๐Ÿ”’ Security Architecture

Complete transparency on how we protect your files

โ† Back to Home

๐Ÿ›ก๏ธ Encryption Model

Encryption at Rest

All files stored in Vault are encrypted using industry-standard AES-256 encryption:

โ€ข Algorithm: AES-256-CBC
โ€ข Key Management: Server-side managed encryption keys
โ€ข Storage: Encrypted files stored on secure DigitalOcean infrastructure
Important Disclosure: Vault currently uses server-side encryption, not zero-knowledge encryption. This means:
  • SkillBreed engineers can technically access your files if required
  • We can reset your password and restore access to your account
  • Files are encrypted on our servers, but we hold the encryption keys

Encryption in Transit

All data transmitted between your device and our servers is protected:

๐Ÿข Infrastructure & Hosting

Server Location

Your files are stored on our infrastructure:

Network Security

๐Ÿ”‘ Authentication & Access Control

User Authentication

File Sharing

๐Ÿฆ  Malware Scanning

Every file uploaded to Vault is automatically scanned for malware:

VirusTotal Integration: Each upload is scanned by 70+ antivirus engines before being accepted into your vault. Infected files are automatically rejected.

๐Ÿ’พ Backup & Disaster Recovery

Automated Backups

Recovery SLA

๐Ÿ” Security Monitoring

๐Ÿ‘ฅ Access to Your Data

Who Can Access Your Files?

Honest Disclosure:
  • You: Full access through your account
  • SkillBreed Engineers: Technical access for maintenance/support (encrypted but keys are server-side)
  • Law Enforcement: We may be required to provide access under valid legal process (subpoena, warrant)
  • Third Parties: No access - we never sell or share your data

What We DON'T Do

๐Ÿšจ Incident Response

In the event of a security breach:

  1. Detection: Automated alerts + manual monitoring
  2. Containment: Immediate isolation of affected systems
  3. Investigation: Forensic analysis to determine scope
  4. Notification: Affected users notified within 72 hours
  5. Remediation: Security patches and improvements deployed

๐Ÿ“Š Third-Party Audits

Current Status: SkillBreed Vault is working toward SOC 2 Type II certification. We have not yet undergone a third-party security audit.

Planned Compliance:

๐Ÿ“ž Contact Security Team

Found a security vulnerability? Please report it responsibly:

Security Email: security@skillbreed.com
Response Time: Within 24 hours
Disclosure: Coordinated disclosure after fix is deployed

Last Updated: January 28, 2026