[ SECURE FILE PORTAL ]

SENSITIVE FILES. CONTROLLED DELIVERY.

A private route for the documents that should never become ordinary email attachments. Clients can upload sensitive material and receive completed reports through an encrypted, malware-screened workspace.

PRIVATE BY DEFAULT

No anonymous file sharing

B
01No public or anonymous file listings
02Every client space is isolated
03Files are downloaded, never previewed inline
04Expiry and permanent deletion controls

Access is explicitly granted. Knowing a file identifier is never enough to retrieve a customer's data.

ONGOING ENGAGEMENTS

Private client workspace

A named client space protected by password and MFA, with a clear separation between documents sent to Bitwise Security and reports shared back.

ONE-OFF DELIVERY

Password-protected transfer

A time-limited download link for recipients who do not need an account. The link and generated password are shared through separate channels.

FROM UPLOAD TO DELETION

A deliberate transfer workflow

01

Choose the recipient

Use an MFA-protected client space for ongoing work or a seven-day password-protected link for one-off delivery.

02

Encrypt before storage

The browser encrypts file chunks with AES-256-GCM before encrypted object data is written to private storage.

03

Quarantine and screen

Uploads remain unavailable while file-type checks and continuously updated malware signatures screen the content.

04

Deliver with control

Short-lived, single-use download tickets prevent a copied download address from becoming permanent access.

05

Track accountability

Uploads, downloads, deletions, sign-ins and permission changes are recorded in the administrative security log.

06

Close the engagement

Automatic expiry is available per file, and completed client spaces can be permanently removed with explicit confirmation.

SECURITY MODEL

Security without making clients fight the interface

The portal keeps the sensitive controls behind a straightforward workflow: choose a space, choose a file, and send. Stronger protections such as MFA, object-level authorization, CSRF protection, rate limiting and one-use tickets operate without adding unnecessary decisions for the recipient.

CONTROL 01

AES-256-GCM authenticated encryption

CONTROL 02

Private Cloudflare R2 object storage

CONTROL 03

Password plus TOTP MFA for accounts

CONTROL 04

Argon2id password protection

CONTROL 05

Malware scanning before availability

CONTROL 06

Audited access and deletion

SANITIZED PRODUCT VIEWS

The secure portal in use

Clear, protected sign-in

Open the preview for a closer look

Bitwise Secure Portal sign-in screen with security protections
Open the full image preview

Controlled client workspace

Open the preview for a closer look

Administrator client workspace with encrypted upload and delivery controls
Open the full image preview

One-off secure delivery

Open the preview for a closer look

Password-protected file delivery workflow
Open the full image preview

Simple client experience

Open the preview for a closer look

Private client workspace for sending documents and receiving reports
Open the full image preview

RETENTION & GDPR

Designed for the end of the engagement

Sensitive assessment data should not remain online by accident. Files can expire automatically, protected links expire after seven days, and an administrator can permanently delete a completed client space and its stored objects. Minimal content-free audit evidence may be retained for security accountability.

START SECURELY

Need to send something sensitive?

Contact Bitwise Security first. You will receive either a private account invitation or a protected transfer link appropriate for the engagement. Never send sensitive assessment material through the normal contact form.

Analytics and advertising cookies

We use Google Analytics to understand site usage and measure advertising performance. Storage and advertising use remain disabled unless you accept. You can change your choice at any time. Read our Privacy & Cookie Policy.