Privacy and security in Nebbl
Nebbl is steadfastly committed to adhering to the highest standards and best practices in software privacy and security. We prioritize the protection of user data by implementing robust security measures throughout our platform.
Secure File Storage
One of the standout features of Nebbl is that user files are not stored on Nebbl servers. Instead, files are hosted directly on cloud storage providers' facilities. This approach leverages the state-of-the-art security measures of leading cloud storage providers including:
- Data Replication: Ensuring data is available and consistent across multiple locations.
- Encryption: Utilizing advanced encryption techniques to protect data both in transit and at rest.
- Backups: Implementing regular backups to safeguard against data loss and ensure data integrity.
By using these providers, Nebbl ensures that user files are stored with maximum privacy and security, utilizing the most advanced methods available in the industry.
Zero-knowledge buckets operation
Currently, Nebbl has two modes of buckets operation: general and zero-knowledge. You can read more about the difference in this article.
Zero-knowledge is a security model where the service provider cannot access or decrypt user data because it is encrypted on the client side, and only the user holds the encryption keys. This ensures maximum privacy and security, as even if the provider's servers are compromised, the user's data remains completely inaccessible to unauthorized parties.
Zero-knowledge bucket operation guarantees you that Nebbl doesn't have access to your bucket credentials and consequently, data.
Client-side encryption
In Nebbl you can create buckets with client-side encryption enabled. You can read more about how it works here.
Client-side encryption is a security model where the encryption keys are generated and managed on the client side, with the encryption keys being used to encrypt and decrypt data. This approach ensures that the encryption keys remain private and secure, and are not exposed to the service provider.
With client-side encryption your files are encrypted before they are uploaded to the cloud storage and decrypted after they are downloaded from it. This means that even if someone gains access to your files in the cloud storage, they will not be able to read them.
By committing to these advanced security practices, Nebbl aims to provide users with a platform that guarantees the highest level of privacy and security for their data. We continue to innovate and enhance our security measures to ensure that our users' data remains safe and protected at all times.