Security Recommendations for CipherDrive Users

CipherDrive™ is designed to reduce unnecessary provider access to your files, but your account, browser, device, recovery material, and sharing habits remain important parts of the security boundary.

Protect your Ackaia ID

Protect your vault secrets

Keep any vault PIN, passphrase, recovery credential, local key, or device key private.

Keep your device and browser current

Install security updates for:

Old browsers or operating systems may contain vulnerabilities that can bypass the protection expected from client-side encryption.

Use fewer browser extensions

Browser extensions can have powerful access to pages, URLs, clipboard data, downloads, and browser storage.

For sensitive workflows:

Use a strong device lock

If someone can unlock your computer or phone while your CipherDrive session or vault is available, server-side encryption may not protect the plaintext they can access locally.

Use strong device authentication and configure automatic locking when appropriate.

Avoid public or shared computers

Do not unlock a sensitive CipherDrive vault on:

Protect downloaded files

Once a file is downloaded in readable form, its protection depends on the destination device.

Consider full-disk encryption, secure local backups, access permissions, and safe disposal for downloaded copies.

Maintain independent backups

For important files, keep an independent backup outside the one CipherDrive vault you depend on.

Zero-knowledge encryption can prevent Ackaia from recovering files if all valid key material is lost.

For high-sensitivity workflows

Users handling especially sensitive information should consider:

Security is shared: CipherDrive protects the storage architecture, while you remain responsible for the credentials, keys, sessions, devices, links, and exported files under your control.