In CipherDriveâ„¢, zero-knowledge describes the storage boundary created by client-side encryption. Under normal operation, after supported file content has been encrypted, Ackaia does not ordinarily possess the plaintext file contents or the plaintext cryptographic keys required to read them.
For supported encrypted-storage workflows:
files are encrypted in the user's client before ordinary encrypted storage;
file keys are not ordinarily stored by Ackaia in plaintext;
the master key is not intended to be known by Ackaia servers in plaintext;
decryption happens in the user's client using available key material;
Ackaia cannot normally decrypt stored encrypted files on the user's behalf.
It does not mean that Ackaia sees nothing or processes no data.
CipherDrive still needs operational metadata to authenticate accounts, organize objects, enforce quotas, manage sharing, prevent abuse, troubleshoot failures, and operate the service. This can include:
account and subscription information;
encrypted file size and storage usage;
timestamps;
file/folder object type;
parent-child folder relationships;
sharing and public-link status;
transfer usage;
IP, session, browser, and device information;
security and safety signals.
CipherDrive may operate a Risk Assessment Engine before encryption. That system can create or compare technical safety signals for severe abuse, malware, child-safety protections, fraud, or other prohibited activity.
These checks occur at a different stage from ordinary encrypted storage and do not create a general server-side key that can later decrypt stored files.
If Ackaia does not ordinarily keep the keys required to decrypt your files, Ackaia may also be unable to recover those files when required user-controlled key material is permanently lost.
Recovering an Ackaia ID account is therefore not the same as recovering a CipherDrive vault.
Zero-knowledge storage cannot fully protect you when:
your trusted device is compromised;
your browser or client is maliciously modified;
local cryptographic material is stolen;
you intentionally share decryption material;
a recipient downloads and redistributes a shared file;
you choose a weak vault secret that can be guessed offline.
Plain-English definition: Ackaia is designed to store your encrypted files without normally having what it needs to turn those stored files back into readable plaintext.