Your documents, encrypted before they leave your device.
iVALT biometric authentication requires the free iVALT mobile app
Registration takes less than 5 minutes.
Biometric login, client-side AES-256-GCM, and key re-wrapping for secure sharing. No passwords to leak. No central keys to steal.
Three steps, zero plaintext
From biometric unlock to secure share, your documents never leave your device unencrypted.
Unlock with biometrics
Authenticate with the iVALT mobile app. Your vault secret derives the keys locally — no password ever transmitted.
Encrypt before upload
Your browser encrypts each document with AES-256-GCM before a single byte leaves your device.
Share by re-wrapping keys
Grant access by re-wrapping the document key for a recipient. Only they can decrypt — and you can revoke anytime.
Encrypt inside Word, Excel & PowerPoint
Work on your DocuID documents directly inside Word, Excel, and PowerPoint — open them encrypted, edit in place, and sync new versions back to your vault.
The problem: Managing encrypted documents usually means downloading, decrypting, and re-uploading — plaintext copies pile up on your machine and versions drift.
The fix: The DocuID add-in opens your encrypted document straight into the active Office file, decrypting only in memory. Edit as usual, then save back to your vault as a new encrypted version in one click.
Result: DocuID stays your single source of truth — no plaintext on your disk, no version chaos, no extra steps.
Word
DocuID add-in
Excel
DocuID add-in
PowerPoint
DocuID add-in
Available on desktop and web
Protected files that travel anywhere
DocuID Desktop turns the vault into a portable file format. Lock any document into a .docuid envelope, send it however you like, and only the people you choose can open it with their own biometrics.
DocuID Desktop
One app, every platform — same zero-knowledge protection.
- Drag any file in, get a locked .docuid envelope back
- Double-click to open with iVALT biometric verification
- Share by phone number, revoke access even after it leaves
- Plaintext lives in memory only, wiped when you quit
Built for teams that take privacy seriously
Every layer is engineered so that trust is never required — only verified.
Client-side encryption
Documents are encrypted in your browser before upload. DocuID servers only ever store ciphertext — we cannot read your files.
Biometric login
Sign in with iVALT biometric verification. Your vault secret unlocks encryption keys locally on your device.
Secure key sharing
Share by re-wrapping document keys for each recipient. Revoke access anytime; only they can decrypt.
Workspaces for teams
Organize files into folders, track activity, and get real-time notifications when files are shared or accessed.
What stays on your device vs. what we store
We can't read your documents because we never receive them. Here's exactly where each piece lives.
Your device
Never leaves your hardware
- Your plaintext files
- Your encryption keys
- Biometric vault secret
- Who you share with
On DocuID servers
Useless without your keys
- Encrypted ciphertext only
- Key-wrapping metadata
- Access & audit logs
- Encrypted file blobs
Lose your recovery key and even we can't help — that's the trade-off of true zero-knowledge, and we think it's worth it.
Pricing is coming soon
DocuID is in free beta right now. Every feature is available at no cost, and we will announce paid plans when we are ready.
Personal
For individuals
- 5 GB encrypted storage
- Biometric login
- Secure sharing
- Activity logs
Team
For small teams
- 100 GB encrypted storage
- Team management
- Role-based access
- Tags & search
- Email notifications
Frequently asked questions
Got questions about zero-knowledge security? We have answers.
No. Documents are encrypted in your browser before upload. Our servers only store encrypted ciphertext — we cannot decrypt your files.
Unfortunately, zero-knowledge encryption means we cannot recover your data without your keys. We strongly recommend storing recovery credentials in a secure location.
When you share a document, the encryption key is re-wrapped for the recipient using their public key. The recipient decrypts the document in their browser — plaintext never touches our servers.
DocuID uses iVALT biometric verification for login. This ensures only you can unlock your encryption keys, adding a critical layer of security beyond passwords.
Secure your team's documents today
Protect templates, files, and workspaces with decentralized biometric security. Get started in minutes — no credit card required.
Get the iVALT app on your phone