently supported. Customers interested in future integration capabilities can contact Files.com to express interest.